Face Photo & Image Data Policy

Clad processes the face photo you upload in order to provide a personal color analysis. Here is a transparent look at what we work with, how we handle it, and how you can delete your photo.

Effective and last reviewed: 2026-07-30

What photo do I upload?

For the analysis, you upload a photo where your face is shown straight on. For a better read, we suggest a photo taken in natural light with editing and color makeup kept to a minimum.

What does it analyze in the photo?

The service checks for a usable face and capture quality, then analyzes color information such as skin brightness and color tendency and overall facial contrast to estimate a personal color type. It may create a face crop, background or garment masks, and derived images used to display the result. It does not use your photo to identify you or build a face-recognition database.

Are photos stored on the server?

Yes. Photos and derived images are stored in AWS S3 object storage for upload, analysis, and result viewing. Direct public access to the S3 bucket is blocked, but the result view displays images through hard-to-guess object paths and a result token. Anyone who receives a result link may be able to view it, so do not post it publicly or share it with someone you do not trust.

How long are they kept?

Temporary analysis records that never reach submission are cleaned up after at most 24 hours. Anonymous results not saved to an account and their images become eligible for the daily deletion job after 30 days. A result linked to an account may remain until you delete it, while image objects have a maximum 365-day storage lifecycle. Non-current object versions are removed within 30 days.

How can I delete a photo now?

The delete-photo action on the result page removes the original and known derived images and clears image references from the result record. You can delete a saved result from My Color. If you cannot complete the action, email admin@lumx.im. Do not attach the face photo, password, verification code, or full result link to the email.

Do you use photos to train models?

We do not use uploaded face photos as AI model training data without your separate, explicit consent.

Do you share photos with third parties?

We do not sell photos or provide them for ad targeting. To deliver the analysis, Clad may use AWS storage and face-quality processing and a selected Google Vertex AI route through OpenRouter. AI requests are configured to deny data collection and require a zero-data-retention route. We update this page and review date if an operating provider changes.

What goes into analytics events?

Operational events may include upload success, file size and type, processing stage, and error category. Image object URLs, result access tokens, authentication secrets, and raw email addresses are removed from analytics event properties.

Use by minors

If you are under 14, please use Clad with a guardian’s consent.

Contact

For photo deletion or any privacy questions, you can reach us through the contact page.