Privacy Policy
Last updated: September 15, 2026
AAAI Studio ("we", "us", or "our") develops and operates TextArt for iOS and Android and the website at textart.photo. This Privacy Policy explains what information TextArt processes, why we process it, when it is shared, how long it is kept, and the choices available to you.
1. Scope and Data Controller
AAAI Studio is the data controller for information that we determine how and why to process. Apple, Google, advertising providers, and other services may also act as independent controllers for information they process under their own terms. Questions and privacy requests can be sent to support@aaai.studio.
2. Platform Summary
iOS: TextArt currently uses Google AdMob to show advertising in the free tier. It also uses Firebase services, Apple StoreKit, optional Apple CloudKit backup, Airbridge, Meta technologies, and online stock-image providers as described below.
Android: TextArt uses Firebase services and Google Play Billing for app operation, diagnostics, optional analytics, and subscription verification. Versions with the regional privacy flow use Google's User Messaging Platform at startup and show its message where required. Analytics and campaign-attribution preferences default to enabled; the app uses the outcome of that regional flow to control startup measurement, including automatic enablement where Google reports consent is not required. No additional Settings opt-in is needed for those enabled defaults. Your saved Settings opt-outs always take priority. You can turn off Airbridge marketing attribution separately, or disable both services by turning off Usage analytics. Older production versions keep Analytics off until enabled in Settings and do not activate the new Airbridge integration. Declining optional measurement does not prevent editing, exporting, or purchasing. The Android app includes Google Mobile Ads, so Google Play identifies it as containing ads. All Android ad placements are disabled by default as described in Section 3.4.
3. Information We Process
3.1 Creative Content and Photos
Your projects, text, imported fonts, photos, and exported artwork are created and edited on your device by default. TextArt accesses the camera or photo library only when you choose those features and grant the relevant system permission. We do not upload this creative content to our own servers for editing.
On iOS, if you choose the optional iCloud backup feature, project files and included assets are uploaded to your private Apple CloudKit database so that you can back up and restore them. Android does not currently offer TextArt cloud backup. When you export or share artwork, the destination app or service handles the copy you send under its own privacy practices.
3.2 Technical Identifiers, App Operation, and Purchases
TextArt and its service providers may process a Firebase installation identifier, a pseudonymous Firebase Authentication user ID, app version, operating system, device model, language, country or coarse location inferred from an IP address, network information, timestamps, and security signals such as Firebase App Check or Play Integrity results.
For purchases and subscriptions, Apple StoreKit on iOS or Google Play Billing on Android processes payment details. We receive and store limited purchase information needed to verify and restore access, such as product ID, transaction or purchase token, subscription status, purchase history, and a pseudonymous account or installation token. We do not receive your full card number.
3.3 Analytics, Diagnostics, and Configuration
Firebase Analytics helps us understand feature use and app performance. Optional Android Analytics sends app interactions, screen and feature events, app/device context, and pseudonymous installation identifiers to Google Firebase. Our configured Google Analytics export can copy these events to Google BigQuery for reporting. This is pseudonymous information, not a promise of anonymity; we do not send your design text or photos as Analytics event data.
Android versions with the regional privacy flow check Google's consent information at startup. Android 3.9.15 and later evaluate measurement separately from permission to request ads: an ad-request allowance alone does not authorize Analytics or Airbridge. Where the European consent flow applies, Analytics requires Google's explicit Analytics-storage grant. Applicable US sale, sharing, targeted-advertising opt-outs or Global Privacy Control stop optional measurement. Unreadable or unsupported applicable regional signals keep it off. Elsewhere, the enabled default can apply when Google reports consent is not required and no applicable restriction is present. A pending network update or open privacy form pauses optional collection without treating that temporary pause as a withdrawal; a failed update does not enable measurement. A timeout can retain an allowance only when the region is already known not to require consent and the regional signals permit it. Earlier regional-flow versions used Google's overall request allowance; older production versions offer the Analytics opt-in through Settings. A previous opt-out is preserved. You can change your choices in TextArt Settings and revisit Google's privacy options when available. Disabling Analytics stops future optional Analytics collection, resets locally associated Analytics data, and also stops Android Airbridge tracking. It does not automatically delete events already held by providers or previously exported to BigQuery; see Section 6 for requests.
On iOS and older Android versions without the Do Not Sell control described below, Firebase Crashlytics operates separately from optional Analytics and automatically processes crash reports, stack traces, diagnostics, device and app information, and related installation identifiers for stability and security. Firebase Remote Config delivers feature configuration. Advertising identifiers are not required for these diagnostics.
On Android versions with the Do Not Sell control, Crashlytics automatic report collection follows the same regional allowance, Usage analytics choice, and remote Analytics switch as Firebase Analytics. Turning off Usage analytics or saving Do not sell or share my data stops automatic crash-report uploads as well as Analytics and Airbridge tracking. Crashlytics may retain crash reports locally while automatic collection is disabled and upload them if you later enable collection; changing this setting does not erase reports already held by Firebase. These controls do not disable the security and purchase-verification services needed to operate TextArt.
3.4 Advertising and Attribution
On iOS, Google AdMob may process IP address, device and advertising identifiers, ad interactions, diagnostics, and approximate location inferred from IP to deliver, limit, measure, and protect ads. Premium status may suppress ad presentation, but the app's advertising components and consent controls may still initialize to determine the appropriate mode.
iOS uses Airbridge and Meta technologies for campaign attribution, deep links, and measurement. They may process pseudonymous app, installation, advertising, and event identifiers plus subscription events. Access to Apple's advertising identifier and cross-app tracking is requested through App Tracking Transparency. If you decline, TextArt configures supported partners not to use the advertising identifier for tracking.
In Android versions with the automatic regional privacy flow, the marketing-attribution preference defaults to enabled. In Android 3.9.15 and later, Airbridge also requires its separate regional allowance: it remains off where the European consent flow applies because the current integration does not establish an Airbridge-specific grant. An Analytics-storage grant alone does not enable it. Applicable US opt-outs and Global Privacy Control also stop Airbridge. Earlier regional-flow versions used the same overall allowance as Analytics. The service configuration must permit tracking in every version. Saved Analytics and marketing-attribution opt-outs remain authoritative; neither the bundled enabled service switch nor a remote setting can override them. We can remotely disable Analytics or Airbridge; disabling Analytics also stops Airbridge. Declining marketing attribution still lets you allow Firebase Analytics alone. Turning either choice off stops future Android Airbridge tracking.
When allowed, Android Airbridge may receive an Airbridge-generated installation identifier, your pseudonymous Firebase user ID, app/device and network context including IP address, install-referrer and approved deep-link information, and measured events including purchase/order identifiers, product IDs, value and currency. These support campaign attribution and subscription-event measurement. The Android integration blocks advertising identifiers and App Set ID, does not request precise device location, and does not send your design text or photos to Airbridge. Android does not include Meta's iOS integration.
The Android app includes Google Mobile Ads and Google's User Messaging Platform. Its bundled advertising master switch and each ad-format switch are off by default, but remote configuration enables selected placements in ads-enabled releases. Those releases may show ads to eligible free users. TextArt may request an ad only for a free user whose Premium status has been resolved and only after Google's consent flow permits ad requests. Premium users and users whose entitlement cannot be resolved do not receive Android ad requests. An enabled placement may let Google process IP address, device or advertising identifiers, ad interactions, diagnostics, and approximate location inferred from IP for ad delivery, frequency control, measurement, fraud prevention, and consent management. Android does not include the iOS Meta integration.
On Android versions with the Do not sell or share my data control, saving that choice requests non-personalized ads and Google's restricted data processing for subsequent eligible Google ad requests. TextArt discards previously loaded ads when this choice changes. This does not remove ads or mean that no information is processed: Google may still process information for contextual ad delivery, measurement, security, and fraud prevention under its applicable restrictions. The control is separate from Google's regional privacy-options message; either control remains available where supported, and saving a TextArt choice does not grant missing advertising consent.
3.5 Notifications
If you allow remote notifications, Apple Push Notification service or Firebase Cloud Messaging may process a push token, delivery information, topic subscriptions, and notification interactions. Android messaging auto-initialization remains disabled until the feature is needed. You can disable notifications in your device settings.
3.6 Online Stock Images and Downloaded Resources
When an online stock search feature is available and you use it, the search words you enter, IP address, request metadata, and provider responses may pass through infrastructure operated for TextArt by Cloudflare and to providers such as Pixabay, Pexels, Unsplash, or Openverse. Selected images, templates, fonts, stickers, and configuration files may be downloaded from our content delivery providers and cached on your device.
3.7 Support and Website Use
If you contact support, we process your email address, name if supplied, message, attachments, and related correspondence. When you visit textart.photo, Cloudflare may process IP address, browser and device information, request URLs, timestamps, and security logs to deliver and protect the website.
4. How and Why We Use Information
We use the information described above to provide and secure TextArt; save, restore, and share your work at your direction; verify purchases and Premium access; deliver requested downloads and notifications; diagnose crashes; measure and improve features; prevent fraud and abuse; provide advertising and attribution where applicable; answer support requests; and comply with legal obligations.
Where applicable, our legal bases are performance of a contract, our legitimate interests in operating and securing TextArt, your consent for processing such as tracking or personalized advertising where required, and compliance with law. You may withdraw consent at any time without affecting processing that occurred before withdrawal.
5. Service Providers and Sharing
We disclose information only as needed for the purposes above to:
- Google: Firebase Authentication, optional Analytics on Android, Crashlytics, Firestore, Cloud Functions, Remote Config, Firebase Cloud Messaging, App Check, Google Play Billing, Play Integrity, BigQuery reporting, Google AdMob, and Google's User Messaging Platform.
- Apple: Apple StoreKit, App Store, Apple Push Notification service, and optional iCloud/CloudKit backup.
- Airbridge: iOS attribution and, under the Android regional privacy flow and optional Settings controls described above, Android campaign measurement, approved deep linking, and subscription-event measurement.
- Meta: iOS campaign attribution and event measurement.
- Cloudflare and content providers: website delivery, network security, content delivery, and online stock-image searches.
- Professional advisers, authorities, or a successor: when reasonably necessary to comply with law, protect rights and safety, or complete a corporate transaction subject to appropriate safeguards.
We require service providers acting on our behalf to protect information consistently with this policy and applicable law. Their own processing is also governed by policies including Google's Privacy Policy, Firebase Privacy and Security, Apple's Privacy Policy, Meta's Privacy Policy, and Cloudflare's Privacy Policy.
6. Data Retention and Deletion
- On-device content: remains until you delete it, clear app data, or uninstall the app, subject to device backups you control.
- iCloud content: remains in your private CloudKit database until you delete the backup in TextArt or manage/delete the app's iCloud data through Apple.
- Crash data: Firebase Crashlytics generally retains crash reports and associated identifiers for 90 days before deletion begins.
- Analytics and attribution: provider-held events follow the applicable provider and account retention settings. BigQuery exports are separate copies and do not automatically disappear when you withdraw consent, reset an app identifier, or delete online TextArt data. Some billing reporting tables have no automatic expiration. You can request deletion of identifiable measurement data using the contact process below; we review provider records and exports separately and explain any applicable legal or fraud-prevention exception.
- Push tokens: retained until replaced, invalidated, notifications are disabled, or deletion is requested.
- Purchase and entitlement records: retained while needed to provide or restore access and afterward only as required for accounting, disputes, fraud prevention, or law.
- Support correspondence: normally retained for up to 24 months after the request is closed, unless a longer period is needed for an ongoing issue or legal requirement.
Backups and provider systems may take additional time to complete deletion. We may retain a minimal record when required by law or necessary to prevent fraud, resolve disputes, or enforce agreements.
Android online-data deletion: Open TextArt, go to Settings, choose Delete online data, review the confirmation, and confirm deletion. TextArt requests deletion of the app's pseudonymous Firebase account and associated online TextArt records, then clears the local identity and purchase-state copy. Local designs remain on your device until you delete them or clear the app's data. Store transaction records, fraud-prevention records, backups, logs, and provider records may be retained where required by law or for the limited periods described above. If you cannot access the app, use our dedicated TextArt account and data deletion page or email support@aaai.studio with the subject “TextArt data deletion.” We aim to complete a verified request within 30 days, subject to applicable law and provider processing time.
Provider and export deletion requests: The in-app command does not automatically erase historical Airbridge events or Google Analytics/BigQuery exports. For those records, email support@aaai.studio with the subject “TextArt measurement data deletion” and your platform. Do not send passwords or payment-card details. We may request limited information to find the correct pseudonymous records, coordinate any provider-side deletion, and tell you what was deleted or must be retained. Removing or resetting an identifier can make older records harder to associate with a request.
7. Your Choices and Privacy Rights
Depending on your location, you may have rights to access, correct, delete, restrict, object to, or receive a portable copy of personal data and to withdraw consent. You may also complain to your local data-protection authority.
- Use iOS App Tracking Transparency and any available in-app privacy choices to control tracking and ad consent.
- On Android versions with the regional privacy flow, open Settings → Usage analytics to review the current Firebase Analytics and marketing-attribution choices. Change the checkboxes and select Save choices to apply your selection. Cancel, closing the dialog, or pressing Back does not change your settings. Turning off Analytics also turns off Airbridge; turning off marketing attribution alone leaves Analytics available. Older versions offer an Analytics switch. These choices are optional and do not affect editing, exports, or access to purchases.
- Where shown on Android, select Do not sell or share my data in the same Usage analytics dialog, then Save choices. This switches off Analytics, automatic Crashlytics uploads, and Airbridge, and requests restricted, non-personalized Google ads as described in Section 3.4. Clearing this checkbox does not by itself turn measurement back on; review the separate measurement choices before saving. Cancel leaves all saved choices unchanged. This stops future processing as described above, not historical provider records or exports; use the deletion routes in Section 6 for those records.
- Revisit advertising privacy choices when available or request online-data deletion in Settings. An Analytics or attribution choice does not grant consent for advertising.
- Use device settings to control camera, photo-library, notification, and tracking permissions.
- Delete local projects in TextArt and optional iCloud backups through TextArt's backup controls or Apple's iCloud storage settings.
- Email support@aaai.studio to request access, correction, deletion, portability, or to withdraw consent where an in-app control is unavailable.
TextArt does not currently offer a named sign-in account. It may create pseudonymous technical identifiers to secure the app and verify subscriptions. Because these identifiers do not directly contain your name or email, we may ask for limited device, platform, or transaction information to locate the correct records and protect other users from unauthorized requests. We aim to respond within 30 days, subject to applicable law.
8. California Privacy Notice
We do not sell personal information for money. iOS advertising and attribution, optional Android attribution, and an Android ad placement if enabled may involve disclosures that applicable California law treats as "sharing" for cross-context behavioral advertising. On Android, open Settings → Usage analytics, turn off marketing attribution, and select Save choices; disabling Analytics also stops Airbridge tracking. On iOS, deny tracking and use available advertising privacy choices. You can also email us with the subject "Do Not Sell or Share." We do not discriminate against you for exercising privacy rights.
On Android versions that include it, the Do not sell or share my data checkbox in Settings → Usage analytics is the combined TextArt opt-out described in Sections 3.3, 3.4, and 7. Save choices to apply it. You can also revisit Google's regional privacy options where available. If the control is unavailable or you need help with a provider-held record, email support@aaai.studio with the subject “Do Not Sell or Share.”
9. International Transfers
We and our providers may process information outside your country. Where required, transfers rely on safeguards such as adequacy decisions, contractual protections including Standard Contractual Clauses, or another lawful transfer mechanism.
10. Security
We use reasonable administrative, technical, and organisational safeguards, including encrypted network connections where supported, access controls, pseudonymous identifiers, and platform security services. No system is completely secure, so we cannot guarantee absolute security.
11. Children's Privacy
TextArt is not directed to children under 13 or the minimum age required in their country. We do not knowingly collect personal information from children in violation of applicable law. If you believe a child provided information improperly, contact us so we can investigate and delete it where required.
12. Changes to This Policy
We may update this policy as TextArt, its platforms, or legal requirements change. We will post the revised version here, update the date above, provide additional notice when appropriate, and request new consent before materially different processing where required by law.
13. Contact Us
AAAI Studio
Email: support@aaai.studio
Website: textart.photo