Who We Are
TanPilot is operated by Nikolai Iakubovskii, Calle Emilio Tuya, 37, Gijon, Asturias 33202, Spain. You can contact us at support@tanpilot.com.
Information We Collect
The information we collect depends on how you use the website and app.
- Location data: approximate or precise location, if you grant permission, or a city/ZIP/location query you enter. This is used to fetch UV forecasts and nearby sun conditions.
- UV and routine preferences: saved locations, tanning goals, sunscreen/SPF settings, reminder settings, routine progress, clothing/exposure choices, and similar app preferences.
- Skin-response information: Fitzpatrick skin type, questionnaire answers, skin-tone/routine preferences, optional skin analysis results, and optional camera or photo captures that may include your face if you choose to use those features.
- Health-related app preferences: optional Vitamin D estimates, time-in-daylight tracking, and HealthKit or Health Connect sync settings when enabled. TanPilot is not a medical device.
- Subscription data: product IDs, transaction identifiers, entitlement status, trial state, and renewal status from app stores or subscription infrastructure.
- Support messages: email address, message content, screenshots, diagnostics, and replies if you contact support.
- Technical data: device model, operating system, app version, language, approximate region, IP address, timestamps, usage events, crash logs, and diagnostic data.
How We Use Information
- To provide UV forecasts, hourly UV curves, and location-aware tanning guidance.
- To estimate burn-risk timing, SPF reminder timing, and tanning routine steps.
- To estimate skin tone, Fitzpatrick type, tan-progress signals, and progress history on your device when you choose the skin scan or progress-photo features.
- To save your preferences, places, routines, reminders, and subscription state.
- To send optional notifications such as UV alerts, sunscreen reminders, and trial reminders.
- To process support requests and troubleshoot issues.
- To monitor app stability, prevent abuse, and improve the product.
- To comply with legal, tax, accounting, and platform obligations.
Face Data, Skin Scans, and Progress Photos
The TanPilot camera scan and progress-photo features are optional. If you choose to take or import a photo, the image may include your face. TanPilot uses that image only on your device to estimate skin-tone and tanning-progress signals for your UV and tanning plan.
- No third-party AI: TanPilot does not send skin-scan photos, face data, skin metrics, or progress photos to OpenAI, cloud vision APIs, or any other third-party AI service.
- No biometric identification: TanPilot does not create a faceprint, Face ID profile, identity template, or face-geometry template, and does not use photos to identify you.
- Local storage: accepted skin-scan and progress photos are saved only inside the app's private storage on your device. Derived skin metrics are also stored locally to show your latest profile and progress history.
- Retention: photos and derived metrics stay on your device until you delete an individual progress photo, clear progress photos, clear app data, or uninstall the app. We retain them locally only so the app can show your progress history and restore your latest skin profile.
- Sharing: TanPilot does not share face data or skin-scan photos with third parties. A photo leaves your device only if you choose to share it yourself, for example through the iOS share sheet or in a support email.
- Alternative path: you can use the questionnaire instead of the camera scan.
Legal Bases for EU and UK Users
- Contract performance: providing the app, website, subscription features, and support.
- Consent: optional website analytics, location permission, notifications, optional HealthKit/Health Connect sync, and optional skin analysis.
- Legitimate interests: crash reporting, fraud prevention, security, and product improvement that does not require consent.
- Legal obligation: compliance with tax, consumer, platform, and data protection requirements.
Processors and Third Parties
TanPilot may use the following service providers. The exact list may change as the product launches, but the categories are:
- Cloudflare: website hosting, CDN, security, and UV proxy infrastructure.
- Google Analytics: aggregate website visits and app-store CTA measurement.
- Weather or UV providers: forecast data behind a server-side proxy. Provider API keys are not exposed to the app or website.
- Adapty: subscription entitlement and paywall infrastructure.
- Apple App Store and Google Play: app distribution, purchases, refunds, and subscription billing.
- PostHog: product analytics and feature usage measurement.
- Sentry: crash and error monitoring.
- Google Firebase: optional push notifications, app infrastructure, or diagnostics if enabled.
- Email and support tools: responding to support, legal, and privacy requests.
We do not sell your personal information, and we do not share location or health-related app preferences with third parties for advertising purposes. We also do not share skin-scan photos, face data, or derived skin metrics with third-party AI services.
Location Data
TanPilot needs location context to show the UV Index for your area. You can use a typed location instead of device location where available. If device location is enabled, it is used to request forecasts and display relevant guidance. Location permission can be revoked in your device settings.
HealthKit, Health Connect, and Sensitive Data
If TanPilot offers HealthKit or Health Connect features, those features are optional and require explicit permission. Health-related estimates such as Vitamin D, sun exposure, and burn-risk timing are planning estimates, not medical advice. TanPilot does not use HealthKit or Health Connect data for advertising.
Cookies and Analytics
The website offers optional Google Analytics to measure aggregate visits and app-store CTA clicks. Google Analytics stays blocked until you select “Allow analytics.” Your choice is saved in local storage. If you reject or withdraw consent, TanPilot clears website acquisition data from session storage, removes accessible Google Analytics cookies, and stops sending new analytics events. Use the “Privacy choices” button on any page to change or withdraw consent.
Campaign parameters and referring domains may be used to estimate acquisition source only after consent. Before analytics can load, TanPilot removes TikTok, Google, Microsoft, Meta, X, LinkedIn, and Snapchat click identifiers from the browser URL. Analytics retains only coarse fields such as source, medium, campaign, whether a paid click identifier was present, and its platform. Raw click identifier values are not placed in analytics or session storage. First- and current-source fields remain in session storage only while analytics consent is granted, so navigation between TanPilot pages does not erase the campaign. The mobile app may separately use analytics and crash reporting to understand usage and stability.
Retention
- Local preferences remain on your device until you delete them, clear app data, or uninstall the app.
- Optional skin-scan and progress photos remain on your device until you delete them, clear progress photos, clear app data, or uninstall the app.
- Support messages are kept as long as needed to respond and maintain support history.
- Error logs are generally retained for a limited operational period.
- Analytics data is retained for product analysis and then deleted or aggregated according to provider settings.
- Subscription records may be retained as needed for billing, fraud prevention, accounting, and legal compliance.
International Transfers
TanPilot is operated from Spain and may use providers located in the EEA, the United States, and other countries. Where required, transfers rely on appropriate safeguards such as adequacy decisions, Standard Contractual Clauses, and provider data protection terms.
Security
We use technical and organizational measures such as HTTPS, provider-side access controls, secret separation, rate limiting, and input validation. No method of transmission or storage is perfectly secure.
Children
TanPilot is intended for users aged 13 and older. Users aged 13 to 16 in the EU should use the Service only with parent or guardian consent. If you believe a child under 13 has provided personal data, contact us and we will take appropriate action.
Your Rights
Depending on your location, you may have rights to access, correct, delete, restrict, object to processing, receive a copy of your data, or withdraw consent. To exercise rights, contact support@tanpilot.com. We will respond within the timeframe required by applicable law.
EU Complaints
EU/EEA residents may lodge a complaint with their local supervisory authority. In Spain, the authority is the Agencia Espanola de Proteccion de Datos (AEPD): www.aepd.es.
Changes
We may update this Privacy Policy from time to time. Material changes may be announced on the website, in the app, or by email where appropriate.