Legal
Last updated 4 August 2026
This page covers how Unified Sense handles your information (our Privacy Policy) and the terms that apply when you use our website and apps, including purchases and refunds (our Terms of Service).
Privacy Policy
Effective date: August 4, 2026
Unified Sense, Dal Rupnik s.p. ("us", "we", or "our") operates the website and our mobile applications (together, the "Service").
This page informs you of our policies regarding the collection, use, and disclosure of personal data when you use our Service and the choices you have associated with that data.
We use your data to provide and improve the Service. By using the Service, you agree to the collection and use of information in accordance with this policy.
Information Collection and Use
We collect several different types of information for various purposes to provide and improve our Service to you.
Types of Data Collected
Personal Data
While using our Service, we may ask you to provide us with certain personally identifiable information that can be used to contact or identify you ("Personal Data"). Personally identifiable information may include, but is not limited to:
- Email address
- First name and last name
- Phone number
- Address, State, Province, ZIP/Postal code, City
- Cookies and Usage Data
Usage Data
We may also collect information that your browser sends whenever you visit our Service or when you access the Service by or through a mobile device ("Usage Data").
This Usage Data may include information such as your computer's Internet Protocol address (e.g. IP address), browser type, browser version, the pages of our Service that you visit, the time and date of your visit, the time spent on those pages, unique device identifiers and other diagnostic data.
When you access the Service by or through a mobile device, this Usage Data may include information such as the type of mobile device you use, your mobile device unique ID, the IP address of your mobile device, your mobile operating system, the type of mobile Internet browser you use, unique device identifiers and other diagnostic data.
Tracking & Cookies Data
We use cookies and similar tracking technologies to track the activity on our Service and hold certain information.
Cookies are files with small amount of data which may include an anonymous unique identifier. Cookies are sent to your browser from a website and stored on your device. Tracking technologies also used are beacons, tags, and scripts to collect and track information and to improve and analyze our Service.
You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept cookies, you may not be able to use some portions of our Service.
Examples of Cookies we use:
- Session Cookies. We use Session Cookies to operate our Service.
- Preference Cookies. We use Preference Cookies to remember your preferences and various settings.
- Security Cookies. We use Security Cookies for security purposes.
Use of Data
We use the collected data for various purposes:
- To provide and maintain the Service
- To notify you about changes to our Service
- To allow you to participate in interactive features of our Service when you choose to do so
- To provide customer care and support
- To provide analysis or valuable information so that we can improve the Service
- To monitor the usage of the Service
- To detect, prevent and address technical issues
No Accounts, Advertising, or Cloud Sync
Our apps are local-first. They have no account system and no sign-in, so there is no profile for us to hold and nothing for you to log into. Your work — photos, edits, projects, scenes, presets, keywords, settings and API keys — is stored on your own device, not on a server belonging to us. We do not offer cloud sync, we do not include advertising SDKs, and we do not sell or share your data with data brokers.
On-Device Photo, Face, and Subject Processing
Some of our apps, including Matisse Photo Editor, analyze photos you choose to edit. Depending on the platform, this uses Apple's Vision framework, Google ML Kit, and machine-learning models packaged with the app. The analysis powers editing features such as subject and scene-aware masks, depth effects, automatic adjustments, and retouching tools.
- Photo pixels and analysis results stay on your device. Input photos and resulting masks, labels, and depth estimates are processed locally and are not sent to us. Google states that ML Kit does not send API input data or resulting outputs to Google servers. See the ML Kit terms and privacy information.
- ML Kit downloads and operational metrics. On Android, the subject-segmentation component is downloaded and updated through Google Play services. ML Kit may contact Google for fixes, model updates, and hardware-compatibility information, and may send device, app, identifier, performance, and API-usage metrics for diagnostics, analytics, maintenance, and abuse prevention. Google says this telemetry does not include the photo pixels or analysis outputs.
- No biometric identification. We do not use face, person, or subject analysis to identify or verify a person, build a biometric profile, track anyone, or target advertising. Intermediate detections are transient. If you choose and save an edit, the selected adjustments or masks may be stored locally as part of that edit, not as a biometric identifier.
Photo Access, Local Edits, Backups, and Exports
- Photo access on Apple platforms. Matisse asks for photo access for one purpose: so you can browse your library, open an image, and save an edited copy back. If you grant access to only a selection of photos, Matisse sees only those. Saving uses add-only permission, so the app can write a new image but cannot modify or delete anything already in your library.
- Photo access on Android. Matisse for Android accesses and works with images, not videos. On Android 13 and later it requests image access. Earlier Android versions provide a combined shared storage permission that can technically cover other media, but Matisse queries and uses only images. If you choose a library action such as moving, favoriting, or deleting an image, the app asks Android to apply that action to the selected image. For a photo imported through Android's document picker, the app may retain the operating system's read permission so a saved edit can be reopened. It releases that permission when it is no longer needed.
- Local edit data and Android backups. Edit graphs, masks, keywords, preferences, and related app data are stored locally. Matisse for Android disables backup and explicitly excludes its app files, databases, preferences, and external app data from Android cloud backup and device-to-device transfer.
- Exports and metadata. When metadata is enabled, an exported image may contain available source metadata and your edits, including EXIF location coordinates. You can disable metadata or remove location before export. Exported files leave the app only when you save them or send them to a destination or sharing service you select.
AI Image Generation and Your Own API Keys
Monet Lumiere generates images through third-party AI image generators that you choose and pay for directly, using API keys you supply.
- Your keys stay on your device. API keys, projects, prompts, scenes and the whole image library are stored on your Mac. We never receive your keys and we do not proxy your requests.
- What is sent, and when. Nothing is sent anywhere until you run a request. When you do, the prompt, any chat context and any attached images go to the one image generator you selected for that request, using your key. Nothing goes to the other providers, and nothing goes to us.
- Their terms apply to that request. Once a request reaches a provider it is governed by that provider's privacy policy and terms, not ours. Review the policy of whichever provider you configure.
- On-device work. Background removal runs locally and never leaves your Mac.
Legal Basis for Processing
Under the EU General Data Protection Regulation (GDPR), we process your personal data on the following legal bases:
- Performance of a contract — where processing is necessary to provide the Service you have requested (e.g., responding to a support request).
- Legitimate interests — where processing is necessary for our legitimate interests in operating, securing and improving the Service, provided these interests are not overridden by your rights.
- Consent — where you have given us consent to process your data for a specific purpose (e.g., optional marketing communications). You may withdraw consent at any time.
- Compliance with a legal obligation — where we are required to process data to comply with applicable law.
Data Retention
We retain your personal data only for as long as is necessary for the purposes set out in this Privacy Policy, to comply with our legal obligations, resolve disputes and enforce our agreements. Usage Data is generally retained for a shorter period, except where it is used to strengthen the security or improve the functionality of the Service, or where we are legally obligated to retain it for longer.
Transfer of Data
Your information, including Personal Data, may be transferred to — and maintained on — computers located outside of your state, province, country or other governmental jurisdiction where the data protection laws may differ than those from your jurisdiction.
If you are located outside Slovenia and choose to provide information to us, please note that we transfer the data, including Personal Data, to Slovenia and process it there.
Your consent to this Privacy Policy followed by your submission of such information represents your agreement to that transfer.
Where personal data is transferred outside the European Economic Area (for example, to sub-processors such as Google in connection with reCAPTCHA, Chatwoot in connection with in-app support, Sentry in connection with crash reporting, or Dodo Payments and Paddle in connection with purchases), we rely on appropriate safeguards such as the Standard Contractual Clauses approved by the European Commission or applicable adequacy decisions to ensure an equivalent level of protection.
We will take all steps reasonably necessary to ensure that your data is treated securely and in accordance with this Privacy Policy and no transfer of your Personal Data will take place to an organization or a country unless there are adequate controls in place including the security of your data and other personal information.
Disclosure of Data
Legal Requirements
We may disclose your Personal Data in the good faith belief that such action is necessary to:
- To comply with a legal obligation
- To protect and defend our rights or property
- To prevent or investigate possible wrongdoing in connection with the Service
- To protect the personal safety of users of the Service or the public
- To protect against legal liability
Security of Data
The security of your data is important to us, but remember that no method of transmission over the Internet, or method of electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your Personal Data, we cannot guarantee its absolute security.
Your Rights Under the GDPR
If you are located in the European Economic Area, you have the following rights in relation to your personal data:
- Right of access — to request a copy of the personal data we hold about you.
- Right to rectification — to request that inaccurate or incomplete data be corrected.
- Right to erasure ("right to be forgotten") — to request deletion of your personal data.
- Right to restriction of processing — to request that we limit how we use your data.
- Right to data portability — to receive your data in a structured, commonly used, machine-readable format.
- Right to object — to object to processing based on our legitimate interests.
- Right to withdraw consent — where processing is based on consent, you may withdraw it at any time.
- Right to lodge a complaint with a supervisory authority. In Slovenia, this is the Informacijski pooblaščenec (www.ip-rs.si).
To exercise any of these rights, contact us.
Service Providers
We may employ third party companies and individuals to facilitate our Service ("Service Providers"), to provide the Service on our behalf, to perform Service-related services or to assist us in analyzing how our Service is used.
These third parties have access to your Personal Data only to perform these tasks on our behalf and are obligated not to disclose or use it for any other purpose.
Payments and Licensing
Dodo Payments and Paddle. When you buy from us directly, the purchase is completed by a merchant of record — Dodo Payments, or Paddle for earlier and existing purchases. The merchant of record is the seller for that transaction, so it acts as its own controller for the checkout, not merely as our processor.
- What they collect. Your name, email address, billing and tax location, and payment details, together with the information needed to charge tax correctly and to detect fraud.
- What we receive. The transaction record we need to run the business: what was bought, when, the order and licence reference, the country for tax purposes, and your email address so we can send you a licence key and support you. We never see or store your full card number.
- Licence activation. Where an app is unlocked with a licence key — Operator bought directly from us rather than from the App Store — the app contacts Dodo Payments to activate that key and to re-check it periodically while the app runs.
- What activation sends. The licence key and the name of your Mac, as macOS reports it, so you can recognise your own machines in the list of activations for your licence. Mac names often contain the owner's first name; you can rename yours in System Settings before activating. Dodo returns an activation reference, and every later check sends only the key and that reference. No hardware identifier, serial number, or MAC address is sent, and nothing about your documents, prompts, or other app content is sent.
- What is kept on your Mac. The licence key, the activation reference, and the time of the last successful check are stored in your Mac's Keychain. If Dodo cannot be reached, the app keeps working offline for up to seven days before it falls back to the trial. Deactivating a machine releases its activation.
We process this to perform the contract with you and to meet our accounting and tax obligations, which set how long invoices must be kept. See the Dodo Payments Privacy Policy and the Paddle Privacy Policy.
Analytics and Crash Reporting
PostHog and Sentry. Our apps include PostHog for product analytics and Sentry for crash and error reporting. Both are configured to be anonymous. We do not create person profiles, we do not identify you, and nothing either tool collects is linked to your name, email address, or any account. PostHog is hosted in the European Union.
- What PostHog receives. Anonymous product events — which screen was opened, which tool or action was used, whether an operation succeeded — along with the app version and build, the platform, and which edition of the app is running. Every event is filtered against an allowlist of categorical properties before it leaves your device, so free-text you typed cannot travel with it. Person profiles are disabled, automatic screen capture and session replay are off, and IP-based location lookup (GeoIP) is turned off.
- What Sentry receives. Crash reports, app hangs, and a light sample of performance traces: stack traces, the app and operating-system version, and the device model. Sending of default personally identifiable information is disabled, session replay is off, and network request URLs are not attached to reports.
- What neither receives. No photos or image pixels, no file paths or file names, no prompts, chat messages, keywords, or album names, and no other text you type. No API keys. No advertising identifiers, and no tracking of you across other apps or websites.
- Anonymous identifiers. To group events from one installation together, the SDKs generate a random identifier on your device. It is not tied to an account, is not used for advertising or cross-app tracking, and is reset when you delete and reinstall the app.
We use this to see which features people actually use and to find crashes we cannot reproduce ourselves. The legal basis is our legitimate interest in keeping the apps working and improving them. See the PostHog Privacy Policy and the Sentry Privacy Policy.
In-App Support
Chatwoot. Some of our apps, including Matisse Photo Editor, include an in-app support screen ("Contact Us") so you can message us and read our replies without leaving the app. These conversations are handled by Chatwoot, a customer-support platform acting as our processor.
- What is sent. The messages you type, and a random identifier generated on your device so we can route our reply back to the right conversation. We also record the app version and operating-system version so we can help you more accurately.
- What is not sent. Your photos and their metadata are never sent to us or to Chatwoot. Opening the support screen sends nothing — a conversation is created only when you send a message.
- No account required. The identifier is created by the app, is not linked to an account, and is not used to track you across apps or websites. It is reset if you delete and reinstall the app.
Chatwoot processes this data on our behalf under our instructions. See the Chatwoot Privacy Policy.
Spam Prevention
Google reCAPTCHA v3. We use Google reCAPTCHA v3 on our contact form to prevent spam and abuse. reCAPTCHA collects hardware and software information (such as device and application data) and sends it to Google for analysis. Use of reCAPTCHA is subject to the Google Privacy Policy and Terms of Service.
Links to Other Sites
Our Service may contain links to other sites that are not operated by us. If you click on a third party link, you will be directed to that third party's site. We strongly advise you to review the Privacy Policy of every site you visit.
We have no control over and assume no responsibility for the content, privacy policies or practices of any third party sites or services.
Children's Privacy
Our Service does not address anyone under the age of 16 ("Children").
We do not knowingly collect personally identifiable information from anyone under the age of 16. If you are a parent or guardian and you are aware that your child has provided us with Personal Data, please contact us. If we become aware that we have collected Personal Data from children without verification of parental consent, we take steps to remove that information from our servers.
Changes to This Privacy Policy
We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page.
We will let you know via email and/or a prominent notice on our Service, prior to the change becoming effective and update the "effective date" at the top of this Privacy Policy.
You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.
Terms of Service
Acceptance
By downloading, installing, or using our website or apps, you agree to these Terms of Service. If you do not agree, please do not use them.
Licence to use our apps
We grant you a personal, non-exclusive, non-transferable licence to use our apps for their intended purpose. You agree not to copy, reverse engineer, resell, or otherwise misuse them, except where the law expressly allows it.
Acceptable use
You agree to use our products lawfully, and not to use them to harm others, infringe intellectual property, or disrupt our services.
Purchases and payments
Our products may be sold through Dodo Payments or Paddle for purchases made directly from us, or through the Apple App Store or Google Play. Whichever of these you buy through is the merchant of record for that transaction: it sells the licence to you, handles payment and taxes, and its buyer terms apply in addition to these Terms. Your receipt names the merchant of record for your purchase. Prices are shown before you complete a purchase and may include applicable taxes.
Subscriptions
Where a product is offered as a subscription, it renews automatically until you cancel. You can cancel at any time through the store you bought it from. Cancelling stops future renewals and takes effect at the end of the current billing period.
Disclaimer
Our products are provided on an "as is" and "as available" basis, without warranties of any kind, to the fullest extent permitted by law. We work hard to keep everything running, but we cannot guarantee that our products will always be available or completely free of errors.
Limitation of liability
To the fullest extent permitted by law, Unified Sense will not be liable for any indirect or consequential loss arising from your use of our products. Nothing in these Terms limits the rights you have as a consumer that cannot be excluded under applicable law.
Governing law
These Terms are governed by the laws of Slovenia, without affecting any mandatory consumer protections of the country in which you live.
Changes to these terms
We may update these Terms from time to time. The date at the top of this page shows when they were last changed.
Refunds
Where you bought a product decides who handles a refund and which policy applies. Your statutory consumer rights always apply in addition to the policies below.
Purchases made directly from us (Dodo Payments)
These purchases are processed by Dodo Payments as merchant of record, which sells our software to you as a licensed reseller. Refunds are covered by the Dodo Payments Buyer Terms, which provide for refunds case by case at Dodo's discretion. Where the law of the country you live in gives you a right to withdraw from a purchase — for consumers in the EU and EEA, generally within 14 days — that right applies regardless of those terms.
To request a refund, use the receipt Dodo Payments emailed to you, or contact us and we will help. If something is wrong with a purchase, please come to us or to Dodo before raising a chargeback — it is almost always faster to fix directly.
Purchases made directly from us (Paddle)
Some purchases are processed by Paddle as merchant of record; this is the policy that applies if your receipt names Paddle. Refunds and withdrawal rights are covered by the Paddle Buyer Terms and the Paddle Refund Policy. Customers in the EU and EEA generally have 14 days to withdraw from a purchase. To request a refund, use the receipt that Paddle emailed to you, or contact us and we will help.
App Store purchases
Purchases made through the Apple App Store are handled by Apple under the Apple Media Services Terms and Conditions. Refund requests are made to Apple, usually at reportaproblem.apple.com.
Google Play purchases
Purchases made through Google Play are handled by Google under the Google Play Terms of Service, and follow the Google Play refund policy.
Partner privacy policies
The privacy policies of the payment and platform partners mentioned above:
Contact
Questions about this Privacy Policy, our Terms of Service, or the data we hold about you? Get in touch and we will help.
Email [email protected]
Unified Sense, Dal Rupnik s.p., Slovenia