Privacy Policy
Last updated: 18 August 2026
Magic Eraser removes unwanted objects from photos you choose. This policy explains what happens to those photos and what else we collect. It is written to be read, not to be survived.
The short version: we have no accounts and never ask for your name or email. Your photo is sent to our server and to the AI provider that performs the edit you asked for. It is never used to train AI models. Your photo, the area you marked and the edited result are kept for up to 48 hours — so the result can be re-delivered if something goes wrong, and so we can investigate an edit that came back wrong — then all of them are deleted automatically.
Who we are
Magic Eraser is an iOS app operated by the developer identified on our App Store listing. For any privacy question, write to info@asyncomp.com.
What we collect
| Data | Why | How long we keep it |
|---|---|---|
| The photo you choose to edit, and the marked copy showing the area you selected | To perform the removal you requested, and to let us investigate an edit that came back wrong | Up to 48 hours, then deleted automatically |
| The optional note you type describing what to remove | Sent with your photo so the AI knows what you meant | Not stored by us. Passed through for processing only |
| The edited result | To deliver it to you, and to re-deliver it without charging you twice if the app crashes or loses connection | Up to 48 hours, then deleted automatically |
| Anonymous account identifier | Created automatically so your credit balance belongs to someone. No name, email or password | Until you delete the app and request removal |
| Device identifier (stored as a one-way hash) | So the free removals are given once per device, and to limit abuse | Until you request removal |
| IP address (stored as a one-way hash) | Rate limiting and abuse prevention only | Rolling counters, deleted as they expire |
| Purchase status and app version | To know which plan you are on and how many removals you have left | While your subscription is active |
We do not collect your name, email address, phone number, contacts, location, or advertising identifiers. We do not use third-party analytics or advertising SDKs, we do not track you across apps or websites, and we do not sell or share personal information for advertising.
If you allow notifications, the app tells you locally on your device when a long edit has finished. Nothing is sent to us and no push token is created — the reminder never leaves your iPhone.
How your photo is processed
Editing runs on a server, not on your device. Before your first edit the app asks for your explicit consent and explains this. If you decline, nothing is sent and no edit is made.
- Your photo travels over an encrypted connection to our server.
- Our server sends it to the AI provider that performs the edit — OpenAI or Google Cloud (Vertex AI), depending on which tool you used. Marking an area yourself, or asking for a sharper version of a result, goes to Google Cloud; letting the app find the objects for you goes to OpenAI, which first looks at the photo to work out what should go. If you typed a note describing what to remove, it travels with the photo.
- Photos sent through these APIs are not used to train their models. The provider may retain a copy for a limited period for abuse monitoring, then deletes it, in line with its API data policy.
- Your photo, the marked copy and the edited result are kept on our server for up to 48 hours. The result is kept so it can be re-delivered to you without charging you twice; the photo and the marked copy are kept so we can investigate an edit that came back wrong. All three are deleted automatically after that window.
Who receives your data
| Recipient | What they receive | Purpose |
|---|---|---|
| OpenAI, L.L.C. | The photo you are editing, and the area you marked | Finding the objects to remove, and performing the edit |
| Google Cloud (Vertex AI — Gemini) | The photo you are editing, the marked copy showing your selection, and any note you typed | Performing the edit and the higher-resolution version |
| Google (Firebase) | Anonymous identifier, hashed device and IP values, credit balance, and — during the 48-hour window — your photo, the marked copy and the edited result | Hosting, anonymous sign-in, storage |
| Apple | Purchase and subscription events | Processing payments — we never see your payment details |
| RevenueCat, Inc. | Anonymous identifier and subscription status | Managing subscriptions across devices |
AI-edited images
Photos edited with Magic Eraser are altered by artificial intelligence.
Saved results carry a machine-readable note in their metadata recording
that an AI system made the edit — the IPTC
DigitalSourceType field, set to
trainedAlgorithmicMedia — in line with transparency
requirements including Article 50 of the EU AI Act. Nothing is printed on
the picture itself; the marking lives in the file, not on the image.
Your rights
Depending on where you live — including under the GDPR in Europe and the UK, and the CCPA/CPRA in California — you may have the right to access, correct, delete, or restrict processing of your personal data, and to withdraw consent.
- Withdraw consent: open the app, go to Settings and tap “Withdraw AI consent”. No further photo will be sent for processing.
- Delete your data: write to info@asyncomp.com and we will delete your anonymous record and any stored result within 30 days. Because there is no account, please write from the device in question or include your in-app support identifier so we can find the right record.
- Deleting the app removes the app’s local data from your device.
We do not discriminate against you for exercising any of these rights.
International transfers
Our servers and our processors are located in the United States. If you use the app from outside the United States, your data is transferred there, protected by the safeguards our processors maintain, including Standard Contractual Clauses where applicable.
Children
Magic Eraser is not directed to children and we do not knowingly collect personal data from children. If you believe a child has provided data to us, contact us and we will delete it.
Security
Data is encrypted in transit. Device and IP values are stored only as one-way hashes. Access to production systems is limited to the developer. No system is perfectly secure, but we keep as little as possible for as short a time as possible — which is the most effective protection there is.
Changes to this policy
If we change how photos are handled in a way that matters, we will update this page and ask for your consent again inside the app before the change applies to you.
Contact
Questions, requests or complaints: info@asyncomp.com. We reply within a few business days.