Privacy Document

Privacy Policy

Last Updated: October 1, 2025

Our Privacy Commitment

At im2Prompt, we take your privacy seriously. This policy explains how we collect, use, protect, and share your information in compliance with global privacy regulations including GDPR, CCPA, and other applicable laws. Your data security is our top priority.

Information We Collect

Personal Information

Information you provide directly:

  • Email address (for account creation)
  • Name (optional)
  • Authentication details (via Auth0)
  • Payment information (processed securely via Creem)

Usage Information

Information collected automatically:

  • Uploaded images and text inputs
  • Generated prompts and AI outputs (images/videos)
  • Platform preferences and settings
  • Device, browser, and IP address information

Note: We use privacy-preserving analytics (PostHog) that do not track individual users across websites. Your uploaded content is stored securely in Cloudinary and Cloudflare R2.

How We Use Your Information

Service Delivery

  • • Provide AI-powered prompt generation from images and text
  • • Generate images and videos using Sora 2, Nano Banana, Flux, and Stable Diffusion
  • • Process face detection and image analysis
  • • Manage your account, credits, and subscriptions

Improvement & Personalization

  • • Improve our AI models and generation quality
  • • Personalize your experience based on preferences
  • • Develop new features and services
  • • Monitor platform performance and reliability

Communication

  • • Send service-related notifications and updates
  • • Respond to your inquiries and support requests
  • • Send marketing communications (with your consent)
  • • Notify you about credit usage and subscription changes

Legal & Security

  • • Comply with legal obligations and regulations
  • • Protect against fraud, abuse, and security threats
  • • Enforce our terms of service and usage policies
  • • Prevent misuse of AI-generated content
  • • Monitor and remove prohibited content (adult, violence, hate speech, copyright violations)

⚠️ Content Moderation

We reserve the right to review, monitor, and remove content that violates our content policies. This includes content containing adult/sexual material, violence, hate speech, racism, copyright infringement, or other prohibited material. Content moderation is performed to ensure a safe, user-friendly platform for all users.

Information Sharing & Disclosure

We DO NOT sell, trade, or rent your personal information to third parties.

We may share your information only in these circumstances:

AI Service Providers

We share necessary data with AI providers (OpenAI Sora 2, Stable Diffusion, Flux, Nano Banana via KIE.AI, Google Vision API) to process your prompts and generate outputs

Payment Processors

Creem payment service processes billing (we do not store credit card numbers)

Infrastructure & Analytics

Trusted partners including Cloudinary, Cloudflare R2, Neon Postgres, PostHog, and Sentry (under strict confidentiality)

Legal Requirements

When required by law or to protect rights and safety

Data Security Measures

Technical Safeguards

  • ✓ 256-bit SSL encryption for all data transfers
  • ✓ Encrypted data in Cloudflare R2 and Neon Postgres
  • ✓ Secure authentication via Auth0
  • ✓ Regular security audits and monitoring (Sentry)
  • ✓ Secure cloud infrastructure with redundancy

Operational Security

  • ✓ Limited access on need-to-know basis
  • ✓ Environment variable protection for API keys
  • ✓ Regular backups and disaster recovery
  • ✓ Incident response procedures
  • ✓ Continuous security monitoring

While we implement robust security measures, no system is 100% secure. We encourage users to use strong passwords and safeguard their account credentials.

Your Privacy Rights

Depending on your location (GDPR, CCPA, etc.), you may have the following rights regarding your personal data:

Access & Portability

Request a copy of your personal data in a portable format

Correction

Update or correct inaccurate information

Deletion

Request deletion of your account and associated data

Opt-out

Unsubscribe from marketing communications

To exercise these rights: Contact us at support@im2prompt.com or use the options in your account settings.

Cookies & Tracking Technologies

We use cookies and similar technologies to enhance your experience, maintain your session, and analyze platform performance. You can control cookie settings in your browser.

Analytics: We use PostHog for privacy-preserving analytics to improve our service without tracking individual users across websites.

Data Retention

Active Accounts

We retain your data as long as your account is active or as needed to provide services

Generated Content

Uploaded images, generated prompts, and AI outputs are stored securely in Cloudinary and Cloudflare R2. We store your content according to your subscription plan.

After Account Deletion

Personal data is deleted within 30 days, except where retention is required by law

International Data Transfers

Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place to protect your data in accordance with this policy.

We use standard contractual clauses and other approved mechanisms for international data transfers. Our services use cloud infrastructure providers (Cloudinary, Cloudflare R2, Neon) with global compliance certifications.

Children's Privacy

Our Service is not intended for children under 13 years of age (or the minimum age of digital consent in your region). We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe we have collected information from your child, please contact us immediately at support@im2prompt.com.

Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or for legal, operational, or regulatory reasons. We will notify you of any material changes via email or through the Service. Continued use of the Service after changes constitutes acceptance of the updated policy.

Contact Us About Privacy

Privacy & Support

Privacy Requests

For data access, correction, or deletion requests, please email us with "Privacy Request" in the subject line.

We are committed to protecting your privacy and will respond to inquiries within 48 hours.

Your Privacy Matters

We are committed to protecting your privacy and ensuring your data is secure.

Effective Date: October 1, 2025