Privacy Policy
This Privacy Policy explains how Prnting.ai ("we", "us", or "Prnting.ai") collects, uses, and shares information when you use our website at prnting.ai and our application at app.prnting.ai (the "Service").
By using the Service, you agree to the practices described here. If you do not agree, please don't use the Service.
1. Information we collect
Account information. When you sign up, we collect your email address. Your password is stored as a one-way hash by our authentication provider (Supabase) — we never see or store the plaintext password.
Project content. When you create a project, you provide content like brand documents (PDFs, text), website URLs, brand assets (logos, product photos), and other inputs. We store this content to operate the Service.
Generated content. Ad copy, image prompts, and images that the Service generates on your behalf are stored on our infrastructure (hosted by Railway, Supabase, and Vercel) so you can access them.
Usage data. We log API requests, model token usage, generated-image cost, error events, and timestamps. This is used to compute your credit balance, prevent abuse, and improve the Service.
Payment information. If you subscribe or purchase credits, payment is processed by Stripe. We never see or store your card details. Stripe shares with us only: the subscription tier, billing email, last-four card digits, and payment status.
Analytics. We use Vercel Analytics to count pageviews and understand traffic sources. This is privacy-friendly — no cookies or cross-site tracking.
2. How we use information
- To operate the Service (run AI generation, store outputs, track credits).
- To process payments and manage subscriptions.
- To enforce abuse prevention (rate limits, fraud detection).
- To send you transactional emails (signup confirmation, password reset, payment receipts).
- To debug errors and improve product quality.
3. Third parties we share with
Your data is shared with the following service providers as part of operating Prnting.ai:
- Supabase — authentication + Postgres database hosting.
- Railway — backend server hosting.
- Vercel — frontend + landing page hosting + analytics.
- OpenAI — text generation (GPT-4o for brief and angles) and image generation (gpt-image-2). Inputs and outputs may be processed by OpenAI per their terms.
- Anthropic — Claude (Sonnet for ad copy and art-director prompts; Haiku for self-critique and adjustments). Inputs and outputs may be processed by Anthropic per their terms.
- Stripe — payment processing.
- Higgsfield — used as an image storage CDN for brand reference images during generation. Optional — only used if uploads succeed.
We don't sell your data to advertisers or data brokers.
4. AI input and output handling
To generate ads, we send your project content (brand brief, scraped website content, brand documents, images) to OpenAI and Anthropic via their APIs. We do not use your content to train AI models. Per OpenAI and Anthropic's API terms, your inputs are not used for model training by default when accessed through the API.
Generated outputs (ad copy, images) are returned to us, stored in your account, and shown to you. You retain the right to use those outputs as described in our Terms of Service.
5. Cookies and similar technologies
We use the minimum cookies needed to operate the Service:
- An authentication session token, set by Supabase, so you stay logged in.
- A small set of preference cookies (e.g. theme, layout density) stored locally in your browser.
We do not use advertising cookies or cross-site trackers.
6. Data retention
We retain your account and project data as long as your account is active. If you delete a project, the project's data (documents, brand assets, angles, ads) is deleted from our database. If you delete your account, all associated data is removed within 30 days, except where retention is required by law (e.g. payment records for tax purposes).
7. Your rights
You can:
- Access and download your account data — email us at support@prnting.ai.
- Correct your account information by editing it in the app.
- Delete a project at any time from your dashboard.
- Delete your account by emailing us — we'll process it within 30 days.
Depending on where you live (e.g. EU, UK, California), you may have additional rights under the GDPR, UK GDPR, or CCPA. To exercise them, contact us at the email above.
8. Security
All data is transmitted over HTTPS. Authentication uses signed JWTs verified against Supabase. Payment data is handled exclusively by Stripe (PCI Level 1 compliant). Database access is restricted via row-level security policies. We do our best to protect your data but no system is perfectly secure.
9. International transfers
Prnting.ai is operated from the United States. By using the Service, you understand that your data may be processed in the US and other countries where our service providers operate.
10. Children
Prnting.ai is not directed to children under 13, and we don't knowingly collect data from anyone under 13. If you believe we have, please contact us and we'll delete it.
11. Changes to this policy
We may update this Privacy Policy. If we make material changes, we'll notify you by email or with a notice in the app before the changes take effect. Continued use after the effective date means you accept the updated policy.
12. Contact
Questions about this policy or your data? Email support@prnting.ai.