← Back to Mochi
Mochi

Privacy Policy

Mochi: Anime Live Wallpaper AI Last updated: July 10, 2026 Effective date: July 10, 2026

1. Introduction & Scope

This Privacy Policy describes how Mochi: Anime Live Wallpaper AI (“Mochi,” “we,” “our,” or “us”) collects, uses, stores, and shares information when you use our iOS application and related backend services (the “Service”).

Mochi is an independent app operated under the truthfinder-ai.net domain. For privacy questions or data requests, contact us at admin@truthfinder-ai.net.

By using the Service, you acknowledge this Policy. If you do not agree, please do not use the Service.

2. Information We Collect

We collect information in the following categories. Exact fields may vary by device settings, permissions, and features you use.

2.1 Content you provide

  • Photos and images you select or upload for AI animation.
  • Support messages you send us (for example email), which may include your email address, app version, and diagnostic details you choose to share.

2.2 Account & service identifiers

  • Anonymous account ID created via Firebase Authentication when you use the app (no email/password sign-up required).
  • Device-linked free-tier identifiers used to prevent abuse of free generations (for example a Keychain-stored UUID and, where available, Identifier for Vendor / IDFV).
  • Push notification token (FCM / APNs) when remote notifications are registered.
  • Notification preferences you set in the app (for example job-complete or quota-recharged alerts).

2.3 Generation & usage records

  • Job metadata related to animations you request (status, timestamps, quality/motion settings, error codes, and result retrieval info).
  • Quota and entitlement status (free vs Pro tier, usage counts, reset/cycle boundaries).
  • Activity signals used for product features such as re-engagement notifications (for example last-active timing).
  • Analytics and crash data (feature usage events, crash logs, device model, OS version, app version).

2.4 Purchases

  • Subscription and transaction status managed by Apple and RevenueCat (product identifiers, active entitlement, expiration/renewal status). We do not receive or store your full payment card number.

2.5 Advertising & attribution identifiers (permission-dependent)

  • When you allow tracking (App Tracking Transparency), or where allowed without IDFA, measurement partners may process identifiers such as IDFA, IDFV, IP address, and Meta’s anonymous advertising ID to measure ad performance and attribute installs/purchases.
  • If you deny tracking, we limit use of IDFA-based advertising measurement accordingly; some non-tracking analytics and fraud-prevention signals may still be processed.

2.6 Information we do not intentionally collect

  • We do not require your name, postal address, or government ID to use core features.
  • We do not intentionally collect precise location for Mochi’s core product features.

3. How We Use Information

We use the information above to:

  • Provide AI animation, cloud processing, result delivery, and Live Photo export support.
  • Authenticate your session, associate jobs with your account, and enforce free/Pro generation quotas.
  • Prevent abuse (for example multi-account free-credit farming via device binding).
  • Send transactional or optional product notifications (generation ready, free credits recharged, re-engagement), subject to your settings and system permissions.
  • Process subscriptions, restore purchases, and unlock Pro features.
  • Measure product usage, diagnose crashes, and improve reliability and performance.
  • Measure marketing performance (installs, trials, purchases) via Meta and RevenueCat server-to-server attribution where applicable.
  • Respond to support requests and protect the security and integrity of the Service.
  • Comply with legal obligations and enforce our Terms of Service.

4. How We Handle Your Images

  • Cloud processing: To create animations, your images are uploaded securely and processed on our cloud infrastructure (including object storage, backend functions, and GPU processing services).
  • No model training: We do not use your personal photos or uploaded character illustrations to train our AI models.
  • Your ownership: You retain ownership of content you upload. We process it only to provide the Service (see also our Terms of Service).
  • On-device extras: Some local features (for example saving to Photos, local library/cache, or on-device safety checks) may process content on your device without sending that local copy to us beyond what is needed for generation.

5. Third-Party Services

We use trusted service providers to operate Mochi. These providers process data on our behalf or as independent controllers for their own services. Important examples:

Provider Purpose Examples of data
Apple App distribution, In-App Purchases, push delivery (APNs), ATT framework Purchase receipts, device/app identifiers as managed by Apple
RevenueCat Subscription management, entitlement sync, purchase attribution to ads App User ID, product/entitlement status, device identifiers for attribution
Google Firebase Anonymous Auth, Firestore, Cloud Functions, Cloud Messaging, Remote Config, Analytics, Crashlytics, App Check UID, job/quota docs, FCM token, analytics/crash events, app integrity signals
Google Cloud Storage Temporary storage of inputs/outputs for generation Uploaded images, generated videos, signed access URLs
Meta (Facebook) SDK / Conversions API Marketing measurement and ad performance (non-purchase funnel events client-side; purchase/trial events primarily via RevenueCat server-to-server) App events, advertising identifiers when permitted, Facebook Anonymous ID
Our generation infrastructure AI image-to-video processing Input images and generation parameters; output media

Provider privacy documentation (for further detail):

6. Sharing & Sale of Information

  • We share data with the service providers listed above only as needed to run Mochi, process payments, deliver notifications, store media, measure ads, and secure the Service.
  • We do not sell your personal information for money.
  • We do not rent your uploaded images for third-party marketing.
  • Advertising measurement partners may receive identifiers and event data to attribute installs and conversions. Depending on applicable law, some of this activity may be considered a “sale,” “share,” or targeted advertising use. You can limit IDFA-based tracking via iOS Settings / ATT, and contact us for additional requests.
  • We may disclose information if required by law, legal process, or to protect rights, safety, and security.
  • If we are involved in a merger, acquisition, or asset transfer, information may be transferred as part of that transaction, subject to appropriate protections.

7. Storage, Security & Retention

7.1 Where data is stored

Backend data is processed using cloud infrastructure (primarily Google Cloud / Firebase and our generation services). Servers may be located in the United States or other regions where our providers operate. Media is stored in cloud object storage buckets used for input and output files.

7.2 Security

We use industry-standard safeguards appropriate to our size and risk profile, including encrypted transport (HTTPS), authenticated backend APIs, access controls, and app integrity checks (for example Firebase App Check). No method of transmission or storage is 100% secure.

7.3 Media retention (images & videos)

  • Input images: Kept only for the short operational window needed to process your request—generally up to about 24 hours in active storage.
  • Generated videos: Kept for up to about 7 days so you can download or re-fetch results.
  • Access links: Temporary signed download URLs may expire sooner than the underlying object retention window (for example, image links may be valid for a much shorter period than 24 hours).
  • After the operational window, media is removed from active storage as part of our normal lifecycle practices. Residual copies may persist briefly in backups, caches, or logs until those systems rotate.

7.4 Account & operational data retention

  • Anonymous account, quota, job metadata, device free-tier records, and notification tokens are retained while needed to provide the Service, prevent abuse, and maintain purchase entitlements.
  • Analytics and crash logs are retained according to our providers’ retention settings and our operational needs.
  • When you request deletion (see Section 8), we delete or de-identify personal data we control, except where we must retain limited records for legal, security, fraud-prevention, or accounting reasons.

8. Your Rights & Data Deletion

Depending on where you live (for example GDPR in the EEA/UK or CCPA/CPRA in California), you may have rights to:

  • Access the personal information we hold about you
  • Correct inaccurate information
  • Delete personal information
  • Export/port data you provided
  • Object to or restrict certain processing
  • Opt out of sale/sharing or targeted advertising uses, where those concepts apply
  • Withdraw consent where processing is consent-based (for example ATT tracking)

How to request access or deletion

Email admin@truthfinder-ai.net with the subject line “Mochi Privacy Request” and include:

  • The type of request (access, deletion, correction, etc.)
  • Your app User ID if available (shown in the support email template from Settings → Contact Support), and/or other details that help us locate your records
  • The Apple ID email you use only if relevant to a purchase issue (optional)

We will verify the request as reasonably necessary and respond within the time required by applicable law (typically within 30 days where GDPR applies, or as otherwise required).

What deletion covers

  • We will delete or de-identify account-linked backend data we control (for example Firebase user records we can locate, stored job metadata, FCM tokens, and free-tier device bindings associated with your request), subject to technical and legal limits.
  • Media already past retention may already be gone; active media we can still locate will be deleted on request when feasible.
  • Purchase records held by Apple/RevenueCat are controlled primarily by those providers; we cannot erase Apple’s billing history.
  • Uninstalling the app removes local data on your device but does not by itself delete all server-side records—please email us for a full deletion request.

9. Tracking & Advertising Measurement

  • Mochi may show an App Tracking Transparency (ATT) prompt on iOS. You can change this later in iOS Settings → Privacy & Security → Tracking.
  • We use Meta tools and RevenueCat’s server-to-server integration to understand whether installs, free trials, and subscriptions came from ads.
  • We do not use third-party ad banners inside the core Mochi experience as of the date of this Policy; measurement SDKs are used for marketing analytics and attribution.
  • You can reset your advertising identifier in iOS settings. Limiting ad tracking may reduce measurement accuracy but does not remove access to core generation features.

10. International Transfers

If you use Mochi from outside the country where our servers or providers operate, your information may be transferred to and processed in other countries (including the United States). Those countries may have different data-protection laws than your home country. We rely on appropriate safeguards offered by our providers and applicable legal mechanisms where required.

11. Children’s Privacy

Mochi is not directed to children under 13 (or the minimum age required in your jurisdiction). We do not knowingly collect personal information from children under 13. If you believe a child has provided us personal information, contact admin@truthfinder-ai.net and we will take appropriate steps to delete it.

12. Changes to This Policy

We may update this Privacy Policy from time to time. We will post the updated version on this page and revise the “Last updated” date. Material changes may also be communicated in-app or via other reasonable means. Continued use of the Service after an update means you accept the revised Policy.

13. Contact Us

For privacy questions, data requests, or complaints:

We aim to respond to support and privacy emails within 24–48 hours on business days.