Privacy Policy (Kosme)
Last updated: 2026-05-16
TOEM TECH LLC (“Company”, “we”, “us”, or “our”) respects your privacy. This Privacy Policy explains how we collect, use, process, store, and disclose information when you use the Kosme mobile application and related services (the “Service”).
By using the Service, you acknowledge that you have read and understood this Privacy Policy.
1. Information We Collect
We may collect the following categories of information:
A. Information You Provide
- Facial images and photos uploaded for skin analysis
- Account information such as email address
- User preferences and skincare-related inputs
- Customer support communications
B. Automatically Collected Information
- Device information
- Operating system and app version
- IP address
- Usage analytics and interaction data
- Crash logs and diagnostic data
C. Analysis and Generated Data
- AI-generated skin analysis results
- Skin scores and recommendations
- Progress history and comparison data
- Product recommendation history
2. How We Use Information
We may use collected information to:
- provide and operate the Service;
- generate AI-based skin analysis and recommendations;
- maintain user history and progress tracking;
- improve product recommendations and Service quality;
- detect fraud, abuse, or security issues;
- provide customer support;
- comply with legal obligations.
We may use anonymized and aggregated data to improve our systems, models, and services.
We do not sell facial images or facial data to third parties.
3. Facial Images and Sensitive Information
Facial images uploaded to the Service are processed to generate skin analysis results and recommendations.
By using the Service and uploading facial images, you consent to the processing of such images for the purposes described in this Privacy Policy.
Uploaded images and generated analysis results may be retained while the user maintains an account in order to provide history, comparison, before/after, and progress-tracking features.
Users may request deletion of their data at any time. Upon account deletion or verified deletion request, we will take reasonable steps to delete associated facial images and personal analysis data within a reasonable period, subject to legal obligations, security requirements, fraud prevention, and temporary backup retention.
Uploaded facial images may be securely processed by trusted AI service providers solely for generating skin analysis results and recommendations.
4. Third-Party Services and AI Providers
Certain features of the Service rely on third-party infrastructure and AI providers.
We may share limited data with trusted third-party providers, including:
- OpenAI
- Supabase
- cloud hosting and analytics providers
Such providers may process data on our behalf solely for purposes related to operating, maintaining, securing, and improving the Service.
We are not responsible for third-party privacy practices outside our control.
5. Data Retention
We retain personal information for as long as reasonably necessary to:
- provide the Service;
- maintain user accounts and history;
- provide before/after and progress tracking features;
- comply with legal obligations;
- resolve disputes;
- enforce agreements.
If you delete your account or request deletion, we will take reasonable steps to delete or anonymize associated personal data within a reasonable period, subject to backup retention, legal obligations, fraud prevention, and security requirements.
Temporary backup copies may persist for a limited time.
6. Data Security
We implement reasonable technical and organizational safeguards designed to protect personal information.
However, no method of electronic storage or transmission is completely secure, and we cannot guarantee absolute security.
7. Your Rights
Depending on your jurisdiction, you may have rights to:
- access your personal information;
- request correction of inaccurate information;
- request deletion of your information;
- withdraw consent where applicable;
- object to certain processing activities.
To exercise these rights, contact us using the information below.
8. Children’s Privacy
The Service is not intended for children under 13 years of age.
We do not knowingly collect personal information from children under 13. If we become aware that such information has been collected, we may delete it.
9. International Data Transfers
Your information may be processed and stored in countries other than your own, including the United States.
By using the Service, you consent to such transfers where permitted by law.
10. Cookies and Analytics
We may use analytics tools, identifiers, and similar technologies to understand how users interact with the Service and improve functionality.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time.
If material changes are made, we may provide notice through the Service or by other appropriate means.
Continued use of the Service after updates become effective constitutes acceptance of the revised Privacy Policy.
12. Contact
If you have questions regarding this Privacy Policy or privacy-related requests, contact us at:
TOEM TECH LLC Email: kosme@toemtech.com