Privacy & permissions
Your photos, your choices. This notice explains how Weya handles data when you use the Android app.
Pre-launch notice: operator, support contact, generation provider, storage region and retention details are awaiting confirmation. This draft must be completed before public release.
Data we process
- Selected photos and prompts. The app accesses the photo you select through Android’s system picker. When you press Generate and account checks succeed, your selected photo and prompt are uploaded for image or video generation. Result media and task status are associated with your account.
- Account and device information. A stable Android ID is used as the account device identifier. The app sends product source, platform, app build, device model, user ID and authentication token to the backend to provide the service and preserve account access.
- Attribution identifiers. Adjust and Google Play services may process an advertising ID, Adjust identifier and app/device information for installation attribution and measurement. Adjust initialization starts when the app launches. Identifier availability depends on device settings and consent requirements.
- Purchases. Package, order, subscription, purchase-token and payment-status information is processed to verify payments and grant credits. Card details are entered at the payment provider, not collected in the app’s own payment form.
- Diagnostics. The app records an uncaught crash locally with device model, Android version and app version for troubleshooting. This file is not automatically uploaded by this implementation.
Android permissions and access
| Access | Purpose | Your control |
|---|---|---|
| Internet | Login, templates, photo upload, generation, results and payment verification. | Required to use online functions. |
| Advertising ID | Installation attribution through Adjust and Google Play services. | Manage advertising privacy in Android settings. |
| Photo selection | Read the specific photo chosen using the system document picker. | Choose a photo or cancel. No broad photo-library permission is requested. |
| Downloads | Save a result through Android DownloadManager. | Download only when you tap the result’s download action. |
This implementation does not request microphone, camera, contacts or location permissions. Picking a photo does not itself upload it. Generation is the upload action.
Service providers and sharing
Data is sent to the configured Weya backend and the storage and generation services needed to fulfill your request. The backend selects AWS/R2 or OSS upload paths. Generation provider: pending operator confirmation. Storage location: pending operator confirmation.
- Adjust privacy information — attribution SDK.
- Google privacy information — Google Play services and billing.
Whether uploaded content is retained, reused for model training, or processed in other countries must be confirmed with the actual backend and generation provider before publishing this notice. No unsupported claim about model training is made here.
Retention and security
Retention periods for uploaded originals, generated results, account records and payment records are pending operator confirmation. The app allows deletion of creations and accounts; backend deletion scope, processing time and legally required retention must be specified before launch.
API and checkout requests use HTTPS. Authentication tokens are stored in the app’s private preferences. Object-storage uploads use signed links or temporary credentials; the app’s bearer token is not forwarded to storage providers.
Your data controls
You can delete a creation from Results. For account deletion, open your account using the settings icon and choose Delete account. Confirmation submits a request to the backend. Deleting your account does not automatically cancel Google Play subscriptions; manage them separately in Google Play.
Request account and associated-data deletion. You may also contact the operator about access, correction or deletion.
Children and policy changes
The app’s intended age group and applicable parental-consent measures must be set by the operator before release. If this policy changes, the operator will update this page and its policy date. Material changes requiring consent should be communicated before the affected processing begins.