Privacy Policy
Effective Date: May 1, 2026 · Last Updated: July 21, 2026
PromptGen ("we," "us," or "our") is committed to protecting your personal information. This Privacy Policy explains how we collect, use, and safeguard your data when you use promptgen-ai.com.
1. Information We Collect
We collect the following types of information:
- Account Information: When you sign in via Google, we receive your name, email address, and profile picture from Google OAuth.
- Usage Data: Number of analyses performed, plan type, credit balance, product funnel event names, normalized page paths, a random tab-session identifier, and timestamps of activity. We do not include full URLs, query strings, raw referrers, prompts, scenarios, images, email addresses, or access tokens in product analytics events.
- Uploaded Images: Images you upload for Image to Prompt or as Storyboard references. Image to Prompt uploads are deleted after analysis. Storyboard references and generated grids are retained privately under the separate windows described in Section 4.
- Generated Prompts: Prompts generated from your images may be saved to your history for your reference.
- Payment Information: Payment transactions are handled entirely by Paddle. We do not store your credit card or payment details.
- Log Data: Server logs including IP addresses, request timestamps, and error information for security and debugging purposes.
2. How We Use Your Information
We use your data to:
- Provide, maintain, and improve the PromptGen service.
- Manage your account, credits, and subscription plan.
- Process payments and prevent fraud.
- Enforce our Terms of Service and ensure acceptable use.
- Send transactional communications (e.g., payment confirmations).
3. Third-Party Services
We use the following third-party services which may process your data:
- Google OAuth / Supabase Auth: For authentication. Subject to Google's Privacy Policy.
- Supabase: Our database and backend infrastructure.
- Google Gemini API: Image to Prompt uploads are sent to Google's Gemini API for image analysis and prompt suggestions.
- OpenAI API: Storyboard scenarios, prompt text, and reference images may be sent to OpenAI for safety moderation, shot-prompt generation, and Storyboard grid generation.
- Paddle: Our payment processor. Subject to Paddle's Privacy Policy.
- Railway: Our hosting provider.
- Cloudflare: Our content delivery and security provider. Cloudflare may also process cookie-free, page-level performance metrics through its Web Analytics RUM beacon. The beacon does not use browser storage or persistent identifiers and is separate from PromptGen's first-party product funnel events.
We do not sell your personal information to third parties.
4. Data Retention
- Account data is retained as long as your account is active.
- Image to Prompt uploads are deleted after analysis.
- Storyboard reference uploads are kept in private storage for processing and expire after 24 hours.
- Generated Storyboard grids remain available in Storyboard History for 90 days from creation and are then removed by scheduled cleanup. The soft-deleted database record may remain for up to 30 additional days before permanent deletion.
- Unlisted Storyboard links: If you deliberately create one, the generated grid plus its visual style, shot count, creation date, and expiry date can be viewed by anyone with the exact link until you unpublish it or the source Storyboard expires. Scenarios, shot prompts, reference images, and account identity are not included. We store a one-way hash of the link token, consent version and time, expiry, and revocation status; the raw token is not stored.
- Prompt history is stored until you delete it or close your account.
- Payment records are retained as required by applicable law.
- First-party product analytics events are retained for 180 days and then automatically deleted.
5. Your Rights
You may have the right to access, correct, or delete your personal data. To exercise these rights, contact us at [email protected].
6. Security
We implement reasonable security measures including HTTPS encryption, JWT-based authentication, Row Level Security in our database, and rate limiting. No method of transmission over the internet is 100% secure.
7. Cookies and Browser Storage
We do not use third-party advertising cookies or persistent analytics identifiers. Authentication and first-party product analytics use session-scoped browser storage. The analytics identifier is a random UUID that expires with the tab session, is not used for cross-site tracking, and is not collected when your browser sends a Do Not Track signal. Your language choice is stored only as a local functional preference and is not linked to the analytics identifier or a user tracking profile.
8. Children's Privacy
PromptGen is not directed at children under the age of 13. We do not knowingly collect personal data from children.
9. Changes to This Policy
We may update this Privacy Policy periodically. Your continued use of the service after changes constitutes acceptance of the updated policy.
10. Contact
Email: [email protected]
Website: promptgen-ai.com
Service Operator Information
Business name: codemeet
Representative: yerim suk
Business registration number: 470-32-01835
Customer inquiries: [email protected]
© 2026 PromptGen. All rights reserved.