Privacy Policy

Last updated: August 31, 2026

Developer Identity and Application Scope

This Privacy Policy applies solely to the mobile software titled "ViGen" (hereinafter referred to as the "Application"), which is distributed via the Google Play marketplace. The Application is managed and maintained by AG App, who is identified as the sole proprietor and operating entity for this service. Throughout this document, any reference to "we," "our," or "us" designates AG App, being the legally recognized party accountable for the functioning of ViGen. For users who obtained the Application through Google Play, this policy outlines the protocols regarding the gathering, utilization, retention, and sharing of user data during their interaction with the software.

Operational Workflow

The service operates through the following sequential stages:

  1. Users submit their personal images and select a preferred design template from the available options.
  2. A dedicated instance of the stable diffusion framework is fine-tuned using the submitted imagery to enable customized output generation.
  3. Following the completion of the fine-tuning process, the system produces a personalized digital representation based on the adjusted model.
  4. Upon successful generation of the avatar, both the original image files and the customized model iteration are permanently erased from our infrastructure. Users are reminded that certain content restrictions apply---specifically, the generation of explicit material or the unauthorized use of third-party likenesses is strictly prohibited.
  5. Your submitted information is not incorporated into any general-purpose training datasets, nor is it utilized to advance or build separate artificial intelligence offerings.

Cloud-Based Processing Initiated by User Action

ViGen delivers certain artificial intelligence functionalities---including editing, enhancement, and rendering---via remote server infrastructure. These operations are exclusively activated when you deliberately engage a feature that necessitates off-device computation.

Upload Conditions

Media files such as images, videos, or other content are transmitted to our protected servers solely under the following conditions: you have manually chosen a cloud-dependent tool and have expressly confirmed the processing action. The Application does not transmit your private media automatically, operate in the background without your awareness, or proceed without your explicit involvement. Prior to any data transmission, the App provides a clear notification indicating that cloud processing is required for the selected feature.

Data Preservation and Disposal

User-submitted media is retained exclusively for the duration required to fulfill the requested processing operation. Both the source files and the resulting outputs are subject to automatic and permanent erasure within a 72-hour window following task completion. AG App maintains no archival copies of your submitted content and does not employ your materials for advertising initiatives, algorithmic training, behavioral analysis, or any other extraneous objectives.

Transmission Security

All data transfers to and from our infrastructure are safeguarded via industry-standard TLS encryption protocols. Access to stored user content is confined solely to automated processing mechanisms and the authorized technical systems indispensable for delivering the requested functionality.

Content Advisory

Every reasonable effort is made to ensure the AI model operates within appropriate boundaries. Nevertheless, certain outputs may potentially be perceived as unsuitable by individual users. Should you encounter any material that you consider offensive or objectionable, we encourage you to report it to abhibaba2208@gmail.com. We commit to addressing such reports expeditiously, and your input serves as a valuable contribution to our ongoing efforts to refine the underlying algorithm.

Categories of Collected Information

  1. User Interaction Metrics
    We gather data pertaining to your engagement with our Platforms, including browsing patterns, selection actions, file acquisitions, content sharing activities, and media modification operations. This information is utilized to facilitate the core functionalities offered through our services.
  2. Technical and Diagnostic Records
    To maintain operational stability, fortify security measures, refine the user interface, facilitate communication services, and safeguard account integrity, we capture specific technical parameters whenever you access our Platforms. These records encompass: hardware identifiers, Google Advertising ID, handset specifications, language preferences, geographic location, ad tracking identifiers, OS iteration details, network addressing information, application build version, connectivity type, transmission performance indicators, and system-generated event logs.
  3. Inquiries and Commentary Data
    When you contact our support team or submit suggestions, we retain the details and attachments you provide, together with your communication channels (e.g., telephone number and electronic mail address). This enables us to address your concerns and deliver appropriate assistance.
  4. Facial Mapping Data
    When utilizing editing functions that involve facial manipulation or synthesis, our systems detect key landmark points of your facial structure to derive the analytical inputs required for image transformation. The processed results are subsequently delivered back to you. We do not archive any source imagery, video footage, facial coordinate data, or generated outputs, nor do we distribute them to external parties. This operation is performed exclusively to support the facial processing feature and optimize the visual quality of your results. Should your editing involve the likeness of other individuals, it is your responsibility to notify them and secure their prior consent.
  5. Remote Processing Operations
    To facilitate rapid and precise image or video manipulation, we may temporarily transmit your content or associated metadata to remote servers for effect computation. Such transmissions are strictly confined to the specific task you have initiated. We do not preserve the transmitted materials, labels, or supplementary data beyond the operational window, nor do we repurpose them for alternative functions or disclose them to outside entities.

Device Permissions

To provide you with better products, efficient services, and an improved user experience, we may request certain permissions on your device when offering additional features. With your consent and following the principle of collecting only the minimum necessary data, we may access the following permissions and the corresponding information:

  1. Read/Write External Storage Permission -- Used to read from and write to your device's external memory card for video editing purposes.
  2. Camera Permission -- Allows you to take photos and record videos within the app.
  3. Network Access Permission -- Enables various online services, such as accessing and downloading materials.

Permissions and User Control

The data associated with the requested permissions is classified as sensitive information. Should you choose to decline any specific permission, this action will merely restrict your access to the particular functionality that relies upon it---all other application features will remain fully operational and unaffected. You may verify your current permission configuration at any time by navigating to the appropriate system settings panel on your device. The decision to enable or disable any combination of permissions rests entirely with you, based on your individual preferences.

It is important to understand that by granting a permission, you are providing your explicit consent for us to access and process the corresponding personal information exclusively for the purpose of delivering the associated service. If you subsequently revoke a permission, this constitutes a withdrawal of your prior consent, and we will immediately cease any collection or processing of personal information that depended on that permission from that moment forward. Nevertheless, such revocation does not retroactively affect any data collection or usage activities that lawfully occurred during the period when the permission remained active.

External SDK Integrations and Service Partners

To facilitate essential application capabilities, conduct performance measurement, and enable in-app transaction functionality, ViGen incorporates several third-party software development kits (SDKs). Each of these external components may access and process certain categories of device-level information and behavioral usage data, as specified in their respective operational frameworks. All such data handling activities are conducted exclusively subsequent to your formal acceptance of this Privacy Policy.

  1. AppsFlyer (provided by AppsFlyer Ltd.)
    Purpose: Mobile attribution, marketing analytics, and campaign performance tracking.
    Data collected: Device identifiers (Android ID, Google Advertising ID), IP address, app install source (referrer), conversion events, and in-app user actions. This data helps us understand how you discovered our app and improve our promotional activities.
  2. Google Play Billing (provided by Google LLC)
    Purpose: Processing in-app purchases and subscription transactions.
    Data collected: Purchase details, transaction history, and order identifiers. We do not store or have access to your full payment card information; all payment data is handled directly by Google Play.
  3. Google Install Referrer (provided by Google LLC)
    Purpose: Identifying the source (channel) that led to your app installation.
    Data collected: Referrer information (e.g., which campaign or ad led to the install) and installation timestamp. This data is used exclusively for attribution analysis.
  4. Google Ads Identifier & AppSet ID (provided by Google LLC)
    Purpose: Providing anonymized identifiers for analytics and ad performance measurement.
    Data collected: Google Advertising ID (AAID) and AppSet ID. You may reset or limit these identifiers at any time via your device settings.
  5. Google Sign-In (provided by Google LLC)
    Purpose: Enabling Google account-based login and authentication.
    Data collected: Only when you actively choose to sign in, we receive your basic profile information (name and email address) as provided by your Google account. No data is collected passively.
  6. Functional Libraries (No Data Collection)
    The following tools are used solely for technical operations such as networking, image loading, media playback, local storage, and background scheduling. They do not collect, transmit, or process any personal data: Retrofit & OkHttp (networking), Glide (image loading), ExoPlayer (media playback), DataStore (local preferences), WorkManager (background tasks), and Hilt (dependency injection).

Usage Analytics and Performance Insights

We engage in systematic collection and evaluation of operational metrics with the objective of ongoing service enhancement and user experience optimization. This information undergoes processing in compiled, non-individualized formats, enabling us to gain a clearer understanding of behavioral trends and to iteratively refine our product offerings. These consolidated findings may be disseminated to our affiliated entities, authorized representatives, and commercial collaborators for applications encompassing research initiatives, product evolution, and strategic business forecasting. We emphasize that all such data is thoroughly de-identified and does not enable the identification of you or your users as individuals.

Purposes of Personal Data Processing

We may process the information supplied by you, in accordance with the provisions of this policy, for the purpose of rendering our services or maintaining communication with you. The specific applications are detailed below:

  1. Product Optimization
    Your data contributes to the creation, growth, operation, delivery, and ongoing refinement of our service portfolio. By analyzing user engagement patterns with the platform, we are able to verify that the interface remains clear, accessible, and operationally straightforward.
  2. Protective Measures
    We utilize your information to uphold the integrity of user accounts and network infrastructure, thereby safeguarding our services for the entire user community. This may encompass preliminary reviews or automated scanning of submitted materials for content that could contravene legal standards. Additionally, your data may be employed for fraud mitigation, user safety assistance, and associated protective protocols.
  3. Essential Notifications
    Your information is used to transmit critical announcements, including account status communications and revisions to our governing terms, conditions, and operational policies.
  4. Regulatory Adherence
    We maintain and administer your information to the extent required for fulfilling our statutory obligations. This may involve documentation, verification, examination, or handling of your data as mandated by relevant legislation, including exigent circumstances.

Your Choices

You may limit data collection by:

Data Erasure Rights

Throughout your use of our application, you maintain complete authority over your personal information and retain the ability to remove stored records at your discretion. We are dedicated to safeguarding your privacy and facilitating straightforward data removal processes. You may delete your activity history and other retained information directly through the settings interface provided within the application. Furthermore, removing the app from your device will automatically clear any information that was stored locally on that device. Please note that once data has been permanently erased, recovery is not possible. Should you have any inquiries concerning your deletion privileges, we encourage you to contact our support team for further guidance.

Tracking Technologies and Data Collection Methods

In common with many online platforms, we employ cookies, pixel tags, and analogous tracking mechanisms. Cookies constitute minor text files that reside on your storage drive or within your device's allocated memory. They preserve information concerning your utilization of our services, facilitating functions such as identity verification, retention of your customized preferences and configurations, analysis of visitor trends and engagement metrics, evaluation of promotional campaign effectiveness, and activation of social interaction components. Pixel tags are compact software elements embedded within web pages or electronic mail communications, enabling us to discern your engagement with the respective material.

Most browsers are configured to permit cookies by default. You generally have the ability to modify your browser preferences to refuse or remove stored cookies if you so choose. However, it is important to note that such adjustments may impact both the accessibility and the full feature set of our services.

We utilize external analytical platforms to assess visitor volume and engagement patterns across our services. These tools compile information transmitted by your hardware or through our service infrastructure, encompassing the sections you access, the extensions you employ, and supplementary details that aid us in enhancing our product offerings. This analytical data is compiled alongside comparable information from other participants in a manner that does not enable reasonable identification of any particular individual.

We collaborate with external advertising partners to display promotional content across the internet and other media channels. To evaluate promotional performance and establish compensation levels for these partners, we embed external components within our applications. Additionally, we may incorporate such components to gain enhanced insight into user engagement with our service offerings.

Data Retention Period

We maintain your personal information on our systems for a standard retention term of 48 months. Extended retention and utilization of your data may occur as required to satisfy legal mandates (including compliance with pertinent statutory obligations), address disputes, and enforce our contractual terms and operational policies.

We additionally preserve Usage Data for internal evaluation and analytical functions. This category of information is ordinarily retained for a more limited timeframe, except in cases where it is necessary to reinforce security measures, augment service performance, or where legal requirements compel a more extended preservation period.

Information Disclosure Practices

We do not engage in the sale, lease, or rental of your personal information to external parties. The third-party SDKs referenced elsewhere in this policy transmit data exclusively to their respective service providers for the designated functions outlined, and we impose contractual obligations upon them to handle such information in full compliance with relevant privacy legislation.

Circumstances for Information Release

AG App refrains from selling, leasing, or exchanging your personal information with any external entity. We disclose personal information solely under circumstances where it is essential to deliver the services you have requested, sustain the operation and upkeep of ViGen, execute financial transactions, adhere to applicable legal requirements, or safeguard our legitimate rights and the integrity of our service infrastructure.

External Service Partners

To deliver the essential features of ViGen, we engage with a curated network of external service providers. These partners contribute to critical operational areas including user identity verification, transaction settlement, usage measurement, installation source tracking, remote server infrastructure, threat detection, and system performance oversight.

Depending on the feature you use, these providers may process limited categories of information, including:

Each third-party provider processes personal information solely for the purpose of delivering the services they perform on our behalf and in accordance with their own privacy policies and applicable data protection laws. We do not authorize our service providers to use your personal information for their own independent advertising or marketing purposes.

AI-Driven Media Processing

When you intentionally submit photographs, video clips, or other user content for AI-assisted transformation, your materials are utilized exclusively for producing the specific outputs you have requested. Under no circumstances are your uploaded files sold, sublicensed, or disclosed to external parties for advertising initiatives, behavioral analysis, or the development of generalized machine learning systems. All media content is handled strictly in furtherance of the specific operation you initiate, and such files are subject to automatic removal in accordance with the data disposal schedule specified within this Privacy Policy.

Legal Disclosure

We may disclose your personal information only when we believe such disclosure is necessary to:

Corporate Transactions and Asset Transfers

Should ViGen or AG App become party to a merger, acquisition, restructuring initiative, funding arrangement, asset divestiture, or analogous commercial event, your personal data may be included among the transferred assets as part of such proceeding. Under these circumstances, the acquiring party shall be bound to uphold privacy standards that are materially comparable to those set forth in this Privacy Policy, and shall handle your information in full compliance with all pertinent data protection regulations.

Information Security Framework

We treat the protection of your personal information with the utmost seriousness. To mitigate risks associated with unauthorized access, improper disclosure, and other potential threats, we have established reasonable physical safeguards, technical controls, and administrative protocols for data collected through your engagement with our Platform services. We are unwavering in our commitment to protecting your information to the best of our ability.

Our security framework undergoes periodic assessment and refinement to remain aligned with operational advancements, evolving technological landscapes, and shifting regulatory requirements. These protective measures encompass, though are not confined to, comprehensive security policies spanning technical and organizational domains, stringent access restriction mechanisms, and ongoing staff education initiatives.

Although we assign the highest priority to safeguarding your information, it is important to acknowledge that no transmission method over the internet or electronic storage system can offer complete immunity from risk. While we endeavor to protect your personal data using standards generally accepted within the industry, we cannot provide an absolute guarantee of security.

Should we become aware of a security incident that impacts your personal data, we will issue a notification to you to the extent mandated by applicable legal provisions. Through your continued use of the Platform, you consent to receive such communications through electronic channels.

Data Subject Rights and Requests

Should you wish to obtain further clarification regarding your legal entitlements under relevant legislation or intend to exercise any of those entitlements, we invite you to contact us through the channels specified in the "How to Contact Us" section of this document. Depending on the regulatory framework applicable to your jurisdiction, you may hold the right to request that we:

  1. Grant you access to, or furnish a copy of, specific personal data within our possession.
  2. Cease utilization of your information for direct promotional activities, including any such efforts grounded in behavioral or preference profiling.
  3. Rectify any obsolete or erroneous details we hold concerning you.
  4. Delete designated records we maintain pertaining to you.
  5. Restrict the processing or sharing of particular information associated with you.
  6. Facilitate the transmission of your data to an alternative external service provider.
  7. Revoke any prior authorization you have provided regarding the handling of your information.

All submissions will be assessed and addressed within the time frame prescribed by applicable legal standards. Please note that in certain instances, some data may fall outside the scope of such requests---for example, where we must persist in processing your information to safeguard our legitimate business interests or to fulfill legal obligations. To process your request, we may request reasonable evidence to confirm your identity prior to taking action.

Age Restrictions and Minor Data Protection

Our platform is not intended for users who have not yet reached 18 years of age (hereinafter "minors"). We do not deliberately gather any personally identifiable information from individuals below this age threshold. Should you be a parent or lawful guardian and discover that your child has submitted personal information to us, we kindly request that you contact us without delay. Upon confirming that such data has been collected absent verified parental authorization, we will promptly initiate measures to expunge it from our systems.

Jurisdiction-Specific Privacy Entitlements

We operate in accordance with the privacy standards established by California (CCPA), Virginia (VCDPA), the European Union (GDPR), and Brazil (LGPD). Users located within these jurisdictions are afforded statutory rights including the ability to request access to, rectification of, deletion of, or objection to the handling of their personal information. Should you wish to act upon any of these rights, please direct your inquiry to our support team for further assistance.

Lawful Bases for Information Processing

Our data processing activities are conducted in full compliance with applicable privacy regulations, including the General Data Protection Regulation (GDPR). Depending on the particular context and objective of each processing activity, we rely on one or more of the following legal justifications:

  1. Legitimate Interests
    We may process certain non-sensitive data to pursue our legitimate interests, which include:
    • Enhancing the performance and user experience of our applications.
    • Maintaining the security and reliability of our apps and services.
    • Studying app usage patterns to better inform future development.
    When relying on legitimate interests, we carefully weigh our interests against your rights and freedoms.
  2. Legal Obligations
    In certain situations, we are required to process your data to meet legal obligations, such as complying with applicable financial, tax, or regulatory requirements.
  3. Vital Interests
    In exceptional circumstances, we may process your data to protect your vital interests or those of another person --- for example, in response to a security incident affecting an application.

Right to Submit a Regulatory Grievance

Should you believe that our handling of your personal information contravenes applicable privacy legislation or infringes upon your rights under such laws, you are entitled to lodge a grievance with the competent supervisory authority. This provision applies, for instance, to residents of the European Union under the General Data Protection Regulation (GDPR), as well as to individuals covered by other regional data protection frameworks applicable to your location.

Designated Channels for Filing

If you wish to submit a formal grievance, you may direct your communication to the appropriate data protection authority within your jurisdiction. Their contact details are generally accessible through their respective official online portals. Alternatively, you may initiate contact with us directly for additional assistance and procedural information.

Exhausting Internal Remedies

Prior to advancing to an official complaint, we respectfully request that you first engage with us so that we may undertake reasonable measures to resolve your issues. You may reach our Data Protection Officer (DPO) or correspond with us via the following email address: abhibaba2208@gmail.com.

Data Controller Identification

For the purposes of applicable data protection frameworks, the entity acting as the data controller with respect to personal information gathered through ViGen is AG App. This entity holds the authority to establish the objectives and methods governing personal data processing, and bears full accountability for upholding compliance with all relevant privacy statutes. Should you have any inquiries pertaining to data protection matters, please direct your correspondence to us at abhibaba2208@gmail.com.

Data Protection Officer

We have appointed a Data Protection Officer to oversee our privacy practices. The DPO can be contacted as follows:

Policy Revisions and Effective Date

We reserve the right to amend this Privacy Policy as circumstances may require. We recommend that you consult this page on a regular basis to remain informed of any modifications. In the event of material changes, we will publish the updated policy on this same page. All revisions shall take immediate effect upon their publication.

Contact Information

Should you have any inquiries, issues, or recommendations pertaining to our Privacy Policy, please do not hesitate to reach out to us at abhibaba2208@gmail.com.