Effective date: Nov 2, 2018
Welcome to Prisma (“Prisma,” “we,” “us” or “our”). Prisma provides a fast, beautiful and fun way for you to stylize your photo. Just snap a photo, choose a style to transform the look and feel, and share!
By using our Service you understand and agree that we are providing a platform for you to stylize content.
Our Policy applies to all visitors, users, and others who access the Service (“Users”).
We collect the following types of information.
Information you provide us directly. If you are unregistered user we collect User Content (including your photos and materials with applied styles) that you post through the Service.
Analytics information. We use third-party analytics tools to help us measure traffic and usage trends for the Service. These tools collect information sent by your device or our Service, including the web pages you visit, add-ons, and other information that assists us in improving the Service. We collect and use this analytics information with analytics information from other Users so that it cannot reasonably be used to identify any particular individual User.
Log file information. Log file information is automatically reported by your browser each time you make a request to access (i.e., visit) a web page or app. It can also be provided when the content of the webpage or app is downloaded to your browser or device.
When you use our Service, our servers automatically record certain log file information, including your web request, Internet Protocol (“IP”) address, browser type, referring / exit pages and URLs, number of clicks and how you interact with links on the Service, domain names, landing pages, pages viewed, and other such information. We may also collect similar information from emails sent to our Users which then help us track which emails are opened and which links are clicked by recipients. The information allows for more accurate reporting and improvement of the Service.
Device identifiers. When you use a mobile device like a tablet or phone to access our Service, we may access, collect, monitor, store on your device, and/or remotely store one or more “device identifiers.” Device identifiers are small data files or similar data structures stored on or associated with your mobile device, which uniquely identify your mobile device. A device identifier may be data stored in connection with the device hardware, data stored in connection with the device’s operating system or other software, or data sent to the device by Prisma.
A device identifier may deliver information to us or to a third party partner about how you browse and use the Service and may help us or others provide reports or personalized content and ads. Some features of the Service may not function properly if use or availability of device identifiers is impaired or disabled.
Among others we collect the following device identifiers:
Metadata. Metadata is usually technical data that is associated with User Content. For example, Metadata can describe how, when and by whom a piece of User Content was collected and how that content is formatted.
Users can add or may have Metadata added to their User Content including a hashtag (e.g., to mark keywords when you share a photo) or other data.
Registered users. If you are registered user we may collect more Personal Data about you including the following:
Modification, correction and erasure. You are able to modify, correct, erase and update your Personal Data in the Service account settings or, if that is impossible, by writing us at [email protected].
Access. You have a right to access your Personal Data you leave when using the Services and ask us about what kind of Personal Data we have about you. You can do this by using the app settings or by writing us at [email protected].
EU and Swiss residents. Individuals residing in the countries of the European Union have certain statutory rights in relation to their personal data introduced by the General Data Protection Regulation (the “GDPR”). Subject to any exemptions provided by law, you may have the right to request access to Personal data (including in a structured and portable form), as well as to seek to update, delete or correct Personal data. You can do this by using the app settings and writing us at [email protected].
Please keep in mind that in case of a vague access, erasure, objection request or any other request in exercise of the mentioned rights we may engage the individual in a dialogue so as to better understand the motivation for the request and to locate responsive information. In case this is impossible, we reserve the right to refuse granting your request.
Following the provisions of GDPR we might also require you to prove your identity (for example, by requesting an ID or other proof) in order for you to invoke the mentioned rights. This is made to ensure that no right of third parties are violated by your request, and the mentioned rights are exercised by an actual Personal Data subject or an authorized person.
Please note that we will grant your request within 30 days after receiving it, but it may take up to 90 days in some cases, for example for full erasure of your Personal Data stored in our backup systems - this is due to the size and complexity of the systems we use to store data.
We will not rent or sell your Personal Data to third parties outside Prisma (or the group of companies of which Prisma is a part) without your consent, except as Parties with whom we may share your information in accordance with this Policy.
We also may share your Personal Data as well as information from tools like cookies, log files, and device identifiers and location data, with third-party organizations that help us provide the Service to you (“Service Providers”). Our Service Providers will be given access to your Personal Data as is reasonably and appropriately necessary to provide the Service under reasonable confidentiality and data protection terms.
We may also share certain Personal data and information such as cookie data with third-party advertising partners. This information would allow third-party ad networks to, among other things, deliver targeted advertisements that they believe will be of most interest to you.
We may remove parts of data that can identify you and share anonymized data with other parties.
The parties we share your Personal Data with are either EU-based or compliant with the EU-US Privacy Shield Framework that ensures that European data privacy requirement are met. We also utilize standard contractual clauses and other contractual safeguards in order to protect your privacy and insure that all transfers of your Personal Data are safe and compliant with applicable laws.
We may also combine your information (including Personal Data) with other information in a way that it is no longer associated with you and share that aggregated information.
Parties with whom you may choose to share your User Content. Any information or content that you voluntarily stylize with the Service, such as User Content, becomes available to the Prisma anonymously.
Responding to legal requests and preventing harm. We may access, preserve and share your information in response to a legal request (like a search warrant, court order or subpoena) if we have a good faith belief that the law requires us to do so. This may include responding to legal requests from jurisdictions outside of the United States where we have a good faith belief that the response is required by law in that jurisdiction, affects users in that jurisdiction, and is consistent with internationally recognized standards. We may also access, preserve and share information when we have a good faith belief it is necessary to: detect, prevent and address fraud and other illegal activity; to protect ourselves, you and others, including as part of investigations; and to prevent death or imminent bodily harm. Information we receive about you may be accessed, processed and retained for an extended period of time when it is the subject of a legal request or obligation, governmental investigation, or investigations concerning possible violations of our terms or policies, or otherwise to prevent harm.
General. The Company is based the United States and the information we collect is governed by U.S. law. Please be advised that U.S. law and laws of other countries may not offer the same protections as the law of your jurisdiction.
EU and Swiss residents. Please bear in mind that we may transfer your Personal Data to the United States which data protection is not deemed adequate under applicable data protection laws.
Prisma Labs, Inc. 440 N Wolfe Rd Sunnyvale, CA 94085We have further committed to refer unresolved Privacy Shield complaints to JAMS, an alternative dispute resolution provider located in the United States. If you do not receive timely acknowledgment of your complaint from us, or if we have not addressed your complaint to your satisfaction, please contact or visit the following link for more information or to file a complaint. The services of JAMS are provided at no cost to you.
Data security. We use reasonable and appropriate information security safeguards to help keep the information collected through the Service secure and take reasonable steps (such as requesting a unique password) to verify your identity before granting you access to your account. However, Prisma cannot ensure the absolute security of any information you transmit to the Service or an absolute guarantee that information on the Service may not be accessed, disclosed, altered, or destroyed. Please understand that there is no ideal technology or measure to maintain 100 % security. Among others, we utilize the following information security measures:
Please do your part to help us. You are responsible for maintaining the secrecy of your unique password and account information, and for controlling access to emails between you and Prisma, at all times. Your privacy settings may also be affected by changes the social media services you connect to Instagram make to their services. We are not responsible for the functionality, privacy, or security measures of any other organization.
You should be aware that we may retain certain Personal Data and other information after your account has been terminated in an aggregated, anonymized form. Any posts or comments you submit may remain visible if and after you delete your account. We are not obligated to remove your posts or comments. We reserve the right to use your information in any aggregated data collection after you have terminated your account, however we will ensure that the use of such information will not identify you personally. We will also retain your Personal Data as necessary to comply with legal obligations, resolve disputes and enforce our agreements.
All information that you provide to us through the App is automatically uploaded to our servers and is stored there in duplicate to the information stored on your device.
If you remove data from your account, you will no longer see it in the App, but some backups of the data may remain in our archive servers for a reasonable period of time due to technical reasons.
Third party (onward) transfers and Privacy Shield compliance. In the context of an onward transfer, we have responsibility for the processing of Personal Data we receive under the Privacy Shield or generally from the EU and Swiss residents and subsequently transfer to a third party acting as an agent on our behalf. We remain liable under the Principles and GDPR, if our agent processes such Personal Data in a manner inconsistent with the Principles and GDPR, unless we prove that we are not responsible for the event giving rise to the damage. For any onward transfer we commit to execute a formal agreement with any receiving party or processor acting on our behalf.
If we receive Personal Data subject to our certification under the Privacy Shield and then transfer it to a third-party service provider acting as an agent on our behalf, we have certain liability under the Privacy Shield if both (i) the agent processes the Personal Data in a manner inconsistent with the Privacy Shield and (ii) we are responsible for the event giving rise to the damage.
General age limitation. Prisma does not knowingly collect or solicit any information from anyone under the age of 13. The Service and its content are not directed at children under the age of 13. In the event that we learn that we have collected personal information from a child under age 13 without parental consent, we will delete that information as quickly as possible. If you believe that we might have any information from or about a child under 13, please contact us.
Age limitation for EU residents. Due to requirements of the GDPR you shall be at least 16 years old in order to use the Service. To the extent prohibited by applicable law, we do not allow use of the Service by the EU residents younger than 16 years old. If you are aware of anyone younger than 16 using the Service, please contact us at [email protected] and we will take required steps to delete such information and (or) delete her account.
Prisma Labs, Inc.
440 N Wolfe Rd
Sunnyvale, CA 94085