Privacy Policy
8FEED is operated by XTLab ("8FEED," "we," "us"). This policy applies to the 8FEED mobile apps, backend API, subscriptions, AI curation, and related support.
Photo organization, quality analysis, similarity matching, and the GPS metadata index run on your device.
Reduced thumbnails and your written directions leave the device only when you request AI curation.
The core service uses pseudonymous installation and store transaction identifiers—not a named user profile—to manage subscriptions, usage limits, and security.
1. Information we handle
| Information | How it is used | Where it is handled |
|---|---|---|
| Photos, videos, and media metadata Selected library items, capture date, media type, dimensions, quality features, Live Photo frames, and embedded GPS metadata. | Date/place search, local indexing, quality and histogram analysis, similar-photo grouping, comparison, selection, recovery, and album export. | Normally on your device. Original media files, album names, and the GPS index are not uploaded by 8FEED; optional AI sends the size-limited JPEG representations described below. |
| Optional AI curation content Reduced candidate thumbnails, pseudonymous candidate references, local quality tags, desired count, mood, channel, purpose, caption direction, keywords, and exclusions. | Generate photo selections, reasons, captions, and hashtags when you press the AI recommendation button. | Sent through the 8FEED backend to OpenAI. Thumbnails may visibly contain people, places, documents, or other content present in your media. |
| App and installation data Random installation identifier generated by the app, pseudonymous backend user identifier, authentication token, language, platform, app/build version, device model, launch count, and timestamps. | Operate the API, secure the installation, apply remote configuration, diagnose service problems, and enforce usage limits. | On your device and the 8FEED backend. The installation identifier is stored as a one-way hash on the backend. |
| Subscription and purchase data Store, product and plan identifiers, transaction or purchase-token data, purchase/expiry status, and quota usage. | Verify purchases, provide paid features, prevent fraud, manage renewals, and calculate remaining AI usage. | Apple App Store or Google Play and the 8FEED backend. We do not receive your full card or bank details. |
| AI, ad, and service activity Candidate/request counts, model and token usage, latency, error codes, AI results, and aggregated ad eligibility, requests, impressions, and clicks. | Return results, prevent duplicate charges, enforce quotas, measure costs, operate ads, secure the service, and troubleshoot failures. | 8FEED and the providers listed below. |
| Support communications Your email address and anything you voluntarily include in a message. | Answer requests, including access or deletion requests. | Our support email provider and authorized support personnel. |
Identity clarification: 8FEED does not require your name, phone number, postal address, contacts, or social account to operate the core service, and it does not create a named user profile. Operational controls rely on a random installation identifier generated by the app and transaction or purchase identifiers provided by the Apple App Store or Google Play. 8FEED does not directly link these values to your name or contact details. They are used only to authenticate installations, verify subscription status, apply usage limits, prevent abuse, and troubleshoot the service—not to determine your real-world identity or build a separate behavioral profile.
Location clarification: 8FEED reads location already embedded in photos to power place search. It does not need your live device location for that feature. The private location index stays on the device and is not included in AI requests.
2. Analytics, ads, maps, and stores
- Google Mobile Ads and User Messaging Platform (iOS and Android): depending on your consent and region, Google may process IP-derived approximate location, ad/device identifiers, app interactions, and diagnostics for ad delivery, measurement, and fraud prevention. Ad privacy choices are available in 8FEED Settings where required. See Google Advertising and the Google Privacy Policy.
- Google Analytics for Firebase (Android): automatically processes an app-instance identifier, app sessions and interactions, approximate location, device/app information, and purchase events for analytics. See Firebase Privacy and Security.
- Maps: iOS uses Apple MapKit and Android uses Google Maps Platform. Map providers may receive map viewport, interaction, device, and network information under their own privacy terms. 8FEED does not send the private photo-location index to the map provider.
- Subscriptions: Apple and Google process payment information and provide transaction status to 8FEED. Their respective privacy policies apply to store payments.
3. AI processing and retention
AI requests are sent only after you initiate curation. The 8FEED private queue temporarily holds the reduced thumbnails and request snapshot while the job is queued or processing, then clears that request content after success or failure. We retain AI results and limited usage metadata as needed for result delivery, idempotency, quotas, security, billing, and troubleshooting.
8FEED sends OpenAI Responses API requests with provider storage disabled. Under OpenAI's published API data controls, API content is not used to train models by default unless the customer opts in, while abuse-monitoring data may be retained for up to 30 days or longer when legally required.
4. Sharing and sale
We share data only with processors needed to provide the service: OpenAI for optional AI curation; Google for ads, consent, Android analytics, and Android maps; Apple and Google for purchases; and hosting, database, security, and support providers. We do not sell your photos, prompts, location index, or personal information for money. Advertising-related processing by Google may be treated as "sharing" or targeted advertising under some laws; applicable consent and device controls are provided.
We may also disclose information when required by law, to protect users or the service, or as part of a business transfer with appropriate safeguards. We expect service providers to protect information consistently with this policy and applicable law.
5. Retention and deletion
- On-device data: sessions, local analysis caches, preferences, AI results, and the location index remain until you delete relevant sessions/data or uninstall the app. Uninstalling does not delete your original photo library items.
- Backend data: installation, entitlement, AI-result, quota, advertising counter, and operational records are retained while needed to provide the service and thereafter only for legitimate security, fraud, accounting, dispute, and legal obligations. Purchase records may be retained for the legally required period.
- AI queue content: reduced thumbnails and the queued request snapshot are cleared from our private job queue after the job succeeds or fails.
- Third parties: Google, Apple, and OpenAI retain data under their own policies and configured controls.
6. Your choices and rights
- Limit or revoke photo-library access in iOS or Android system settings. Core photo features may stop working.
- Do not start AI curation if you do not want thumbnails or written directions sent to our AI processor.
- Manage ad consent from 8FEED Settings where the privacy option is available, and manage advertising identifiers in device settings.
- Delete individual saved sessions in the app; uninstall the app to remove its remaining local data.
- Request access, correction, restriction, objection, or deletion of backend data by emailing [email protected] with the subject 8FEED Privacy Request. We may request limited information to verify the installation and will respond as required by applicable law.
7. Security and international processing
We use transport encryption, pseudonymous identifiers, hashed server credentials, access controls, and data minimization. No system is perfectly secure. Providers may process data in South Korea, the United States, or other countries where they operate, subject to applicable transfer safeguards.
8. Children
8FEED is not directed to children under 13, or under 14 in South Korea, and we do not knowingly create profiles for them. A parent or guardian who believes a child has provided data should contact us for deletion.
9. Changes and contact
We may update this policy when features, providers, or laws change. We will update the effective date and provide additional notice when required.
Privacy contact: [email protected]
Address: 602 Yeongdong-daero, Gangnam-gu, Seoul 06083, Republic of Korea