Privacy
Easel is made by Nutmeg Studios LLC. This page says what the app and this site collect, who else sees it, how long it is kept and how to have it deleted. Questions and requests: support@easel.art.
No account
There is no sign-up, no sign-in and no password. Easel never asks for your name, your email address, your phone number or your date of birth, and it does not read your contacts, your location or your photo library.
On first launch the app asks our server for an anonymous session. The server generates a random identifier — a UUID with nothing in it derived from you or your phone — and the app keeps it, with a signed token, in the iPhone Keychain. If the Keychain refuses the write, the app falls back to an encrypted file inside its own container. Everything below is filed against that identifier, which is what lets your credits and your Gallery survive closing the app.
What Easel collects
- The photo you choose. You pick every photo yourself from the system picker or the camera. The app scales it down and uploads it to our server, where it is stored as a file and recorded in our database with its size and the time it arrived.
- Anything you type. The words you use to describe a look, or to change a picture you already have, are stored on the record for that render.
- The pictures Easel makes. Results are stored on our server so the Gallery still has them the next time you open the app.
- The anonymous device identifier described above, and its session token.
- Purchases. When you buy a credit pack, Apple gives us a signed transaction. We store the product bought, Apple's transaction identifier, whether it came from Apple's production or sandbox environment, and the signed transaction itself, so a purchase cannot be claimed twice. We never see your card, your billing address or your Apple Account name. Apple takes the payment.
- Your credit balance and its history — every credit granted, spent and returned, with the reason.
- Basic diagnostics. For each render: which look, the model used, how long it took, our estimated cost, and the error if it failed. Alongside that we record plain events — a session started, a photo uploaded, a render delivered, a render failed — against the device identifier, so we can see whether the app is working.
- Ordinary server logs. Our host records requests to the server, including IP addresses, as any web host does.
What happens on the phone and stays there
Easel looks for faces in your photo on the device, using Apple's Vision framework, so it can hide the looks that need a person in the frame. It counts rectangles. No faceprint, template or measurement is created, saved or sent anywhere.
Who else sees your photo
Two kinds of company see your photograph: our host, and the AI companies that make the picture. Four in total, named below.
- Our host, Netlify. Easel's server, the files holding your photos and results, and the database holding the records above all run on Netlify. Netlify processes them for us and for no purpose of its own.
- Our AI partners. To make a picture, your photograph — or, when you change a picture you already have, that earlier result — is sent from our server to fal.ai, which runs the image model that does the work. The model we use is OpenAI's GPT Image. If that call fails for a technical reason, we try once more with a Google image model, Nano Banana 2, also through fal.ai. fal.ai does not publish whether it serves these two models itself or passes the request on to the company that made them, so treat the maker of the model as having received your photograph too. The image is sent inside the request itself and is never given a public address, so it is not published or linkable.
Apple also has a part: it handles the payment and tells us the transaction is genuine.
We do not sell your photos, we do not use them to advertise to you, and Easel does not use them to train any model. What our AI partners do with what we send them is governed by their own terms, which we have not restated here.
Before your first upload the app tells you your photo will leave the device and asks you to agree. If you do not agree, nothing is uploaded.
No ads, no tracking, no analytics companies
The app contains no third-party SDKs at all — no advertising network, no attribution service, no crash or analytics product. It does not read the advertising identifier or the vendor identifier, and it never asks for permission to track you, because it does not. Nothing about you is sold or shared for advertising.
This website sets no cookies and carries no analytics or tracking pixels. It loads its typeface from Google Fonts, so Google receives your IP address and browser details when a page here loads; that is the only third party this site contacts.
Why we keep it
To make the picture you asked for and give it back to you; to keep your Gallery; to run the credit system and honour what you have paid for; to stop the same device flooding the service; and to find out why something broke. Nothing is used for any other purpose.
How long it is kept, and how to delete it
Plainly: nothing expires on its own. Your photos, the pictures made from them and the records above are kept until you delete them or ask us to. We would rather say that than publish a retention period we do not actually enforce.
What you can do yourself:
- Delete a picture from the Gallery. That removes the photograph it was made from, every picture made from that photograph, and all of their records, from Easel's servers.
- Ask us for the rest. Email support@easel.art and say what you want removed — a single picture, everything made from one photograph, or everything held for your device. We will need enough to identify the device session, so send the request from the address you can be answered on and tell us roughly when you used the app.
Deleting the app from your iPhone does not delete anything from our servers, and it may take the stored session with it — so do the deletion first, or write to us.
Records we have to keep for a purchase — Apple's transaction identifier and our own accounting of credits — are kept for as long as tax and accounting rules require, and are not linked to a photograph.
Your rights
Depending on where you live you may have the right to ask what we hold about you, to get a copy of it, to have it corrected or deleted, to object to or restrict what we do with it, and to complain to your data protection authority. Easel has no account screen, so all of these go through one address: support@easel.art. We do not charge for them and we do not treat anyone worse for asking.
Because there is no account, the only handle on your data is the anonymous device session. We cannot identify you from an email address alone, so a deletion request generally has to name the device session or come from the device itself.
Photographs of people
Only upload photographs of people who are happy to be pictured this way. A photograph of a face can count as sensitive or biometric information under some laws. Easel does not create or store a faceprint or any biometric template; the photograph itself is sent to our AI partners as described above, and the app asks for your agreement before the first time that happens.
Children
Easel is not directed at children. It is rated 13+ on the App Store and is not for anyone under 13. We do not knowingly collect anything from a child under 13; if you believe a child has used Easel, write to support@easel.art and we will delete what we hold.
Where your data goes in the world
Nutmeg Studios LLC operates from the United States, and our host, our AI partners and Apple process data in the United States and in other countries where they run infrastructure. If you use Easel from outside the United States, what you send is transferred there. Where the law requires a transfer safeguard, we rely on our providers' standard contractual clauses.
Changes
If this policy changes, the new version appears on this page with a new date at the top. A change that materially affects what leaves your device will be put in front of you in the app rather than left here.
Contact
Nutmeg Studios LLC — support@easel.art.