Legal

Privacy Policy

Last updated 7 October 2026

What we collect

  • Account data: email, display name and avatar (if you sign in with Google).
  • Project data: your prompts, chat messages and the generated site versions.
  • Billing data: handled by Stripe. We store customer and subscription identifiers, never card numbers.
  • Usage data: AI run metadata (model, tokens, latency) and security logs such as IP-based rate limiting.

How we use it

To run the service, generate and store your sites, process payments, prevent abuse and improve reliability. We do not sell personal data.

Who processes it

Supabase (database, authentication, storage), Stripe (payments), Resend (transactional email) and AI providers such as Google Gemini, Groq and OpenRouter, which receive your prompts and project context to generate output. Image search queries are sent to Pixabay, Unsplash or Openverse.

Retention and your rights

We keep your data while your account is active. You can request a copy of your data or deletion of your account and projects at any time; if you are in the EU/EEA you also have the rights of access, rectification, erasure, restriction, portability and objection under the GDPR. To exercise them, reply to any email we send you.

Cookies

We use only essential cookies for sign-in and security, and local storage for your theme and a draft prompt. We do not use advertising cookies.