Introduction
CellSync Limited ("CellSync", "we", "us", "our") is committed to protecting your personal data. This Privacy Policy explains who we are, what data we collect, why we collect it, how we use it, and your rights under the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
This policy applies to data collected through our website (cellsync.co.uk), the CellSync mobile application, our AI-powered skin analysis tool, our CELA (CellSync Expert Skin Intelligence Agent) concierge, our Ingredient Scanner, our email and SMS marketing programmes, and our B2B commercial activities.
Please read this policy carefully. If you do not agree with the practices described, you should not use our products or services.
1. Who We Are
CellSync Limited is the data controller responsible for your personal data. We are incorporated and registered in England and Wales.
- Company Name: CellSync Limited
- Company Number: 17091767
- Registered Address: 128 City Road, London, EC1V 2NX, United Kingdom
- VAT Number: Pending — to be updated prior to launch
- Data Protection Contact: privacy@cellsync.co.uk
- General Contact: support@cellsync.co.uk
- Website: cellsync.co.uk
CellSync is not currently required to appoint a statutory Data Protection Officer (DPO) under UK GDPR Article 37. We have nonetheless designated a Data Protection Contact who handles all privacy enquiries, complaints and rights requests.
2. What Data We Collect
2.1 Account Data
First name, last name, email address, and an encrypted (one-way hashed) representation of your password. If you sign in with Apple or Google, we receive your name and email from the provider.
2.2 Profile Data
Age (integer) and birth year only — we do not store your full date of birth. Gender (optional), city (optional), skin type, primary skin concerns, whether you use prescription skincare, and whether you use SPF daily.
2.3 Skin Scan Data
When you complete a skin scan, we store the following derived data:
- Overall skin score
- Nine individual metric scores
- Perceived skin age estimate and range
- Eye area age estimate and range
- Skin type, concerns and severity
- Strengths
- Image quality and confidence score
- Prompt version (for our internal audit and quality assurance)
- Personalised protocols
- CELA's summary note
- Recommended rescan interval
Important — your photographs are not retained
Facial images submitted for skin analysis are processed in real time and permanently discarded immediately upon completion of analysis. We do not retain copies on our servers, our analysis partner's servers, or in any backup. Only the derived numerical data listed above is stored.
2.4 Derived Skin and Physiological Data
The skin scores, metric scores and age estimates stored in Section 2.3 are derived from visible characteristics in your facial photograph. This data infers information about your physical condition and skin health. Under UK GDPR, data of this nature may constitute special category data under Article 9 (concerning data about health). We therefore process this data on the basis of your explicit consent given when you first use the skin analysis feature.
Note for the avoidance of doubt: we do not use facial recognition technology to identify you against external databases. The skin scoring process extracts numerical characteristics from your image and discards the image. A non-reversible face descriptor is stored solely to verify that the same person is scanning each time — it cannot be used to identify you in any external system.
2.5 Ingredient Scan Data
When you use the Ingredient Scanner: scanned product name and brand, ingredient list, compatibility analysis, routine conflicts, compatibility score, CELA's recommendation, and scan timestamp. Photographs used for ingredient scanning are processed in real time and not retained.
2.6 Feedback and Outcome Data
Product ratings, protocol adherence (self-reported), free-text comments, and outcome data comparing scan scores over time.
2.7 Purchase Data
Billing and delivery address and order details. Payment card data is handled exclusively by our payment processor (Shopify Payments) and is never stored on CellSync systems.
2.8 Usage Data
Screens visited, features used, scan timestamps, and session duration. Used in aggregate to improve the product.
2.9 Authentication Data
Authentication provider, verification status, verification timestamps, login history, and CAPTCHA score from sign-up (used only for fraud prevention).
2.10 Consent Records
All consents granted or withdrawn, with timestamps and the policy version in force at the time. This audit trail is required to demonstrate lawful processing under UK GDPR.
2A. Special Category Data — Allergies & Health Information
Why this section exists
Information about allergies, skin sensitivities, medical conditions and medications you take is treated as 'special category data' under UK GDPR Article 9. It is given extra legal protection because of its sensitivity. This section explains exactly what we collect, why, and the additional safeguards we apply.
2A.1 What This Category Covers
Through the Allergy Capture feature in the CellSync mobile application, you can voluntarily provide information about:
- Known allergies — for example: fish allergy, marine ingredient allergy, fragrance sensitivity
- Skin sensitivities — for example: sensitivity to specific actives or ingredient categories
- Relevant medications — for example: photosensitising medications that may affect compatibility with light-based therapy
- Skin conditions you wish CELA to be aware of when making recommendations
- Medical considerations such as pregnancy, where this affects suitability of certain treatments
Each option is presented from a pre-defined, controlled vocabulary. You cannot enter free-text health information through this feature — this is intentional, to keep what we collect proportionate, accurate and meaningful.
2A.2 Why We Collect This Data
The sole purpose of collecting this information is to ensure that the CELA agent and the broader CellSync platform never recommend a product, ingredient or protocol that is contraindicated for you. This is a safety filter, not a profiling exercise.
2A.3 Legal Basis
Because this is special category data, we rely on two cumulative legal bases:
- UK GDPR Article 6(1)(a) — your consent to process your personal data
- UK GDPR Article 9(2)(a) — your explicit consent to process special category data
You provide both forms of consent when you complete the Allergy Capture screen in the CellSync app. The act of saving your selections constitutes explicit consent. You are not required to provide this data; the feature is entirely optional, and the rest of the app remains usable without it.
- We do not share allergy or health data with any third party for marketing purposes
- We do not use this data to profile, segment, target or score you for any commercial purpose beyond product safety recommendations
- We do not sell this data to anyone, under any circumstance
- We do not transfer this data outside the United Kingdom or European Economic Area except where strictly necessary
- We do not use this data for B2B partnerships, airline amenity kits, hotel programmes or any commercial integration
- We do not sync this data to our marketing CRM (Klaviyo) — it remains within our app backend only
2A.5 Retention of Special Category Data
We retain your allergy and health data for as long as your CellSync account is active, or until you withdraw consent, whichever is earlier. When you withdraw consent or close your account, this data is permanently deleted from our systems within 30 days, including from backups within 90 days.
2A.6 Withdrawing Consent
You may withdraw consent at any time by editing or clearing your entries on the Allergies screen in the CellSync app, or by emailing privacy@cellsync.co.uk.
Withdrawal is immediate. It does not affect the lawfulness of processing carried out before withdrawal. After withdrawal, CELA will no longer have access to your allergy information, and product recommendations will revert to the standard model.
3. How We Use Your Data
We use your data to:
- Provide and operate the CellSync App and the CELA concierge
- Generate personalised protocols and product recommendations
- Track your skin progress over time
- Generate perceived age estimates from your skin scans
- Power the Ingredient Scanner and routine compatibility analysis
- Send scan results and rescan reminders
- Process orders, handle deliveries and provide customer service
- Send marketing communications — only with your prior consent
- Filter recommendations against your allergy and sensitivity profile, where you have provided it
- Prevent fraud, abuse and security threats
- Comply with our legal obligations under UK law
4. Legal Basis for Processing
Under UK GDPR, every act of processing requires a lawful basis. We rely on the following:
4.1 Contract — Article 6(1)(b)
Necessary for performing our contract with you: account creation, order fulfilment, customer support, the skin analysis service.
4.2 Legitimate Interests — Article 6(1)(f)
Improving products, preventing fraud, security monitoring and anonymised analytics. We have carried out balancing assessments and concluded that our interests do not override your rights and freedoms in these contexts.
4.3 Legal Obligation — Article 6(1)(c)
Maintaining consent records, retaining order and tax records as required by HMRC and Companies House, and responding to lawful information requests from regulators or law enforcement.
4.4 Consent — Article 6(1)(a)
Marketing emails and SMS, and any non-essential cookies. Consent may be withdrawn at any time without affecting the lawfulness of prior processing.
4.5 Explicit Consent for Special Category Data — Article 9(2)(a)
Required for processing derived skin and physiological data from skin scans and for processing allergies, skin sensitivities and other health data captured through the Allergy Capture feature.
5. Who We Share Your Data With
We share personal data only with processors who need it to provide the service to you, and only on the basis of contractual safeguards including Data Processing Agreements (DPAs) where required.
- Anthropic — AI model provider powering CELA. Receives skin analysis images and CELA conversation context to generate responses. Processes in real time only. Does not retain CellSync user images.
- Shopify — E-commerce and payments platform. Holds order history, delivery addresses and payment processing. Card data is never seen by CellSync.
- Klaviyo — Email and SMS marketing platform. Does not receive special category health data.
- MongoDB Atlas — Database hosting in UK/EU region. Stores account, profile, scan metrics, allergy data, conversation history. Encrypted at rest and in transit.
- Apple and Google — Social sign-in providers. Each operates under its own published privacy policy.
5.1 What We Do NOT Share
- Your facial photographs (we do not retain them)
- Your password (we don't have it — only a one-way hash)
- Your allergy or health data — never shared for marketing, advertising or commercial purposes
- Your data with advertisers, data brokers or social media platforms for ad targeting
5.2 Legal Disclosures
We may disclose personal data where legally required — for example, in response to a valid court order, a regulatory request from the Information Commissioner's Office (ICO), or in connection with the investigation of fraud or other illegal activity. We will not disclose data voluntarily where we are not legally compelled to do so.
6. International Data Transfers
Where possible, your personal data is stored and processed within the UK or European Economic Area (EEA). Where processors are based outside this region, we ensure appropriate safeguards are in place under the UK International Data Transfer Addendum to the EU Standard Contractual Clauses. You may request a copy of our standard transfer safeguards by emailing privacy@cellsync.co.uk.
7. Data Retention
We do not keep personal data for longer than necessary. Specific retention periods are set out below.
| Data Type | Retention Period | Basis |
|---|---|---|
| Facial photographs (skin scans) | Not retained — processed in real time and discarded | Data minimisation |
| Derived skin metrics | 2 years from scan date (or earlier if account closed) | Service provision |
| Ingredient scan results | 2 years from scan date (or earlier if account closed) | Service provision |
| Feedback and outcome data | 2 years from submission (or earlier if account closed) | Service improvement |
| CELA chat history | 1 year from message date (or earlier if account closed) | Service quality |
| Allergy and sensitivity data | Until consent withdrawn; deleted within 30 days | Explicit consent (Article 9) |
| Account and profile data | Account lifetime + 30 days | Contract performance |
| Order and payment records | 7 years from order date | Legal obligation (HMRC) |
| Consent records | Account lifetime + 3 years | Legal accountability |
| Unverified accounts | Deleted after 48 hours | Data minimisation |
| Backups | Up to 90 days after primary deletion | Disaster recovery |
8. Your Rights Under UK GDPR
Under UK GDPR, you have the following rights. We will respond to all valid requests within 30 days. To exercise any of these rights, please email privacy@cellsync.co.uk.
8.1 Right of Access (Article 15)
You may ask us to confirm what personal data we hold about you, and to provide a copy in a structured, commonly-used electronic format.
8.2 Right to Rectification (Article 16)
You may ask us to correct inaccurate or incomplete data. Most account and profile fields can be edited yourself within the app.
8.3 Right to Erasure (Article 17)
You may ask us to delete your personal data, subject to limited exceptions for legal retention (e.g. HMRC accounting records). Note: facial photographs are not retained and therefore cannot be subject to a deletion request — they have already been discarded immediately after each scan.
8.4 Right to Restrict Processing (Article 18)
You may ask us to restrict how we use your data while a query is being resolved.
8.5 Right to Data Portability (Article 20)
You may ask us to export your data in a machine-readable format, or to transmit it to another controller.
8.6 Right to Object (Article 21)
You may object to processing based on legitimate interests or for direct marketing. We will stop the relevant processing unless we have compelling lawful grounds to continue.
8.7 Rights Related to Automated Decision-Making (Article 22)
CellSync uses AI for skin analysis and product recommendations. These outputs are advisory — they do not produce legal or similarly significant effects on you in the GDPR sense. You can override CELA's recommendations at any time, and human review is available on request via privacy@cellsync.co.uk.
8.8 Right to Withdraw Consent
Where processing is based on consent — including marketing, derived skin and physiological data, and allergy and health data — you can withdraw at any time. Withdrawal is straightforward through the Profile section of the app or by emailing privacy@cellsync.co.uk. Withdrawal does not require justification.
8.9 Right to Lodge a Complaint
If you believe we have mishandled your data, you can complain to the Information Commissioner's Office (ICO):
- Website: ico.org.uk
- Helpline: 0303 123 1113
We would ask you to contact us first so that we have an opportunity to resolve the matter, but you are not required to do so.
9. Data Security
- AES-256 encryption at rest
- TLS 1.2+ encryption in transit
- Role-based access controls limiting who can view or process personal data
- Audit logging of access and processing events
- Automated retention enforcement aligned with the schedule in Section 7
- Email verification at account creation
- CAPTCHA verification at sign-up
- Password hashing using industry-standard one-way functions — we never see your password
- Incident response procedures aligned with notification obligations under UK GDPR Article 33
Despite our best efforts, no system is perfectly secure. If you believe your CellSync account has been compromised, please email privacy@cellsync.co.uk immediately.
10. Cookies & Tracking
Our website and mobile app use cookies and similar technologies.
- Strictly necessary cookies — required for the service to function; cannot be disabled
- Analytics cookies — measure how the service is used; optional, consent-based
- Marketing cookies — used by marketing partners; optional, consent-based
You can review or change your cookie preferences at any time through the cookie banner or by clearing cookies in your browser.
11. Children
CellSync is intended for adults aged 18 and over. We do not knowingly collect personal data from anyone under 18. If you believe we have collected data from a minor, please contact support@cellsync.co.uk so we can promptly delete the information.
12. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in the law, our practices, or our services. Where changes are material, we will notify you by email and through an in-app notification at least 14 days before they take effect. Previous versions of this policy will remain available on request. The version history at the top of this document summarises the major changes.
13. Contact Us
For any questions about this Privacy Policy, your data, or your rights:
- Privacy enquiries: privacy@cellsync.co.uk
- General contact: support@cellsync.co.uk
- Postal address: CellSync Limited, 128 City Road, London, EC1V 2NX, United Kingdom
- ICO: ico.org.uk · 0303 123 1113