PersonaLens

Privacy Policy

Effective October 7, 2026

In short. PersonaLens helps you shop for things you see through Meta glasses, using a shopping profile (your “persona”) that you control. Nothing from your persona is used until you approve it, and each approval lasts at most 15 minutes. Merchants and Shopify only ever receive a few minimized filters, such as a size, a price ceiling, a country and a need like “cold rain”. We don't sell your data, show ads, or use your data to train models.

Who we are

PersonaLens (“we”, “us”) is an independent service at lens.ramkumar.dev, available as a website, an iPhone app, and a connector for AI assistants such as Muse (via the Model Context Protocol). For questions or requests about your data, contact hello@ramkumar.dev.

What we collect

Account information

When you sign in, our authentication provider (Clerk) handles your email address or phone number, name if you give one, and sign-in details. PersonaLens itself receives an account identifier, and shows your email or phone number back to you in the app.

Your persona

The shopping profile you, or an assistant you connect, choose to save. It can include:

Every field is optional. A connected assistant can add to or update your persona, but it can't read your stored persona back. It only receives what you approve for a specific request (see below).

Consents and the disclosure log

We record each consent: which assistant or app asked, which parts of your persona, the reason it gave, and when it was approved, expired or revoked. For every search we also keep a disclosure log: the search words, exactly what was sent to Shopify, which consent it used, and the top result. You can see both under Activity.

Photos and voice

When you search, one still image from your glasses or camera, and what you said (for example “find this under 200”), are sent to our server and passed to Meta's Muse Spark model to recognize the product. PersonaLens doesn't store the image or your words. Only the resulting search phrase, such as “red hooded rain jacket”, goes into your disclosure log. In the iPhone app, the glasses camera and microphone are accessed through Meta's Wearables Device Access Toolkit, and speech is turned into text before it reaches us.

Technical data

Our hosting provider records standard request logs: time, path, status, and network details such as IP address. Error logs may contain the text of an error message. We don't use analytics, advertising or tracking tools. The website uses cookies only to keep you signed in.

How your persona is used

Your persona is used only when you approve it, and only for the parts you approve. Approvals happen in one of two ways:

An approval produces a signed token that holds only the parts you approved and expires within 15 minutes. You can revoke it at any time, and revoking takes effect on the next search. When an assistant's request is approved, that assistant receives the token, so it can see the approved parts, and nothing else.

Who receives what

RecipientWhat they receiveWhy
Shopify (Global Catalog)The search phrase, plus only if you approved them: a size, a price ceiling, a ship-to country, and the “needs” part of your plans (e.g. “cold rain”, never the trip or the place). Never your style, wardrobe, returns, name or account.To find products you can actually buy
Meta (Muse Spark model API)The image and what you said; for ranking, the persona parts you approved for that search and the candidate products.To recognize the product and rank results for you
Your assistant (e.g. Muse), if connectedSearch results, and a token with the persona parts you approved for its request.To shop on your behalf
ClerkAccount and sign-in information.Authentication
Neon (database, AWS us-east-1)Your persona, consents and disclosure log, stored so that only your signed-in account can read them.Storage
VercelRequests passing through our server, and request logs.Hosting

Checkout. When you say “buy it”, checkout opens on Shopify, with Shop Pay where available. Payment and shipping details go directly to Shopify and the merchant under their privacy policies; PersonaLens never sees them.

Each provider handles data under its own terms and privacy policy. We don't sell or rent personal information, don't share it for advertising, and don't use it to train AI models. We may disclose information if the law requires it.

How long we keep it

Your choices and rights

Depending on where you live (for example under the GDPR or the CCPA), you may have further rights, such as to object to or restrict processing or to complain to a data protection authority. We'll honor these when you contact us. We process your data to provide the service you asked for, and based on your consent for each persona disclosure.

Security

Traffic is encrypted in transit. Each request is checked against your sign-in, and every database query is limited to the signed-in account's own records. Persona tokens are signed, scoped, short-lived and revocable. No system is perfectly secure; if we learn of a breach affecting you, we'll tell you.

Children

PersonaLens isn't intended for children under 16, and we don't knowingly collect their data.

Changes

If we change this policy, we'll update the date above. If a change is significant, we'll tell you in the app before it takes effect.