PRIVACY POLICY FOR CARVED
Last Updated: May 13, 2026
Digital Den LLC ("we," "our," or "us") operates Carved (the "App"), a mobile application that uses guided photo capture to produce facial and physique analyses and personalized 90-day improvement protocols. This Privacy Policy describes what information we collect, how we use it, and the choices you have. By downloading or using Carved, you agree to the practices described below.
1. INFORMATION WE COLLECT
1.1 Photos You Provide for Analysis
Carved's core feature is analyzing photos you capture using the App's guided in-app camera. You choose to submit:
- Face photos — a multi-angle set (typically five angles) captured using the live face overlay. Required for facial analysis.
- Physique photos — optional, used for body composition analysis when you opt in.
- Posture photos — optional, used for forward head and shoulder positioning assessments when you opt in.
Photos are retained only as long as needed to produce your analysis, maintain your score history, and let you compare progress over time. You can delete any individual photo, or your entire photo history, at any time from in-app settings.
1.2 Profile and Demographic Information
Facial and physique analyses depend on baseline context to be meaningful. We collect:
- Date of birth or age range — used to calibrate scoring against age-appropriate baselines.
- Self-reported gender — used to select the appropriate analytical framework.
- Self-reported ethnicity — optional, used to refine analytical baselines where you choose to provide it.
- Self-reported goals (e.g., skin, jawline, posture, fitness focus) — used to prioritize protocol modules.
This information is used only to tailor your analysis and protocol. We do not sell or share it.
1.3 Derived Analysis Data
Carved computes a range of values from your photos and profile information, including:
- Facial measurement values (canthal tilt, facial thirds, neoclassical proportion ratios, golden-ratio deltas, and similar metrics — 40+ measurements at full depth).
- Structure Score (genetic baseline) and Polish Score (modifiable factors), plus the overall tier letter.
- Personalized 90-day improvement protocol content and the daily/weekly tasks assigned to you.
- Scan history, rescan deltas, and protocol adherence (tasks completed, rescans taken, score movement over time).
1.4 Account Information (Optional)
Carved's core scan, score, and protocol features work without creating an account. If you choose to create an account so your scan history syncs across devices, we additionally collect your email address for authentication and basic device information for sync management.
1.5 Automatically Collected Information
To keep the App working reliably, we collect:
- Device model and operating system version.
- Timezone offset (used to schedule protocol reminders correctly).
- Crash reports and diagnostic logs.
- Performance metrics and load times.
- High-level usage analytics — for example, which features you use and how often you complete a scan.
We do not run advertising trackers unless you opt in to attribution measurement during onboarding. If you do opt in, that data is used solely to measure which marketing channel referred you to the App, and nothing more.
1.6 Information from Third-Party Services
We receive a limited amount of information from third-party providers:
- Subscription status and payment confirmation from the Apple App Store and Google Play.
- Authentication tokens and storage metadata from Firebase, but only if you create an optional account.
We do not receive credit card numbers, billing addresses, or any other payment-method details from the app stores.
2. HOW WE USE YOUR INFORMATION
2.1 Core App Features
We use your photos, profile data, and derived analysis values to:
- Run the facial and physique analysis engines that produce your scores and tier reveal.
- Generate a personalized 90-day improvement protocol based on your individual weak points.
- Maintain your scan history and compute rescan deltas, so you can see measurable progress.
- Schedule daily and weekly protocol tasks on the cadence you choose.
- Calibrate analyses against age- and gender-appropriate baselines.
2.2 Notifications
If you enable notifications, we send:
- Daily and weekly protocol task reminders.
- Rescan reminders at your selected cadence (typically every 14 days).
- Occasional announcements about new protocol modules or App features.
You can configure or disable notifications at any time in the App's notification settings or in your device settings.
2.3 App Maintenance and Improvement
We use aggregate analytics and diagnostics to:
- Improve the App's performance and reliability.
- Resolve crashes and bugs.
- Identify which features deserve further investment.
- Test and refine onboarding and paywall flows.
We do not send advertising emails or marketing messages.
2.4 Engine and Model Improvement
We do not use your individual photos to train generic machine learning models. If we ever propose product features that require training or fine-tuning models on user photos, we will request your explicit, opt-in consent first, separately from this Privacy Policy. Absent that consent, your photos are used only to compute your own analyses and your own protocol.
3. DATA STORAGE AND SECURITY
3.1 Local-First Storage
Where the App can, it keeps your photos and analysis results on-device by default. Data leaves your device only when:
- The analysis pipeline requires server-side computation (the relevant photos are transmitted over HTTPS, processed, and the results returned).
- You create an optional account and enable cross-device sync.
- You explicitly export or share a result.
3.2 Cloud Storage (Optional)
If you create an account, your account record, sync index, and associated scan data are stored on Firebase infrastructure. Firebase handles:
- Encryption of data in transit and at rest.
- Authentication.
- Real-time sync between your devices.
Firebase does not access your content for advertising or resale.
3.3 Sensitive Content Handling
Because the App handles photos of your face and body, those photos are given elevated protection:
- Transmitted only over HTTPS / TLS.
- Stored in access-controlled object storage and served only through short-lived signed URLs.
- Scoped to your account, or to an anonymized device-tied identifier if you have no account.
- Never shared with third parties, ad networks, marketers, or other Carved users.
You can delete individual photos, delete your entire photo history, or delete your account (which also deletes all associated photos and analyses) at any time from in-app settings.
3.4 Security Measures
We maintain:
- HTTPS/TLS for all data transmission.
- Secure authentication protocols for optional accounts.
- Role-based access control inside our infrastructure.
- Regular security and access reviews.
- No employee or contractor accesses user data without a logged, justified reason (for example, resolving a specific support ticket you have opened).
4. DATA SHARING AND THIRD PARTIES
4.1 Cloud and Authentication Provider
If you create an optional account, Firebase stores and processes data solely to power authentication and cross-device sync. It does not access your content for any independent purpose.
4.2 Apple App Store and Google Play
The applicable app store provides us with subscription and payment confirmation when you purchase or renew a Weekly Premium or Annual Premium subscription. Neither store transmits your credit card number or billing address to us.
4.3 Analysis and Inference Infrastructure
The server-side portions of the analysis pipeline run on standard cloud-compute providers, bound by data-processing agreements. These providers process the photos we send them only to perform the requested computation on our behalf, and do not retain, reuse, or share photos independently.
4.4 No Data Sales
We do not:
- Sell, rent, or trade user data.
- Provide user data to advertising networks or data brokers.
- Share your photos, measurements, or scores with insurers, employers, dating platforms, or any analogous third party.
- Publicly post your scores, photos, or analysis results.
Carved is ad-free and our revenue is not derived from data exploitation.
5. YOUR RIGHTS AND CHOICES
You can, at any time:
- View your full scan history and protocol progress in-app.
- Delete any individual photo, or your entire photo history.
- Edit or correct your demographic and goal information.
- Disable push notifications.
- Control whether your scan history syncs across devices.
- Export your scan history and protocol records as a CSV for your own use.
- Request account deletion (if you created an optional account).
Account deletion permanently removes your stored personal information — photos, scan history, scores, and protocol data — from our infrastructure, except for any retention required by law or anonymized diagnostic logs that contain no identifying information.
6. AGE RESTRICTION
Carved is not intended for users under 13 years of age. We do not knowingly collect personal information from children under 13. If we discover that we have collected data from a child under 13, we will delete it immediately. Users under 18 should use the App only with the involvement of a parent or legal guardian.
7. SENSITIVITY OF APPEARANCE DATA
Because Carved analyzes photos of your face and, optionally, your body and posture, we treat this category of data with particular care. We recognize that appearance feedback can affect self-image, and Carved is built around private, personal improvement rather than public ranking.
- Your scores, measurements, and protocol are never posted publicly.
- Your photos and analyses are never shown to other users — Carved has no social, sharing, or community surface where other people can see your data.
- Your results are never used to rank you against any other Carved user.
- The analytical frameworks (neoclassical canons, golden-ratio proportions, and similar) are applied as reference scaffolding to generate actionable protocols, not as authoritative judgments about you.
If you stop using the App, you can delete all of your appearance data at any time from in-app settings, or by contacting us at the address in Section 11.
8. INTERNATIONAL USERS
If you access Carved outside the United States, your data may be processed in regions where privacy laws differ from those of your country. By using the App, you consent to this processing. Note that appearance-related standards vary across cultures and individuals; the analytical frameworks used in Carved do not constitute a universal aesthetic standard, and you should treat all results as personal reference points rather than objective truths.
9. CHANGES TO THIS PRIVACY POLICY
We may update this Privacy Policy to reflect changes to our practices, the App, or applicable law. Updates will be communicated through:
- An in-app notification.
- An updated publication date at the top of this document.
Your continued use of the App after we publish a revised Privacy Policy signifies your acceptance of the revised version.
10. DATA RETENTION
10.1 Active Use
Photos, scan history, scores, and protocol data are retained while your account is active (or while local-only data remains on your device). You can delete any of it at any time from in-app settings.
10.2 Account Deletion
When you request deletion of your account:
- All photos you have uploaded are permanently deleted from our infrastructure.
- All scan history, scores, and protocol records associated with your account are permanently deleted.
- Local on-device cache is erased.
- Some anonymized, non-identifiable diagnostic data may remain for the limited purpose of system performance reporting.
11. CONTACT INFORMATION
If you have questions, requests, or concerns about this Privacy Policy or about how we handle your data, please contact us:
Digital Den LLC 2661 Hugger Orange Ct North Las Vegas, NV 89086 United States
Phone: 239-276-6024 Email: matt@digitalden.so
This Privacy Policy governs your use of Carved. By continuing to use the App, you acknowledge that you understand and accept these practices.