Privacy Policy

Last updated: December 14, 2024

Introduction

PetPhoto.ai ("we," "our," or "us") operates the petphoto.ai website and AI pet photo transformation service (the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service.

Please read this Privacy Policy carefully. By using the Service, you agree to the collection and use of information in accordance with this policy. If you do not agree with the terms of this Privacy Policy, please do not access the Service.

1. Information We Collect

Information You Provide Directly

  • Account Information: When you create an account, we collect your email address and name through our authentication provider, Clerk. You may also sign up using third-party services (such as Google), in which case we receive basic profile information from those services.
  • Uploaded Images: Pet photos and other images you upload to use our AI transformation service.
  • Chat and Conversation Data: Messages and prompts you submit when interacting with our AI service to describe desired image transformations.
  • Payment Information: When you purchase credits, payment details are collected and processed by Stripe. We do not store your full credit card number, CVV, or other sensitive payment card data on our servers.
  • Communications: Information you provide when you contact us for support or other inquiries.

Information Collected Automatically

  • Device and Browser Information: IP address, browser type and version, operating system, device type, and unique device identifiers.
  • Usage Data: Pages visited, features used, time spent on the Service, referring URLs, and other interaction data.
  • Cookies and Similar Technologies: We use essential cookies for authentication, session management, and security. See the Cookies section below for more details.

Generated Content

  • AI-Generated Images: Images created by our AI service based on your uploads and prompts are stored and associated with your account.

2. How We Use Your Information

We use the information we collect for the following purposes:

  • Service Delivery: To provide, operate, and maintain our AI pet photo transformation service, including processing your images and generating transformed versions.
  • Account Management: To create and manage your account, authenticate your identity, and maintain your credit balance.
  • Payment Processing: To process transactions and send related information, including purchase confirmations and invoices.
  • Communication: To respond to your inquiries, provide customer support, and send service-related notices (such as updates to our terms or policies).
  • Service Improvement: To analyze usage patterns, diagnose technical issues, and improve the performance, functionality, and user experience of our Service.
  • Security: To detect, prevent, and address fraud, abuse, security risks, and technical issues.
  • Legal Compliance: To comply with applicable laws, regulations, legal processes, or governmental requests.

3. AI Processing and Image Use

We want to be transparent about how your images are processed by AI:

  • AI Image Generation: Your uploaded images and prompts are sent to Google Gemini AI to generate transformed images. This processing is essential to provide our core service.
  • No AI Training: We do not use your uploaded images, generated images, or prompts to train, fine-tune, or improve any AI or machine learning models. Your content is used solely to provide you with the Service.
  • Third-Party AI Provider: Google Gemini AI processes your images according to their own terms and privacy policies. We encourage you to review Google's privacy documentation to understand their data handling practices.
  • Human Review: We do not routinely review your images or prompts. However, we may review content when necessary to respond to support requests, enforce our terms of service, or comply with legal obligations.

4. Data Storage and Retention

  • Image Storage: Your uploaded images and AI-generated images are stored on Cloudflare R2 secure cloud storage. Images are retained indefinitely unless you delete them or close your account.
  • Account Data: Your account information is retained for as long as your account remains active. If you delete your account, we will delete or anonymize your personal information within 30 days, except where we need to retain data for legal purposes.
  • Chat History: Conversation threads and messages are retained to provide you with a history of your transformations and to improve your experience.
  • Payment Records: Transaction records are retained as required for accounting, tax, and legal compliance purposes.
  • Deletion: When you delete images or your account, the data is permanently removed from our active systems and backups within 30 days.

5. Data Sharing and Disclosure

We do not sell your personal information. We may share your information in the following circumstances:

  • Service Providers: We share data with third-party service providers who perform services on our behalf, including authentication, payment processing, cloud storage, and AI processing. These providers are contractually obligated to protect your information and use it only for the purposes we specify.
  • Legal Requirements: We may disclose your information if required by law, court order, or governmental authority, or when we believe disclosure is necessary to protect our rights, your safety, or the safety of others.
  • Business Transfers: If we are involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you of any such change in ownership or control.
  • With Your Consent: We may share your information for other purposes with your explicit consent.

6. Third-Party Services

Our Service relies on the following third-party services, each with their own privacy practices:

  • Clerk (Authentication): Handles user registration, login, and account security. Privacy Policy
  • Stripe (Payments): Processes all payment transactions securely. Privacy Policy
  • Cloudflare R2 (Storage): Stores your uploaded and generated images. Privacy Policy
  • Google Gemini AI (Image Generation): Powers our AI image transformation features. Privacy Policy

7. Data Security

We implement appropriate technical and organizational measures to protect your personal information:

  • Encryption in Transit: All data transmitted between your browser and our servers is encrypted using TLS/SSL (HTTPS).
  • Secure Storage: Images and data are stored in secure cloud infrastructure with access controls and encryption.
  • Authentication Security: User authentication is handled by Clerk, which implements industry-standard security practices including secure password hashing and optional multi-factor authentication.
  • Payment Security: Payment processing is handled by Stripe, a PCI DSS Level 1 certified payment processor.
  • Access Controls: Access to user data is restricted to authorized personnel who need it to operate the Service.

While we strive to protect your information, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security.

8. Your Rights and Choices

Depending on your location, you may have the following rights regarding your personal information:

  • Access: Request a copy of the personal information we hold about you.
  • Correction: Request correction of inaccurate or incomplete personal information.
  • Deletion: Request deletion of your personal information, subject to certain exceptions.
  • Data Portability: Request a copy of your data in a structured, commonly used format. You can download your generated images directly from the My Images page.
  • Restriction: Request that we restrict processing of your personal information in certain circumstances.
  • Objection: Object to our processing of your personal information for certain purposes.
  • Withdraw Consent: Where we rely on consent to process your information, you may withdraw consent at any time.

To exercise any of these rights, please contact us at support@petphoto.ai. We will respond to your request within 30 days.

9. Cookies and Tracking Technologies

We use cookies and similar technologies for the following purposes:

  • Essential Cookies: Required for authentication, session management, and security. These cookies are necessary for the Service to function and cannot be disabled.
  • Preference Cookies: Remember your settings and preferences to enhance your experience.

We do not use advertising cookies, third-party tracking cookies, or sell data to advertisers. Your browser settings may allow you to block or delete cookies, but this may affect the functionality of the Service.

10. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence, including the United States, where our servers and service providers are located. These countries may have different data protection laws than your country.

When we transfer personal information internationally, we take steps to ensure that appropriate safeguards are in place to protect your information, including using service providers that are committed to handling data in compliance with applicable data protection laws.

11. Children's Privacy

Our Service is not intended for children under the age of 13 (or 16 in certain jurisdictions). We do not knowingly collect personal information from children under these ages. If you are a parent or guardian and believe that your child has provided us with personal information, please contact us at support@petphoto.ai, and we will take steps to delete such information.

12. California Privacy Rights (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):

  • Right to Know: You can request information about the categories and specific pieces of personal information we have collected about you.
  • Right to Delete: You can request deletion of your personal information, subject to certain exceptions.
  • Right to Non-Discrimination: We will not discriminate against you for exercising your privacy rights.
  • No Sale of Personal Information: We do not sell your personal information to third parties.

To exercise your CCPA rights, please contact us at support@petphoto.ai.

13. European Privacy Rights (GDPR)

If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have additional rights under the General Data Protection Regulation (GDPR):

  • Legal Basis: We process your personal information based on: (a) your consent; (b) the necessity to perform our contract with you (providing the Service); (c) our legitimate interests (such as improving our Service and preventing fraud); or (d) compliance with legal obligations.
  • Data Subject Rights: You have the rights described in Section 8 above, including the right to lodge a complaint with your local data protection authority.
  • Data Transfers: When we transfer your data outside the EEA, we use appropriate safeguards such as Standard Contractual Clauses approved by the European Commission.

14. Do Not Track Signals

Our Service does not currently respond to "Do Not Track" (DNT) browser signals. However, as noted above, we do not use third-party advertising or tracking cookies.

15. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons. When we make material changes, we will:

  • Update the "Last updated" date at the top of this policy
  • Notify you via email or through a prominent notice on our Service for significant changes

We encourage you to review this Privacy Policy periodically. Your continued use of the Service after any changes indicates your acceptance of the updated policy.

16. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us at:

Email: support@petphoto.ai

We will endeavor to respond to your inquiry within 30 days.