Here is the English version of our Privacy Policy. If you prefer the Italian version, click here.

Privacy Policy

Last Updated: July 29, 2025

This Privacy Policy describes how Stephen AI collects, uses, and shares information when you use its mobile application, Stephen AI. Stephen AI is deeply committed to protecting your privacy and handling your data in a transparent and responsible manner, especially for its younger users.

Please read this Privacy Policy carefully. By using the Stephen AI App, you consent to the collection and use of information in accordance with this policy. If you do not agree with the terms of this policy, please do not use the App.

1. Introduction to Stephen AI

Stephen AI is a mobile application designed to assist users, including elementary and middle school students, with their homework. Users can upload images of problems and ask questions to receive step-by-step solutions and feedback. Stephen AI's goal is to provide a safe, helpful, and engaging learning environment.

2. Information Stephen AI Collects

Stephen AI collects various types of information to provide and improve its services to you.

2.1. Information You Provide Directly

When you create an account, communicate with Stephen AI, or use certain features, you provide Stephen AI with the following personal information:

  • Account Information (Collected at Sign-Up):
    • Email Address: Collected during email/password sign-up or via Google Sign-In. It is used for authentication, communication, and account management.
    • Password: Collected for email/password sign-up. Your password is never stored in plaintext; it is securely encrypted and managed by Google Firebase Authentication.
    • Display Name: If you use Google Sign-In, Stephen AI may receive your display name (first and last name) from your Google account.
  • Profile Information (Collected ONLY After Subscription Purchase): This information is collected to personalize your experience and for demographic purposes. We may ask you to complete your profile after you have verified your account or subscribed to our services.
    • Full Name: For personalization (e.g., "Hi, [Your Name]!").
    • Country: Used to determine the appropriate currency for subscription pricing and for general demographic understanding.
    • Date of Birth (DOB): Collected for demographic understanding and to help Stephen AI identify users who may be subject to additional privacy protections (e.g., under 13).
    • Gender: For demographic understanding.
    • Language Preference: To provide the App's interface and AI responses in your chosen language.
  • Communications and Feedback:
    • Chat Messages: When you interact with the AI (e.g., asking follow-up questions), your questions and the AI's responses are processed by Stephen AI's backend. A temporary chat history is maintained in your app session to facilitate the ongoing conversation with the AI. This session-based chat history is sent to Stephen AI's backend for context.
    • Feedback Messages: If you submit feedback to Stephen AI via the App's settings, Stephen AI collects your message, your user ID, email, the timestamp of your request, and your language preference to respond to your concerns and improve the App.
  • User-Generated Content (Images):
    • Math Problem Photos/Images: When you use your camera or select images from your device's gallery to solve math problems, these images are first cropped locally on your device. The cropped image data is then temporarily uploaded to Stephen AI's Python backend to be processed by the AI.

2.1.1. Referral Program Information

  • Referral Code: When you create an account, we generate a unique referral code for you. If another user signs up using your code, we process this information to grant rewards. We also collect the referral code you might enter during sign-up.

2.2. Information Collected Automatically

When you access and use the App, Stephen AI automatically collects certain information about your device and usage:

  • Device Information:
    • Device Identifier: Stephen AI collects a unique device identifier (Android ID for Android devices or `identifierForVendor` for iOS devices). This is stored in its database (`lastDeviceId`) and used to enforce device limits (e.g., limiting an account to a maximum of 2 active devices at a time) and for security purposes. This identifier is not used for cross-app tracking.
    • Device Type and Operating System: Information about your mobile device (e.g., iPhone, Android phone, iOS version, Android version) for compatibility, analytics, and debugging.
  • Usage Data:
    • Credits: Stephen AI keeps track of your credit balance, which is used to access the AI problem-solving features.
    • Timestamps: Stephen AI logs timestamps related to your account creation (`createdAt`), subscription events (start, renewal, cancellation), and AI interactions.
    • Backend Logs: Stephen AI's backend servers (Firebase Cloud Functions and Python Flask App) automatically log standard operational logs. These logs may include your IP address, request details (e.g., endpoint accessed, parameters), and timestamps, which are used for operational monitoring, security, debugging, and performance analysis.
  • Location Information (Inferred):
    • IP Address: Your IP address is used to infer your country (via `https://ip-api.com/json`) for the sole purpose of displaying localized subscription prices (e.g., EUR for European countries, AUD for Australia, USD for others). Stephen AI does not collect or store precise geolocation data.

2.3. Information from Third Parties

Stephen AI integrates with and receives certain information from third-party services that are essential for the App's functionality:

  • Google (via Firebase Authentication and Google Sign-In): When you sign in with Google, Stephen AI receives your Google account ID, email address, and potentially your display name. Firebase also provides the underlying infrastructure for Stephen AI's database (Cloud Firestore) and serverless backend (Cloud Functions).
  • Google Play Billing and Apple In-App Purchases (for Payments and Subscriptions): When you subscribe to our premium services, payment is securely processed through the native in-app purchase platforms provided by Google (for Android) and Apple (for iOS). We do not directly collect or store your sensitive payment card data. These platforms provide us with non-sensitive payment-related information, including:
    • A unique order or transaction ID.
    • Your subscription status (e.g., active, canceled, in a grace period).
    • Information about when your subscription is due to renew or when it will expire.
  • OpenAI (for AI Problem Solving and Chat): Your uploaded images (Base64 encoded) and chat messages (including profile context such as country, language, DOB for AI personalization, if provided after subscription) are sent to OpenAI's API (`gpt-4o-mini` model) for the purpose of generating math solutions and chat responses. OpenAI processes this data to provide the AI service. Stephen AI does not control OpenAI's data retention practices, but Stephen AI ensures personal identifiers are not included directly in prompts beyond what is needed for the AI function (e.g., language preference).
  • IP-API.com: Your IP address is sent to `https://ip-api.com/json` to infer your country for localized pricing.

3. How Stephen AI Uses Your Information

Stephen AI uses the information it collects for the following purposes:

  • To Provide and Maintain the App: To operate, maintain, and provide all the features of the Stephen AI App, including account creation, AI problem-solving, chat functionality, and subscription services.
  • To Personalize Your Experience: To tailor the App's content, language (based on your preference), and theme (light/dark mode) to your preferences. For subscribers, AI responses may also be influenced by your provided country, language, and date of birth to offer more relevant tutoring.
  • To Process Transactions: To manage your subscriptions, securely process payments through native Google or Apple billing, track your credits, and manage trial periods.
  • To Improve and Develop the App: To understand how users interact with the App, analyze usage patterns, identify trends, fix bugs, and develop new features and services. This includes analyzing aggregated and anonymized usage data.
  • To Communicate with You: To send you important service-related communications, security alerts, and support messages related to your account or the App. Stephen AI does not send promotional marketing emails.
  • For Security and Fraud Prevention: To protect your account and the App from unauthorized access, fraud, and other malicious activity, including enforcing device limits using your device identifier.
  • To Comply with Legal Obligations: To meet its legal and regulatory requirements, such as tax obligations, financial reporting, and responding to valid legal requests.
  • To administer our referral program, track successful referrals and grant rewards.

4. How Stephen AI Shares Your Information

Stephen AI does not sell your personal information. Stephen AI may share your information with third parties only in the following limited circumstances:

  • With Service Providers: Stephen AI shares your information with the third-party service providers listed in Section 2.3, strictly for the purpose of enabling them to perform services on Stephen AI's behalf (e.g., authentication, database hosting, payment processing, AI model inference, country detection). These providers are contractually obligated to protect your information.
  • For Legal Reasons: Stephen AI may disclose your information if required to do so by law, court order, or in response to valid requests by public authorities (e.g., government agencies). Stephen AI may also disclose information to enforce its terms of service, protect its rights, privacy, safety, or property, or that of its users or the public.
  • In Case of Business Transfer: If Stephen AI is involved in a merger, acquisition, or sale of all or a portion of its assets, your information may be transferred as part of that transaction. Stephen AI will notify you via email and/or a prominent notice on its App of any change in ownership or uses of your personal information, as well as any choices you may have regarding your personal information.
  • When You Share Content: If you use the app's features to share content (such as your referral code) with others, you will be using your device's native sharing capabilities. Information will be shared with the application or service you select, and that sharing will be governed by that service's privacy policy.

5. Data Retention

Stephen AI retains your personal information for as long as your account is active or as needed to provide you with services. Stephen AI also retains and uses your information as necessary to comply with its legal obligations, resolve disputes, and enforce its agreements.

  • Account Information (Email) and Device ID: Retained as long as your account is active.
  • Profile Information (Full Name, Country, DOB, Gender, Language): Retained as long as your account is active. This data is only collected after subscription.
  • Images: Images uploaded for problem-solving are temporarily stored on Stephen AI's Python backend during processing and are immediately deleted after the AI response has been generated and sent to the App. They are not retained for long-term storage.
  • Chat History: Chat messages are stored in memory within your App session for contextual AI interaction. They are sent to Stephen AI's Python backend for processing by OpenAI but are not persistently stored on Stephen AI's backend servers. Feedback messages, however, are stored in Stephen AI's Firestore database.
  • Payment-related Data (customer ID, subscription ID, renewal dates): Retained for as long as needed for subscription management, financial record-keeping, and compliance.

6. Your Rights and Choices

Depending on your location and applicable data protection laws, you may have certain rights regarding your personal information:

  • Access and Correction: You can access and update most of your profile information directly within the App's settings (for subscribers).
  • Deletion: You can request the deletion of your account and associated personal data by contacting Stephen AI directly. Please note that some information may be retained for legal or operational purposes (e.g., financial records, aggregated usage data).
  • Marketing Opt-Out: Stephen AI does not send promotional marketing emails. Stephen AI only sends essential service-related communications.
  • Device Permissions: You can manage your camera and photo gallery permissions through your device's operating system settings.
  • Consent: For sign-up, you are required to agree to this Privacy Policy. For users who subscribe, their payment and explicit acceptance of the Privacy Policy on the subscription screen serves as our method of obtaining verifiable consent.

7. Data Security

Stephen AI implements robust technical and organizational security measures to protect your information from unauthorized access, alteration, disclosure, or destruction. These measures include:

  • Using secure communication protocols (HTTPS) for all data transmission between the App, Firebase, and Stephen AI's Python backend.
  • Storing data in secure Firebase services (Firebase Authentication, Cloud Firestore, Cloud Functions), which are managed by Google and adhere to industry-standard security practices.
  • Utilizing Google Play Billing and Apple In-App Purchase systems for all payment processing, ensuring your sensitive financial data is handled by secure, platform-native services.
  • Limiting access to personal data to authorized personnel only.
  • Temporary storage and immediate deletion of image files on Stephen AI's Python backend after processing.

However, no method of transmission over the Internet or method of electronic storage is 100% secure. Therefore, while Stephen AI strives to use commercially acceptable means to protect your personal information, it cannot guarantee its absolute security.

8. International Data Transfers

Your information, including Personal Data, may be transferred to and maintained on computers located outside of your state, province, country, or other governmental jurisdiction where the data protection laws may differ from those of your jurisdiction. Stephen AI's primary service providers (Google, Apple, OpenAI) operate globally. By using the App, you consent to such transfers. Stephen AI ensures such transfers comply with applicable data protection laws by relying on appropriate safeguards (e.g., Standard Contractual Clauses, Privacy Shield frameworks where applicable).

These additional profile fields are requested only after a subscription is purchased and parental/guardian verification is completed, not at free sign-up.

9. Children's Privacy (Important for Elementary and Middle School Students)

Stephen AI is designed for and targeted at elementary and middle school students. Stephen AI is committed to protecting the privacy of children and complies with applicable laws, including the Children's Online Privacy Protection Act (COPPA) in the United States, where relevant.

  • Age of Users: Stephen AI collects Date of Birth (DOB) during profile completion for subscribers. This helps Stephen AI identify users who may be subject to additional privacy protections.
  • Data Minimization for Non-Subscribers/Free Trial Users:
    • During the sign-up process and free trial, Stephen AI only collects an email address (for authentication) and a device identifier (for security and fraud prevention, such as enforcing device limits).
    • Stephen AI does not collect other personal profile information (such as full name, country, DOB, gender, or language preference) from users until they proceed with a paid subscription.
  • Verifiable Parental Consent via Subscription Payment:
    • For users who choose to subscribe, Stephen AI implements a payment-based verifiable parental consent mechanism. The act of making a payment through the Google Play Store or Apple App Store, combined with an explicit checkbox on the subscription screen indicating acceptance of this Privacy Policy, serves as our method for obtaining verifiable consent from a parent or legal guardian.
    • Stephen AI assumes the individual making the payment is the parent or legal guardian, thus providing consent for the collection of profile information from a minor user associated with that subscription.
  • No Behavioral Advertising: Stephen AI does not allow third-party behavioral advertising within its App. Stephen AI does not use any user's personal information, especially children's, for targeted advertising, profiling, or remarketing.
  • User-Generated Content: Images uploaded for problem-solving and chat messages are processed for the sole purpose of providing the AI functionality. Stephen AI does not display user-generated content publicly or share it with third parties for purposes other than the provision of the stated service (i.e., sending to OpenAI for AI inference).
  • Parents' Rights: Parents and legal guardians have the right to:
    • Review the personal information collected from their child.
    • Request the deletion of their child's personal information.
    • Refuse further collection or use of their child's information.
    To exercise these rights, please contact Stephen AI using the information in the "Contact Us" section below. Stephen AI may ask you to verify your identity before fulfilling such requests.

10. Account and Data Deletion

If you no longer wish to use Stephen AI and would like to delete your account and all associated personal data, please send a request to info.stephenai@gmail.com. Include the email address associated with your Stephen AI account for verification.

Steps to request deletion:

  1. Send an email to info.stephenai@gmail.com with the subject line: "Account Deletion Request".
  2. In your message, confirm your request and include the email used to register your Stephen AI account.
  3. Our team will verify the request and complete the deletion process within 7 days.

Data that will be permanently deleted:

  • Email address
  • Full name (first and last name)
  • Date of birth
  • Gender
  • Country and language
  • Device information (including lastDeviceId and devices)
  • Subscription details (purchase transaction IDs, subscription status, subscription date, renewal timestamps)
  • Account creation timestamp
  • Credit balance and referral code
  • Verified status
  • Referral code
  • Chat session history (if stored)
  • Feedback messages

Data that may be retained:

  • Google and Apple payment logs: Required for financial, accounting, and legal obligations.
  • Aggregated or anonymized usage statistics: Retained for operational analysis and cannot be linked to any single individual.

Stephen AI does not directly store credit card details or billing addresses. All payments are securely processed through native Google or Apple billing systems, depending on the operating system.

For subscription management and restore purchases, we may store Google Play purchase tokens and/or Apple iOS receipts (including JWS) in Firestore, kept securely and accessible only to authorized services.

11. Changes to This Privacy Policy

Stephen AI may update its Privacy Policy from time to time. Stephen AI will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last Updated" date at the top. You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.

12. Contact Us

If you have any questions or concerns about this Privacy Policy, Stephen AI's data practices, or wish to exercise your rights, please contact Stephen AI at:

Email: info.stephenai@gmail.com
Website: stephenai.co