Privacy Policy (GDPR Compliant)
Effective Date: December 30, 2025 | Last Updated: December 30, 2025
SkinGuide ("we", "us", or "our") operates www.skinguide.beauty (the "Site"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information in compliance with the General Data Protection Regulation (GDPR).
1. Data Controller
SkinGuide is the data controller responsible for your personal data.
Contact: info@skinguide.beauty
2. Information We Collect
- Account Information: Name, email address, profile photo (via Google Sign-In)
- Skin Type Assessment Data: Your questionnaire answers and calculated skin type
- User-Generated Content: Product reviews and ratings you submit
- Usage Data: Analytics data via Google Analytics (with your consent)
- Technical Data: IP address, browser type, device information (anonymized)
3. Legal Basis for Processing
We process your personal data based on:
- Consent: You provide explicit consent for Google Analytics tracking
- Contract Performance: To provide skin type assessment services
- Legitimate Interest: To improve our service and prevent fraud
4. How We Use Your Information
- To provide personalized skin type analysis and recommendations
- To save and display your results and skincare routine
- To display your reviews to other users (publicly visible)
- To improve our service through analytics (with consent)
- To comply with legal obligations
5. Data Storage & Retention
Where: Data is stored on Google Cloud Platform (Firebase) servers in the United States with GDPR-compliant safeguards.
How Long:
- Account data: Until you delete your account
- Skin type results: Until you delete your account
- Product reviews: Until you delete your account or request removal
- Analytics data: 26 months (Google Analytics default)
6. Third-Party Services
- Google Authentication: For secure sign-in (Privacy Policy)
- Firebase/Firestore: For secure data storage (Privacy Policy)
- Google Analytics: For website analytics (requires your consent)
We do not sell your personal data to third parties.
7. Your GDPR Rights
Under GDPR, you have the following rights:
- Right to Access: View all data we hold about you
- Right to Rectification: Correct inaccurate data
- Right to Erasure ("Right to be Forgotten"): Delete your account and all data
- Right to Data Portability: Download your data in JSON format
- Right to Withdraw Consent: Opt out of analytics tracking anytime
- Right to Object: Object to processing based on legitimate interests
- Right to Lodge a Complaint: File a complaint with your local data protection authority
8. How to Exercise Your Rights
Contact us at: info@skinguide.beauty
9. Cookies & Tracking
We use cookies for:
- Essential Cookies: Authentication and session management (required)
- Analytics Cookies: Google Analytics usage statistics (requires your consent)
- Marketing Cookies: Personalised product recommendations (requires your consent)
You can manage cookie preferences via the cookie banner or browser settings. Every consent decision is recorded with a timestamp for your protection.
10. Data Security
We implement industry-standard security measures:
- HTTPS encryption for all data transmission
- Firebase Authentication with OAuth 2.0
- Firestore security rules to prevent unauthorized access
- Regular security updates and monitoring
11. Children's Privacy
Our service is not intended for users under 13 years old. We do not knowingly collect data from children. Google Sign-In requires users to be 13+ per Google's Terms of Service.
12. International Data Transfers
Data may be transferred to and processed in the United States. We ensure adequate safeguards through Google Cloud Platform's GDPR-compliant data processing agreements.
13. Changes to This Policy
We may update this policy. Changes will be posted on this page with an updated "Last Updated" date. Continued use after changes constitutes acceptance.
14. Contact Us
For privacy questions or to exercise your rights:
Email:info@skinguide.beauty
Data Protection Officer: info@skinguide.beauty
