Stellar Privacy Policy
Last updated:
This policy explains how Stellar handles information when you sign in, generate images, publish to the community, watch ads, receive notifications, or send feedback. The operator and privacy contact for Stellar can be reached at stellaraigenerator@gmail.com.
1. Account information
Google sign-in and Firebase Authentication provide your account identifier, email address, display name, and profile photo. Stellar stores profile information in Firebase/Firestore and uses your verified account identifier to associate your balance, posts, follows, feedback, and notifications with your account. Stellar does not receive your Google password.
Your display name, username, profile photo, community posts, and social activity such as follows and likes may be visible to other users. Your email address is stored as private account information; it is not a field of the public profile.
2. Image generation
When you generate an image, your prompt, selected style text, model, dimensions, and generation settings are sent through Stellar's server to the selected generation service. Current integrations use Cloudflare Workers AI and a remote Hugging Face integration. These providers process the content needed to produce the image under their own terms and privacy practices. Do not include confidential information or another person's sensitive personal information in a prompt.
The server associates operation identifiers, model, cost, status, timestamps, and an input fingerprint with your account to prevent duplicate charges and recover interrupted requests. Image results are temporarily stored for recovery. Generation alone does not publish your image or prompt to the community; publication requires a separate action.
3. Published content and profiles
Publishing sends your chosen image and its associated description, style and generation information to Stellar's community storage and makes that post available to other users. Uploaded profile photos are also stored on the server. Publishing identifiable people or personal details can disclose that information publicly; only publish content you have the right to share.
You can select your own published posts for deletion from your profile. The server removes their availability and deletes their stored image files; failed storage cleanup is retried. Deletion cannot recall screenshots, downloads, or copies already saved by other people.
4. Data on your device
The app keeps generated gallery images and their recipes, unfinished generation requests, feedback drafts, style favourites and recent styles, language and visual preferences, and notification reading guidance on your device. Current gallery storage is separated by account; older images without an account owner may appear in a local archive. The gallery is not a cloud backup or automatic cross-device synchronisation service.
You can delete gallery images in the app or remove app data through device settings. Images you export to the phone's shared photo gallery remain there until you delete them separately. Selecting a profile photo gives the app access to that selected image; saving an image uses the system's photo saving mechanism and any permission required by your Android version.
5. Advertising and Stars
Stellar uses Google AdMob interstitial and rewarded advertisements. Google's advertising SDK processes IP addresses, device or advertising identifiers, ad interactions, and diagnostic information for ad delivery, measurement, and fraud prevention. IP addresses can indicate an approximate location. Consent choices and device settings affect advertising data processing and the ads available to you.
Where required, Google's consent interface asks for your advertising choices before ads can be requested. You can review available consent settings through the advertising privacy option in Stellar's settings and manage your advertising identifier through Android settings.
For a rewarded ad, the app creates an account-linked reward session. Google sends a signed completion notification containing the ad unit, reward, transaction and session identifiers, and timestamp. Stellar verifies that notification and records the award in the server wallet. Balances and records of awards, generation charges, refunds, and authorised downloads are kept for service operation and duplicate or fraud prevention. The current version does not process payment-card details or complete in-app purchases; this policy will be updated when purchases are enabled.
6. Feedback and automated analysis
When you submit a suggestion, issue, or other feedback, Stellar stores the message, category, language, timestamps, and its association with your account. Authorised administration can read original messages and respond to grouped requests. Google Gemini API analyses message text and candidate request summaries to classify, summarise in Arabic, and group related feedback. The classification can be inaccurate, and an administrator makes acceptance or rejection decisions.
The analysis request does not deliberately include your email address or account identifier. However, any personal information that you type into the message will be part of the submitted text. Do not send passwords, payment details, confidential information, or sensitive personal data in feedback.
Stellar currently uses Gemini's unpaid quota. Under Google's applicable terms, submitted content and generated responses may be used to improve Google products and may be reviewed by humans; different terms can apply by region or billing status. Google's terms are linked below. Deleting a message from Stellar does not guarantee deletion of processing records retained independently by a provider. Privacy enquiries can instead be sent directly to the contact email below.
7. Notifications
With device permission, Firebase Cloud Messaging sends notifications about completed images and feedback decisions. Stellar stores a device delivery token, account association, app language, and last activity time to deliver them to the correct account. Notifications may be visible on a lock screen, depending on your device settings. You can disable them in system settings.
Device delivery registrations inactive for 90 days and delivery jobs older than two days are eligible for scheduled cleanup. The in-app feedback notification inbox has a separate 90-day retention period.
8. Retention and deletion
Community posts normally expire 24 days after publication, or earlier when you delete them. Expiry removes them from the community; physical storage cleanup is performed by scheduled jobs and may be delayed by service failures. Profile photos do not have the same 24-day expiry and remain until replaced, removed, or deleted following a verified request.
Generated image results can be recovered from the server for 24 hours. Temporary result storage has scheduled cleanup, including a two-day cleanup safety window for orphaned or reserved objects. Account-linked operation metadata and wallet records are separate from image files and are not automatically removed when a result expires.
Original feedback messages and analysis details are deleted after a group is accepted, rejected, or closed. Pending groups normally expire after 24 days without a decision. Cleanup is retried on failure. Short request records and submission receipts are retained for up to 365 days; feedback notifications for up to 90 days. Scheduled cleanup can take additional time to finish.
Account/profile information, balances, and financial operation records do not currently have a fixed automatic expiry. To request deletion or correction, email stellaraigenerator@gmail.com from the address associated with your account and identify Stellar and the requested action. We may request information necessary to verify ownership; never send your password. We will explain any records that must be retained for a specific legal or security reason. Signing out or uninstalling the app does not delete your server account or posts.
9. Providers, processing locations, and security
Google/Firebase supplies authentication, profile storage, notifications, advertising, and feedback analysis; Cloudflare supplies the API, database, image storage, and some generation models; Hugging Face is used by the remote anime generation integration. Content is provided to these services as needed for the feature you choose. Service providers may process information outside your country under their applicable terms.
Connections to Stellar's public service use HTTPS. Server authentication, account ownership checks, restricted administration, server-side wallet validation, and private service credentials are used to protect access. Cloudflare and other providers also process technical request information such as IP addresses, timestamps, and diagnostic logs for service delivery and security. No online system can guarantee absolute security. Publicly published content is intentionally accessible to other users.
10. Your choices and requests
Depending on the laws that apply to you, you may have rights to access, correct, erase, or obtain a copy of personal information, object to certain processing, or withdraw consent. Contact the email below to submit a privacy request. Withdrawing advertising consent does not erase already created service records. You can use local gallery features without publishing, remove your posts, and control notification permission.
If you believe a child has provided personal information without appropriate permission, contact us so we can investigate and address it. Age eligibility and store audience settings must be considered separately from the advertising consent interface.
11. Policy changes
We update this policy when data handling or enabled services change and display the update date. Significant changes will be communicated through the app or another appropriate channel. The public policy and the in-app copy describe the same version. For questions or requests, contact stellaraigenerator@gmail.com.