Privacy Policy

Effective Date: January 2026

This Privacy Policy explains how Tera One Ltd. ("Company", "we", "our", or "us") collects, uses, discloses, and protects your information when you use the Render AI mobile and web applications (the "Service"). We are committed to safeguarding your privacy and complying with applicable data protection laws, including the European Union's General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), Turkey's Personal Data Protection Law (KVKK No. 6698), and other relevant regulations.

By using Render AI, you consent to the practices described in this Privacy Policy. If you do not agree, please do not use the Service. This Policy should be read in conjunction with our Terms of Use. We may update this Policy periodically; significant changes will be notified via the app, email, or our website, and continued use constitutes acceptance.

Information We Collect

We collect only the information necessary to provide, maintain, and improve the Service. Categories include:

1. Information You Provide Directly

  • Account Information: Email address, display name, or other identifiers if you create or log into an account.
  • User Content: Product photos you upload, prompts and scene selections you make, and the images generated by the Service.
  • Purchase Information: Subscription and transaction details processed through the app stores or our web payment provider.

2. Information Collected Automatically

  • Device and Network Information: Device type, model, operating system, unique device identifiers, IP address, and network details.
  • Usage Data: Interactions with the app (e.g., features accessed, session duration), crash reports, performance metrics, and diagnostic logs.
  • Analytics Data: Anonymized, aggregated data on user behavior to enhance the Service; this data is de-identified and cannot be linked to individuals.

3. Information from Third-Party Integrations

To deliver AI-powered image features, we integrate with official APIs from trusted third-party model and cloud providers. Your inputs (e.g., uploaded product photos and prompts) may be transmitted securely to these providers solely to process your request and generate your imagery. These providers process data only to fulfill your request and in accordance with their respective privacy policies. We integrate solely through official APIs and do not access, store, or use data beyond what is necessary for the Service.

How We Use Your Information

We use collected information for legitimate business purposes, including:

  • Providing and personalizing the Service, such as removing backgrounds, relighting, and generating product imagery.
  • Improving app functionality, debugging issues, and analyzing usage trends through anonymized analytics.
  • Sending service-related communications (e.g., updates, security alerts) and, with your consent, optional promotional content.
  • Detecting and preventing fraud, abuse, or violations of our Terms of Use.
  • Complying with legal obligations, responding to regulatory requests, or enforcing our policies.

We process data based on your consent, contractual necessity, legitimate interests (e.g., service improvement), or legal requirements.

Sharing and Disclosure of Information

We do not sell, rent, or trade your personal information. Disclosures are limited to:

  • Service Providers: Trusted vendors (e.g., cloud hosting, analytics) under strict confidentiality agreements ensuring data protection at least as stringent as ours.
  • Third-Party AI Providers: Inputs shared only to process your image requests, as described above.
  • Business Transfers: In mergers, acquisitions, or asset sales, data may be transferred with equivalent privacy protections.
  • Legal and Safety Reasons: To comply with laws, court orders, or government requests; to protect rights, property, or safety; or to investigate illegal activity.
  • Aggregated or De-Identified Data: Shared for analytics or research, ensuring it cannot be re-identified.

No sharing occurs with advertisers or unrelated third parties.

Data Retention and Deletion

We minimize data retention.

  • Uploaded and Generated Images: Images you upload or generate are stored only as long as needed to provide the Service and are automatically deleted within a limited period after processing. You may delete your content at any time from within the app.
  • Analytics and Device Data: We collect only anonymized crash reports and performance metrics to improve the app. These do not identify you personally and may be retained for up to 12 months.
  • Third-Party Processed Data: When you request AI features, your inputs may be transmitted securely to third-party providers via their official APIs. Retention by those providers is governed by their respective policies.

You remain in full control of your content and may request deletion of your account and associated data at any time.

Your Data Protection Rights

Depending on your jurisdiction (e.g., GDPR, CCPA, KVKK), you may have the right to:

  • Access, correct, or update your personal data.
  • Request deletion ("right to be forgotten") or restriction of processing.
  • Object to processing based on legitimate interests or withdraw consent for optional features.
  • Receive your data in a portable, machine-readable format (data portability).
  • Opt out of automated decision-making where it significantly affects you.
  • For CCPA: Opt out of "sales" (we do not sell data) or limit sensitive data use.

Submit verifiable requests to hello@teraone.app. We respond within 30-45 days (extendable for complex cases). Turkish residents may contact the Personal Data Protection Authority (KVKK); EU residents may contact their local data protection authority.

Children's Privacy

Render AI is not intended for children under 13 (or the applicable minimum age, e.g., 16 under GDPR for certain processing). We do not knowingly collect or solicit data from children. If we learn of such collection, we delete it immediately. Parents/guardians may contact us to review or delete a child's data.

International Data Transfers

Data may be processed in Türkiye (our primary location) or transferred to regions like the United States or European Union, where third-party providers operate. We ensure safeguards, including:

  • Standard Contractual Clauses (SCCs) for transfers outside the EEA.
  • Encryption in transit (e.g., TLS 1.3) and at rest (AES-256).
  • Compliance with local laws like KVKK for Turkish residents.

Request transfer mechanism details at hello@teraone.app.

Data Security

We implement robust safeguards, including:

  • Encryption of data at rest (AES-256) and in transit (TLS 1.3).
  • Access controls (e.g., multi-factor authentication for internal systems).
  • Regular security audits and employee training.

No system is fully secure; we cannot guarantee absolute protection. In case of a data incident, we will notify affected users and authorities as required (e.g., within 72 hours under GDPR).

Changes to This Policy

We may revise this Policy to reflect legal or operational changes. The updated version will be posted with a new "Effective Date." Material changes will be notified 30 days in advance via app notifications or email.

Contact Us

For questions, complaints, or rights requests:

Tera One Ltd.

Hacı İsa Mah. 75. Yıl Cumhuriyet Cad. No: 5 İç Kapı No: 2, 35430 Urla / İzmir, Türkiye

Email: hello@teraone.app

If unresolved, EU residents may contact their local data protection authority; Turkish residents, the KVKK Board.

This Privacy Policy should be read in conjunction with our Terms of Use.