Privacy Policy
Last updated: January 21, 2025
Brand ImageGEN ("we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, share, and protect your information when you use our AI-powered visual asset generation platform (the "Service").
By using the Service, you agree to the collection and use of information in accordance with this Privacy Policy.
1. Information We Collect
1.1 Information You Provide Directly
- Account Information: Name, email address, password, billing information, and business details
- User Content: Images, photos, text prompts, brand guidelines, and other materials you upload or create
- Communication: Messages you send us, survey responses, and feedback
- Payment Information: Credit card details and billing address (processed securely through Stripe)
1.2 Information Collected Automatically
- Usage Data: Features used, assets generated, prompts entered, AI models selected, and interaction patterns
- Device Information: IP address, browser type, operating system, device identifiers, and screen resolution
- Analytics: Page views, session duration, referral sources, and click patterns via PostHog and Google Analytics
- Cookies: Authentication tokens, preferences, and analytics identifiers
- API Usage: API calls, rate limit consumption, and integration data for Designer and Enterprise plans
1.3 Information from Third Parties
- Authentication Providers: Data from Google, Microsoft, or other OAuth providers when you sign in
- Payment Processors: Transaction confirmations and payment status from Stripe
- AI Model Providers: Limited metadata from OpenAI, Google, Anthropic, and other AI service providers
2. How We Use Your Information
We use the collected information to:
- Provide the Service: Generate AI assets, process your requests, and deliver features
- Improve AI Models: Train and enhance our proprietary AI models (you can opt out in settings)
- Personalization: Customize your experience, remember preferences, and suggest relevant features
- Analytics: Understand usage patterns, measure performance, and identify improvement opportunities
- Communication: Send service updates, feature announcements, billing notifications, and support responses
- Marketing: Send promotional emails about new features and upgrades (you can opt out)
- Security: Detect fraud, prevent abuse, and protect against security threats
- Legal Compliance: Fulfill legal obligations and respond to lawful requests
3. How We Share Your Information
3.1 Third-Party Service Providers
We share information with trusted service providers who assist us in operating the Service:
- Cloud Infrastructure: Google Cloud Platform, Vercel for hosting and storage
- AI Services: OpenAI (ChatGPT), Google (Gemini), Anthropic (Claude), Replicate for AI model access
- Payment Processing: Stripe for payment processing and subscription management
- Analytics: PostHog, Google Analytics for usage analytics and performance monitoring
- Email Services: For transactional and marketing emails
- Customer Support: Support ticketing and communication platforms
3.2 Business Transfers
If Brand ImageGEN is involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction.
3.3 Legal Requirements
We may disclose your information if required by law, court order, or governmental authority, or to protect our rights, property, or safety.
3.4 Public Content
If you choose to make your designs public, they may be visible to other users and appear in search results. Designs are private by default.
4. Data Retention
We retain your information for as long as your account is active or as needed to provide the Service. Specifically:
- Account Data: Retained until you delete your account, plus 30 days for backup purposes
- Generated Assets: Stored indefinitely unless you delete them or close your account
- Usage Logs: Retained for up to 2 years for analytics and improvement purposes
- Payment Records: Retained for 7 years for tax and accounting compliance
- AI Training Data: If you opt in, your data may be used indefinitely to train models (you can opt out and request deletion)
5. Your Privacy Rights
5.1 Access and Control
You have the right to:
- Access: Request a copy of your personal information
- Correction: Update or correct inaccurate information in your account settings
- Deletion: Delete your account and associated data (some information may be retained for legal compliance)
- Portability: Export your generated assets and data in a machine-readable format
- Opt-Out: Withdraw consent for AI training, marketing emails, and analytics
5.2 Marketing Communications
You can opt out of promotional emails by clicking "Unsubscribe" in any marketing email or by adjusting your account settings. We will continue to send transactional emails related to your account and service usage.
5.3 AI Training Opt-Out
By default, your prompts and generated assets may be used to improve our AI models. You can opt out in your Privacy Settings. If you opt out, we will not use your future data for training, but previously collected data may have already been incorporated into models.
5.4 State-Specific Privacy Rights
California (CCPA/CPRA), Virginia (VCDPA), Colorado (CPA): Residents have additional rights including the right to know what personal information is collected, to delete personal information, to opt out of "sales" (we do not sell data), and to non-discrimination for exercising privacy rights.
European Union (GDPR), United Kingdom (UK GDPR): You have rights to access, rectification, erasure, restriction of processing, data portability, objection to processing, and to lodge a complaint with a supervisory authority.
6. Data Security
We implement industry-standard security measures to protect your information, including:
- Encryption of data in transit (TLS/SSL) and at rest
- Secure authentication with Firebase Authentication
- Regular security audits and vulnerability assessments
- Access controls and role-based permissions
- Monitoring and incident response procedures
However, no method of transmission over the internet or electronic storage is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.
7. International Data Transfers
Your information may be transferred to and processed in the United States and other countries where our service providers operate. These countries may have data protection laws different from your jurisdiction. By using the Service, you consent to such transfers. We implement appropriate safeguards, including Standard Contractual Clauses for EU data transfers.
8. Children's Privacy
Our Service is not intended for children under 13 years of age (or the applicable age of digital consent in your jurisdiction). We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately and we will delete such information.
9. Cookies and Tracking Technologies
We use cookies and similar technologies to:
- Essential Cookies: Required for authentication and core Service functionality
- Analytics Cookies: PostHog, Google Analytics for usage analytics and performance monitoring
- Preference Cookies: Remember your settings and preferences
You can control cookies through your browser settings, but disabling essential cookies may limit Service functionality.
10. Third-Party Links
The Service may contain links to third-party websites or services. We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies before providing any information.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by email or through a prominent notice on the Service. Your continued use after such modifications constitutes acceptance of the updated Privacy Policy.
12. Contact Us
If you have questions about this Privacy Policy or wish to exercise your privacy rights, please contact us:
Email: Spencer@brandimagegen.com
Privacy Rights Requests: To exercise your rights (access, deletion, correction, opt-out), please email us at the address above with "Privacy Request" in the subject line.