MemoFigure values your personal information and privacy. This policy explains how we process and protect information when you use MemoFigure to create, generate, collect, and share 3D keepsakes, and how you can manage your information.
1. Information We Process
1.1 Account Sign-in and Identity Verification
When you sign in using an email verification code, Sign in with Apple, or Google Sign-In, we process information required for the method you choose. This may include your email address, verification-code delivery and validation records, account identifiers returned by Apple or Google, authorization and sign-in status, and technical information needed to protect account security.
1.2 Memories and 3D Keepsakes
When you create a 3D keepsake related to a memory, we process the memory text and optional photos you submit, together with the technical records and generated assets needed to create, deliver, save, display, and share the keepsake, such as request identifiers, generation status, model and preview files, and gallery metadata.
We use this information to provide the keepsake experience, save items to your gallery, show progress, support sharing, and troubleshoot issues.
1.3 Camera, Photos, and Notifications
- Camera: used to take a photo for a memory.
- Photo Library Read Access: used to read photos you actively select for a keepsake.
- Photo Library Add Access: used to save keepsake screenshots, Live Photos, or sharing assets when you request it.
- Notifications: used for service messages such as generation-completion alerts.
You can manage these permissions in iPhone Settings > MemoFigure. If you disable camera or photo-library access, you can still create with text.
1.4 Purchases and Entitlements
When you purchase generation credits, a non-renewing Pass, or an auto-renewing subscription, we process the product ID, transaction identifier, original transaction identifier, purchase and renewal status, purchase and expiration time, App Account Token, entitlement period, refund or revocation status, and generation-credit entitlement supplied through Apple StoreKit and App Store server notifications. We do not collect your payment-card number, Apple ID password, or complete payment credentials.
1.5 Referrals and Rewards
When you use an invite code or invite link, we process the invite code carried in the invite URL, pseudonymous identifiers for the inviter and invitee accounts, binding time and status, first-successful-generation and reward status, and the anonymous installation or pseudonymous device identifiers needed to determine new-user eligibility and prevent repeated participation by the same account or device. We may still process a signed invite token to keep previously shared legacy links working.
We use this information only to recognize and bind the referral, keep retries consistent, verify eligibility, prevent abuse, and issue rewards. Invite-link tokens are not used for website analytics and are not disclosed to other users.
1.6 Support, Feedback, Logs, and Security
When you send feedback, we process the issue category, description, sign-in email or account contact information, and screenshots, screen recordings, videos, or other attachments you actively submit. To maintain service stability and security, we may also process device model, operating-system and app versions, network status, an anonymous installation identifier, request status, error logs, and model-loading diagnostic information.
1.7 Product Usage Analytics
During testing and normal operation, we record events needed to understand how the app is used, evaluate features, and identify where a process stops. These events may include app launches and foreground sessions, major page visits and duration, input-field interactions, memory text entered or submitted on the Create page, generation progress and completion, result revisits, and sharing status. Events may be associated with pseudonymous session and account identifiers.
We use this data only for product operations, product improvement, service-quality assessment, and troubleshooting—not for advertising or cross-app tracking. Access is limited to personnel who need it through a protected administration interface. Detailed product analytics events are generally retained for no longer than 180 days, then deleted or anonymized. We may retain relevant records longer only where necessary to handle a security incident, complaint, dispute, or legal obligation.
1.8 Website Analytics and First-Party Cookies
When you visit the MemoFigure website and select “Accept cookies,” we record the first landing page, referring-site domain, source type, UTM campaign parameters you intentionally include, page-view time, button names and target types you click, App Store download and contact clicks, consecutive downward-scroll count, maximum reading depth, browser type, operating system, device category, screen and viewport size, language, time zone, and whether cookies are supported.
We set a first-party anonymous analytics cookie named mf_visitor to distinguish returning visitors using a random identifier. It expires within 180 days. We do not read or upload the contents of other cookies, and we do not record sign-in credentials, full IP addresses, invite codes carried in invite URLs, legacy invitation-link tokens, text entered on a page, or complete query parameters from external URLs. When an analytics request arrives, the website server temporarily uses the visitor IP with a local country database to produce a two-letter country code. Analytics events store only the country code and lookup source; the full IP address is not stored or forwarded. If a country cannot be identified, we retain only the browser-language region as a low-confidence hint.
Website analytics events are stored through MemoFigure's own server and used only to understand acquisition, improve pages, and evaluate download and contact conversions. They are not used for advertising profiles or sold to third parties. Detailed events are generally retained for no longer than 180 days. You may decline analytics without affecting access to the website, and you may change or withdraw your choice at any time through “Cookie settings” in the footer. Withdrawing consent deletes the anonymous analytics cookie and stops new website analytics events.
2. Third-Party Services
MemoFigure may use service providers for account authentication and verification, keepsake creation and delivery, cloud hosting, Apple App Store or StoreKit functions, and customer support. Each provider processes only the information needed to perform its role.
3. Sharing, Transfer, and Public Disclosure
We do not sell your personal information. We do not share personal information with third parties or publicly disclose it except where necessary to provide the service, with your authorization, to comply with legal obligations, or to protect legitimate rights and interests.
4. Storage and Retention
We retain information only for as long as necessary for the purposes described in this policy. Account, collection, and generation records are generally retained while your account remains active; verification codes are retained only briefly; transaction and security records may be retained for the time needed to perform a contract, resolve disputes, and meet compliance obligations. Information is deleted or anonymized when it is no longer needed.
5. Your Rights and Account Deletion
You may request access to, correction, a copy, or deletion of your personal information, withdraw non-essential permissions, and delete your account.
- Open MemoFigure and go to Profile.
- Open Privacy Settings.
- Select Delete Account, review the deletion notice, and confirm.
Account deletion permanently removes your account information, memories, and keepsakes and cannot be undone. To protect account security and prevent abuse, the deleted account cannot be registered or used to sign in again. If you cannot access the app, email privacy@memofigure.com. We may first request information needed to verify your identity.
6. Children's Privacy
MemoFigure may be used by minors. A user under 14 should use the service only with the consent and guidance of a parent or other legal guardian. A guardian who learns that a minor provided information without consent may contact us to request appropriate action.
7. Information Security
We use reasonable safeguards such as HTTPS, server-side secret storage, access controls, diagnostic records, and least-privilege access. No internet service can guarantee absolute security. If a personal-information security incident occurs, we will take responsive and notification measures as required by applicable law.
8. Policy Updates
We may update this policy to reflect changes to features, laws, or regulatory requirements. If an update materially affects your rights, we will provide notice in the app or through another prominent method.
9. Contact Us
- In the app: Profile > Help & Feedback
- Support: support@memofigure.com
- Privacy: privacy@memofigure.com
- Operator: Zichen Zhu
You can also visit the MemoFigure Help & Support Center for common questions.