Privacy Policy

Last updated: October 23, 2025

Introduction

BookIllustrationAI ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service.

This policy applies to all users of our service, regardless of location. By using our service, you acknowledge that you have read and understood this Privacy Policy. If you do not agree with our policies and practices, please do not use our service.

Information We Collect

Personal Information

We may collect personal information that you provide to us, including:

  • Email address (required for account creation)
  • Name or display name (optional)
  • Account credentials (stored securely using industry-standard hashing)
  • Payment information (processed securely through Stripe - we do not store full payment card details)
  • Billing address (for payment processing)
  • Content you create (books, illustrations, text descriptions)

Usage Data

We automatically collect certain information when you use our service, including:

  • IP address and approximate geographic location
  • Browser type, version, and language preferences
  • Device information (type, operating system, screen resolution)
  • Pages visited, time spent on pages, and navigation patterns
  • Feature usage and interaction data
  • Error logs and performance metrics

Cookies and Tracking Technologies

We use cookies, web beacons, and similar tracking technologies to collect information about your interactions with our service. For detailed information about our cookie usage, see the "Cookies" section below.

How We Use Your Information

We use the information we collect for the following purposes:

Service Provision

  • Create and manage your account
  • Process your transactions and manage subscriptions
  • Generate AI-powered illustrations based on your descriptions
  • Store and organize your content (books, illustrations, characters)
  • Provide customer support and respond to inquiries

Legal Basis for Processing (GDPR)

Under the General Data Protection Regulation (GDPR), we process your personal data based on:

  • Contractual necessity: To fulfill our service agreement with you
  • Legitimate interests: To improve our service, prevent fraud, and ensure security
  • Consent: For marketing communications and optional features
  • Legal obligations: To comply with applicable laws and regulations

Service Improvement

  • Analyze usage patterns to improve functionality
  • Train and improve AI models using anonymized data
  • Fix bugs and optimize performance
  • Develop new features and services

Communication

  • Send service-related notifications (account updates, subscription changes)
  • Send marketing communications (only with your explicit consent, which you can withdraw at any time)
  • Respond to your support requests and feedback

Security and Compliance

  • Detect and prevent fraud, abuse, and unauthorized access
  • Enforce our Terms of Service
  • Comply with legal obligations and respond to legal requests
  • Protect the rights, property, and safety of our users and service

Data Storage and Security

Security Measures

We implement appropriate technical and organizational measures to protect your personal information, including:

  • Encryption of data in transit (TLS/SSL) and at rest
  • Secure password hashing using industry-standard algorithms
  • Regular security audits and vulnerability assessments
  • Access controls and authentication mechanisms
  • Secure hosting infrastructure with reputable providers
  • Employee training on data protection and privacy

However, no method of transmission over the internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your information, we cannot guarantee absolute security.

Data Retention

We retain your personal information for as long as necessary to:

  • Provide our services to you
  • Comply with legal obligations (e.g., tax records, financial transactions)
  • Resolve disputes and enforce our agreements
  • Maintain security and prevent fraud

When you delete your account, we will delete or anonymize your personal information within 30 days, except where we are required to retain it for legal purposes. Some information may remain in our backup systems for up to 90 days before permanent deletion.

Data Breach Notification

In the event of a data breach that poses a risk to your rights and freedoms, we will notify you and relevant supervisory authorities within 72 hours of becoming aware of the breach, as required by applicable data protection laws.

Your Content

The books and illustrations you create using our service remain your property. We do not claim ownership of your content. You retain all intellectual property rights to the content you create.

By using our service, you grant us a limited, non-exclusive license to:

  • Store, process, and display your content to provide the service
  • Use anonymized, aggregated data to improve our AI models and service quality
  • Create backups to prevent data loss

This license terminates when you delete your content or account, except for anonymized data used for service improvement, which cannot be linked back to you.

Third-Party Services and Data Sharing

We use third-party service providers to operate our service. These providers have access to your information only to perform specific tasks on our behalf and are obligated not to disclose or use it for any other purpose.

Service Providers

  • Supabase: Authentication and database hosting (privacy policy: supabase.com/privacy)
  • Stripe: Payment processing (privacy policy: stripe.com/privacy)
  • Google Gemini: AI illustration generation (privacy policy: policies.google.com/privacy)
  • Hosting Providers: Cloud infrastructure and content delivery

We have data processing agreements (DPAs) with these providers to ensure they handle your data in accordance with applicable data protection laws.

International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. These countries may have data protection laws that differ from those in your country. We ensure appropriate safeguards are in place, including:

  • Standard contractual clauses approved by the European Commission
  • Data processing agreements with all third-party providers
  • Compliance with applicable data protection frameworks

Legal Disclosures

We may disclose your information if required by law, court order, or governmental authority, or if we believe disclosure is necessary to protect our rights, your safety, or the safety of others, investigate fraud, or comply with a legal process.

Your Rights

Depending on your location, you may have the following rights regarding your personal information:

General Rights (GDPR, CCPA, and other jurisdictions)

  • Right to Access: Request a copy of the personal information we hold about you
  • Right to Rectification: Correct inaccurate or incomplete information
  • Right to Erasure: Request deletion of your personal information (subject to legal obligations)
  • Right to Restrict Processing: Limit how we use your information in certain circumstances
  • Right to Data Portability: Receive your data in a structured, machine-readable format
  • Right to Object: Object to processing based on legitimate interests or for direct marketing
  • Right to Withdraw Consent: Withdraw consent for processing based on consent at any time

California-Specific Rights (CCPA/CPRA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act:

  • Right to know what personal information is collected, used, shared, or sold
  • Right to delete personal information (with certain exceptions)
  • Right to opt-out of the sale of personal information (we do not sell your personal information)
  • Right to non-discrimination for exercising your privacy rights

Exercising Your Rights

To exercise any of these rights, please contact us at support@kindlebookillustrations.com. We will respond to your request within 30 days (or as required by applicable law).

You may also exercise some rights directly through your account settings, such as updating your profile information or deleting your account.

Cookies and Tracking Technologies

We use cookies, web beacons, and similar tracking technologies to collect and store information about your interactions with our service.

Types of Cookies We Use

  • Essential Cookies: Required for the service to function (authentication, security, session management)
  • Functional Cookies: Remember your preferences and settings
  • Analytics Cookies: Help us understand how you use our service (anonymized data)
  • Performance Cookies: Monitor service performance and identify issues

Cookie Management

You can control cookies through your browser settings. However, disabling essential cookies may affect the functionality of our service. Most browsers allow you to:

  • See what cookies are stored and delete them individually
  • Block third-party cookies
  • Block all cookies from specific sites
  • Block all cookies
  • Delete all cookies when you close your browser

For more information about managing cookies, visit your browser's help documentation.

Children's Privacy

Our service is not intended for children under the age of 13 (or 16 in the European Union). We do not knowingly collect personal information from children. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately.

If we become aware that we have collected personal information from a child without parental consent, we will take steps to delete that information promptly.

Supervisory Authority

If you are located in the European Economic Area (EEA) or United Kingdom, you have the right to lodge a complaint with your local data protection supervisory authority if you believe we have not addressed your privacy concerns adequately.

You can find your local supervisory authority at: European Data Protection Board

Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. We will notify you of any material changes by:

  • Posting the updated policy on this page with a new "Last updated" date
  • Sending an email notification to registered users (for significant changes)
  • Displaying a prominent notice on our service (for major changes)

Your continued use of our service after changes become effective constitutes acceptance of the updated Privacy Policy. If you do not agree with the changes, you may delete your account and discontinue use of the service.

Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Email: support@kindlebookillustrations.com

We will respond to your inquiry within 30 days as required by applicable data protection laws.