Privacy Policy
Clad processes only the minimum information needed to provide a personal color analysis. How we handle face photos in particular is explained separately in our image data policy.
Effective and last reviewed: 2026-09-01
What we collect
- The face photo you upload and derived images used for analysis or display
- Questionnaire answers, personal color result, palettes, feedback, and saved products
- If you sign in or save a result: email, auth-provider identifier, and account ID
- Request time, error and performance data, device or browser type, referral, and usage events
- Email address and message content you provide when contacting us
- A random value stored in your browser (person key) so diagnoses made on the same browser can be counted as one. It is not tied to a login or email, the server keeps only a hash of it rather than the value itself, and it is replaced with a new value after a year.
How we use it
We use data to generate, display, and save results; authenticate accounts; delete photos and results; handle errors; prevent abuse; measure aggregate quality and conversion; and send notifications you have chosen. We do not use face photos for ad targeting or model training without separate consent.
Statistics that improve diagnosis quality and the service use only information processed so that it cannot identify you. That covers diagnosis coordinates (color type, color axes, and confidence) and usage events; face photos and email addresses are not used. These statistics may be shared with partner brands or published only in a form that identifies no individual — for example, which colors are chosen more often within a color type. We do not sell or hand over personally identifiable information to third parties.
Storage and deletion
Temporary analysis records that are not submitted remain for at most 24 hours. Anonymous results not saved to an account become eligible for cleanup after 30 days. Account data and saved results may remain until account or result deletion, while image objects have a maximum 365-day lifecycle. Application logs are normally retained for 30 days. Detailed photo handling follows our image data policy. If law requires a separate retention period for a specific record, we may isolate it for that period.
After an anonymous result is cleaned up at 30 days, statistical diagnosis coordinates (color type, color axes, confidence, and their timestamp) remain. Photos, email addresses, and message content are not part of them. If you request deletion of a result, we delete these records along with it.
Service providers
Clad may use AWS (S3, Lambda, Rekognition, and CloudFront), Supabase (authentication and database), a selected Google Vertex AI route through OpenRouter (AI inference), Mixpanel (usage analytics without sensitive access values), and Crisp (support conversations you start). They process data as needed for those functions, potentially outside Korea depending on server region. AI requests are configured to deny data collection and require a zero-data-retention route.
Analytics and local storage
Cookies or browser local storage may keep sign-in state, quiz resume data, notice choices, last-result access, and the person key that links diagnoses on this browser. A shared analytics guard removes result access tokens, image object URLs, authentication secrets, and raw email addresses from quality event properties.
Your rights and contact
You may request access, correction, deletion, suspension of processing, and account deletion. Use the result page or My Color deletion controls first. If you cannot complete the action, email admin@lumx.im. We will ask only for the minimum needed to verify the request. Do not email a face photo, password, verification code, or full result link.
Policy changes
If the purpose, provider, or retention period changes materially, we will announce it in the service or on this page before it takes effect and update the effective and review dates.