1. Who we are
DanceFizz: AI Dance Video (“DanceFizz”, “we”, “us”) turns a photo and a selected dance template into an AI-generated video. This policy covers our app and this website. The operator and data controller is Fırat Can Bozkurt.
Privacy and support contact: firatcanbozkurt@icloud.com. Business correspondence address: Ahi Mesut Mh. 1904 Cd. 20B Blok No:32 Merkez Sitesi, Etimesgut/Ankara.
Our initial release is intended for adults aged 18 and over in the United States, United Kingdom and Australia. The website does not accept photos or generate videos.
2. Information we process
| Information | Why we use it |
|---|---|
| Photos, generated videos and thumbnails | Process the photo you choose, create your requested video, show your creations, and let you save or share them. We upload a resized JPEG copy; we do not upload your entire photo library. |
| Guest account and device identifiers | The app creates a guest account without a name, email, password or sign-in screen. Random account IDs and a credential stored on your device protect your history and credit balance. RevenueCat receives a related billing ID, the Apple device vendor identifier (IDFV), IP address and tracking-permission status. Where available and permitted, it also receives an advertising identifier (IDFA) and a Meta app identifier for the measurement described below. A limited credential can remain in secure device storage after account deletion solely to recover eligible remaining credits. |
| Purchases and credits | Store product and transaction IDs, purchase/renewal/refund events, subscription access, credit grants, expiry and spending. Apple handles payment details; DanceFizz does not receive your full payment-card or bank details. |
| Service activity and technical information | Selected templates, generation status, timestamps, error codes, and request/job identifiers help us provide and troubleshoot the service. RevenueCat processes purchase-screen views and interactions, app/device configuration and locale to operate and measure purchases. Network providers receive IP addresses when serving requests. |
| Advertising measurement | With your iOS tracking permission, Meta receives app activation, paywall views and video-generation event information, plus purchase and subscription events forwarded by RevenueCat. These events can include identifiers, device/app information, IP address, timestamps, purchased products, currency and value. We do not send your uploaded photos or generated videos to Meta. |
| Support messages | If you contact us, we receive your email address, message and any information you choose to include to answer your request. Please avoid sending unnecessary photos or sensitive information. |
“Guest” does not mean anonymous: photos, history and purchases are associated with account identifiers. We do not ask for contacts, precise location, microphone access or camera access. The app uses your selected photo and requests photo-library permission when needed to save a video.
3. Photos, faces and AI processing
When you request a generation, your selected photo is uploaded to our private storage. Our server sends temporary links to that photo and the chosen reference dance video to fal.ai (Features & Labels, Inc.), which provides the Kling motion-control model. fal and the model services it uses process the media to generate the result, which we copy into DanceFizz storage for delivery to you.
The image can contain a face and body. The model processes their visual appearance to animate the person. DanceFizz does not implement face recognition, identify people by their faces, or create a separate database of face templates or biometric identities. The AI provider may process facial and body features as part of generation; the absence of a DanceFizz face-recognition database does not mean that no face processing occurs.
DanceFizz does not train models on your uploads or outputs. fal’s API terms restrict training on client content, but exclude certain designated models from those restrictions and other data protections. We have not verified the model-specific exception status and downstream retention for the current Kling service. We therefore do not promise that every provider keeps no copies, never uses content for training, or deletes media immediately.
Provider information: fal privacy policy and data processing addendum. Only use photos you have the right to upload and the permission of the adult depicted. This policy explains processing; it does not replace any separate permission required in the app.
4. Purposes and legal bases
We process photos, guest identifiers, generation requests and purchase information to provide the service you request and perform our agreement with you. We use operational records to keep the service secure, prevent duplicate charges and credit fraud, troubleshoot failures and respond to support requests. These are our legitimate interests where that basis applies. We use purchase and paywall statistics to understand how subscriptions work and improve the purchase experience. With your tracking permission, we also measure the effectiveness of DanceFizz advertising through Meta, as described in section 6.
We retain records or disclose information where necessary to meet legal obligations, resolve disputes and establish or defend legal claims. Where the law requires consent, we rely on that consent for the relevant processing; you can withdraw it for future processing without affecting earlier lawful use. We do not make decisions about legal or similarly significant matters using automated profiling.
6. Advertising measurement and your choice
On iOS, DanceFizz asks for tracking permission through Apple’s App Tracking Transparency prompt. If you allow tracking, the Meta SDK sends app activation, paywall-view and video-generation events to help measure which ads lead to app use. RevenueCat separately sends purchase, subscription and renewal events through Meta’s Conversions API, including renewals that occur while the app is closed.
Depending on availability, the information sent for measurement includes the advertising identifier (IDFA), Meta’s app identifier, device vendor identifier (IDFV), a hashed billing-account identifier, IP address, device/app information, event time and product, currency and purchase value. These identifiers can be linked to activity; calling an identifier “anonymous” or hashing it does not make the event unidentifiable. We do not collect a name, email address or phone number to create your guest account, or add those details to advertising events. Photos and video content are not part of these events.
Our iOS configuration requires authorized tracking permission for these Meta app events and for RevenueCat to forward conversions. If you decline, the app and purchases remain available. RevenueCat still processes the billing, device and permission information needed for its purchase service. Meta may use the events it receives under its own terms to measure and improve advertising, including linking them with information it already holds.
To change your choice, open iPhone Settings → Privacy & Security → Tracking and change DanceFizz’s permission if listed. You can also decline the app’s initial prompt. Withdrawing permission stops future consent-controlled app events after the app reads the change; renewals use the permission status last synchronized with RevenueCat, so reopen DanceFizz to update it. Withdrawal does not itself erase events already sent. Contact us for an applicable deletion or opt-out request.
Advertising-related sharing may be treated as a “sale”, “sharing” or targeted advertising under some privacy laws even without a monetary sale. You can decline tracking and contact us to exercise applicable rights. The website itself does not run a Meta pixel or advertising SDK.
7. Retention and deletion
| Record | Current retention |
|---|---|
| Incoming uploads | Temporary upload objects are scheduled for storage cleanup after one day. |
| Accepted photo copies | Scheduled for storage cleanup after seven days, or earlier through account deletion. Storage lifecycle removal is asynchronous. |
| Generated videos and thumbnails | Available through DanceFizz for 30 days after saving the result, unless you delete them earlier. Save a copy you want to keep. Storage cleanup may complete after access expires. |
| Guest account and creation metadata | Remain associated with the guest account until deletion. Media expiry alone does not erase all job/history metadata. |
| Operational logs | Our application and API logs are configured for one-month retention. Job/error identifiers can link operational records to an account; we do not intentionally log photo contents or guest secrets. |
| Payment and security records | Limited payment and credit records, purchase references, deletion-status and security records remain after account deletion. They prevent duplicate grants and fraud, support refunds and allow eligible remaining credits to be recovered without restoring deleted media. A restricted credential is retained on the device for that recovery. These limited financial and security records are currently kept without a fixed deletion date; ordinary account deletion does not erase them. You can contact us about their retention or request erasure, subject to applicable exceptions. |
| Backups and service-provider copies | Database recovery backups expire on a separate schedule and are not immediately erased by an account request. Apple, RevenueCat, Meta, fal and downstream services can retain their own records under their applicable terms and policies. DanceFizz media-retention periods do not establish a deletion deadline for those copies. We have not verified a single end-to-end provider-erasure deadline; contact us for the information available about a particular request. |
Open My Creations → Settings → Delete Account. Keep the request screen open until the server confirms it. Once you see Account closed or Account deleted, you can start a new guest account; old photos, videos and history are removed in the background. Active or unresolved generation jobs can delay final cleanup. Eligible credit recovery does not restore that content. Subscription cancellation is separate.
Deleting a video or your account does not remove copies already saved to Photos, shared to another app or held by someone else. See Account & data deletion for the scope and request options.
8. Your choices and rights
You can choose which photo to provide, manage photo and tracking permissions in device Settings, save a copy of a result, delete individual creations, and request account deletion. Declining to provide a photo prevents generation but does not require you to purchase a subscription.
Depending on the law that applies to you, you may request access, correction, erasure, a portable copy, restriction of processing or an objection to processing. You may withdraw consent where relevant and complain to a privacy regulator. We may request proportionate evidence that a guest account or transaction belongs to you; never send your device credential, password or full card number.
United Kingdom: you can raise concerns with the Information Commissioner’s Office. Australia: you can contact the Office of the Australian Information Commissioner where applicable. United States: state-law rights vary, including rights to appeal a denied request where applicable. Ask us to review a decision by replying to our response. We do not discriminate against you for exercising applicable privacy rights.
Submit requests to firatcanbozkurt@icloud.com or through our Support page. We respond within the time required by applicable law and explain any lawful exception or extension.
9. Security and international processing
Our app communicates with the backend over HTTPS. Media storage blocks public access, uses encryption at rest and provides time-limited access links. Guest credentials are stored using the device’s secure storage. Administrative and provider credentials stay on the server. No system can guarantee absolute security.
Information may be processed outside your country, including in Sweden and the United States, and by downstream model providers in other locations. Provider contracts can include international-transfer terms, such as those in fal’s data processing addendum. The safeguards that apply depend on the provider, model and location. We have not completed verification of every downstream processing location and applicable transfer arrangement. Contact us for available information about the providers handling your request.
10. Adults only
DanceFizz is intended for people aged 18 and over. Do not use the app or upload images of children. We do not knowingly offer the service to children. If you believe a child’s information has been provided, contact us so we can investigate and arrange appropriate deletion. The intended minimum age does not imply that the app verifies everyone’s age.
11. Website and updates
This public website is hosted by Vercel. Its page code contains no analytics pixels, advertising scripts, cookies, local-storage tracking, photo-upload form or third-party fonts. Vercel can process IP addresses and request/security logs to deliver and protect the site, as described in its privacy notice. The app’s Meta integration described above is separate from this website. Support and privacy requests go to firatcanbozkurt@icloud.com.
We update the date when this policy changes. Material changes will be highlighted on this website and, where required, in the app before the relevant new processing. We will obtain additional permission when required rather than treating a policy update as permission for unrelated uses.