← Back to PromptUI

Privacy Policy

Last updated: March 4, 2026

TL;DR — Plain English Summary

  • ✅ We collect your email, prompts, and generated code to run the service.
  • ✅ We never sell your data to third parties.
  • ✅ Payments go through Stripe — we never see your card details.
  • ✅ Projects are private by default. You control what you share.
  • ✅ You can request deletion of your data at any time.

1. Information We Collect

Account Information

When you sign up via Clerk authentication, we collect your email address, name, and profile information provided by your authentication provider (Google, GitHub, or email).

Usage Data

  • Prompts and instructions you provide to the AI builder
  • Generated code and project files created by the Service
  • Session metadata (timestamps, status, model used)
  • Credit balance and transaction history

Payment Information

Payment processing is handled entirely by Stripe. We do not store credit card numbers or payment details on our servers. We receive transaction confirmations and subscription status from Stripe.

2. How We Use Your Information

  • Service Delivery: Your prompts are sent to AI model providers (via OpenRouter) to generate code. These providers may process your prompts according to their own privacy policies.
  • Account Management: To manage your account, credits, and session history.
  • Service Improvement: Aggregated, anonymized usage data may be used to improve the Service.
  • Communication: To send transactional emails related to your account and purchases.

3. Data Sharing

We share your data with the following third-party service providers, each operating under their own privacy policies:

  • OpenRouter: Receives your prompts and context to generate AI responses
  • Clerk: Handles authentication and user identity
  • Stripe: Processes payments and manages billing
  • Vercel: Hosts the application and may process request logs
  • Supabase: Hosts the database containing your projects and account data

We do not sell your personal information to third parties.

4. Data Storage & Security

  • Your data is stored in a PostgreSQL database hosted on Supabase with encryption at rest.
  • All communication is encrypted in transit via HTTPS/TLS.
  • API keys and secrets are stored as environment variables, never in source code.
  • We implement reasonable security measures but cannot guarantee absolute security.

5. Your Projects

  • Projects you create are private by default and accessible only to you.
  • Completed projects can be shared via public links. Only projects with a "done" status are accessible to others via share links.
  • You can export your projects to GitHub at any time, giving you full ownership and portability.

6. Data Retention

We retain your account and project data for as long as your account is active. If you request account deletion, we will remove your personal data within 30 days, except where retention is required by law or for legitimate business purposes (e.g., payment records).

7. Your Rights

Depending on your jurisdiction, you may have the right to:

  • Access the personal data we hold about you
  • Request correction of inaccurate data
  • Request deletion of your data
  • Export your data in a portable format
  • Object to or restrict certain processing of your data

To exercise these rights, contact us at the email provided on our website.

8. Cookies

We use essential cookies for authentication (via Clerk) and session management. We do not use advertising or tracking cookies. Third-party services may set their own cookies according to their policies.

9. Children's Privacy

The Service is not intended for users under 13 years of age. We do not knowingly collect personal information from children under 13.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes by updating the "Last updated" date at the top of this page.

11. Contact Us

For privacy-related questions or to exercise your data rights, contact us at the email provided on our website.