Privacy Policy
Last Updated: January 21, 2025 | GDPR Compliant
1. Information We Collect
Account Information: Email address, password (encrypted), name, subscription plan.
Photos: Images you upload for enhancement. Stored temporarily and deleted after 30 days.
Usage Data: IP address, browser type, device information, pages visited, features used.
Payment Information: Billing is disabled in this release. If billing is enabled later, payment processing will be handled by a third-party processor and we will not store full card details.
2. How We Use Your Data
- Provide and improve our photo enhancement service
- Process payments and manage subscriptions
- Send transactional emails (receipts, password resets)
- Respond to support requests
- Analyze service usage to improve performance
- Comply with legal obligations
We DO NOT: Sell your data, train AI models on your photos, or share your photos with third parties.
3. Data Storage & Security
- Encryption: All data encrypted in transit (TLS 1.3) and at rest (AES-256)
- Storage: S3-compatible object storage with server-side encryption
- Retention: Photos deleted after 30 days, account data retained while active
- Access Control: Role-based access, 2FA for staff, regular security audits
4. Your GDPR Rights
- Right to Access: Download all your data via Dashboard -> Settings -> Export Data
- Right to Deletion: Delete your account and all data via Settings -> Delete Account
- Right to Rectification: Update your information in account settings
- Right to Portability: Export data in JSON format
- Right to Object: Opt out of marketing emails (we send very few)
- Right to Withdraw Consent: Cancel subscription anytime
Contact privacy@photoglow.ai to exercise your rights.
5. Cookies & Tracking
We use minimal cookies: Authentication (required), Analytics (Plausible Analytics - privacy-focused, no personal data collected), Preferences (optional).
Manage cookie preferences in your browser settings.
6. Third-Party Services
- AWS-compatible object storage: File storage infrastructure (Privacy Policy)
- SendGrid: Transactional emails (Privacy Policy)
- Plausible: Privacy-friendly website analytics (Data Policy)
7. Contact & Data Protection Officer
Email: privacy@photoglow.ai | DPO: legal@photoglow.ai