Privacy Policy
This Privacy Policy explains how MORF (“MORF”, “we”, “us”) collects, uses, and protects your information when you use the MORF application, website, and related services (the “Service”). Because the Service processes photographs of your face, we treat your privacy with particular care. By using the Service, you agree to this Policy.
1. Information We Collect
- Identity & contact: name, email address, and WhatsApp/phone number.
- Intake responses: the answers you provide in the funnel (for example goal, occupation, lifestyle inputs, and free-text notes).
- Facial images: the photographs you submit for analysis, and features derived from them.
- Payment information: processed by Stripe. We receive confirmation and limited metadata (such as status and the last digits/brand), but not your full card number.
- Usage & device data: basic technical information needed to operate and secure the Service.
2. Facial Data
Your facial images may be considered sensitive personal information in some jurisdictions. We process them only to provide the analysis you request and to operate and improve the Service, on the basis of your explicit consent. We do not sell your facial images, and we do not use them for advertising. You may withdraw consent and request deletion at any time (see “Your Rights”).
3. How We Use Your Information
- to deliver facial analysis, reports, and any professional review you request;
- to process payments and prevent fraud;
- to communicate with you about your results and support requests;
- to maintain, secure, and improve the Service; and
- to comply with legal obligations.
4. How We Share Information
We share information only as needed to run the Service:
- Reviewing professionals who provide the doctor-reviewed component of your analysis, under confidentiality obligations;
- Stripe, our payment processor, to complete transactions;
- AI & infrastructure providers that help generate analysis and host the Service, under contractual data-protection terms;
- Legal & safety recipients where required by law or to protect rights and safety.
We do not sell your personal information.
5. Data Retention
We retain your information for as long as needed to provide the Service and for legitimate business or legal purposes. You may request deletion of your account and associated data, after which we will delete or anonymize it except where retention is legally required.
6. Security
We use technical and organizational measures — including encryption in transit, access controls, and secure infrastructure — to protect your information. No method of transmission or storage is completely secure, but we work to protect your data and to respond promptly to any incident.
7. Your Rights
Depending on your location, you may have the right to access, correct, delete, or export your personal information, to object to or restrict certain processing, and to withdraw consent. To exercise these rights, contact us at hello@usemorf.ai. We will respond within the timeframe required by applicable law (including GDPR and CCPA where relevant).
8. International Transfers
Your information may be processed in countries other than your own. Where required, we use appropriate safeguards for such transfers.
9. Children
The Service is intended for users aged 18 and older. We do not knowingly collect information from children. If you believe a minor has provided us information, contact us and we will delete it.
10. Changes to This Policy
We may update this Policy from time to time. Material changes will be posted here with a new “last updated” date.
11. Contact
For privacy questions or requests, contact us at hello@usemorf.ai.
