Privacy Policy
Introduction
StonedGPT ("we", "our", or "us") is committed to protecting the privacy of our users ("you" or "your"). As of August 2024, this Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website (the "Site"). Please read this privacy policy carefully. If you do not agree with the terms of this privacy policy, please do not access the site.
Information We Collect
We collect several types of information for various purposes to provide and improve our Service to you:
Personal Data
- Account Information: Email address and name provided during registration
- Profile Information: Any personal information you choose to provide in your profile or through our services
- Payment Information: When you purchase our services (processed securely by our payment processors)
Usage Data
- Technical Data: IP address, browser type, device information, operating system
- Analytics Data: Anonymous data about site usage patterns and user behavior
- Cookie Data: Information stored via cookies and similar tracking technologies
- Log Data: Server logs, access times, and pages viewed
- Conversation Data: AI prompts, responses, and generated content stored temporarily for service provision
- Usage Metrics: Daily usage counts and rate limiting data
How We Use Your Information
We use the collected information for various purposes:
- To provide and maintain our AI-powered services
- To process your prompts and generate AI responses
- To enforce rate limits and usage quotas
- To provide customer support
- To notify you about changes to our Service
- To monitor the usage of our Service and detect abuse
- To detect, prevent and address technical issues
- To fulfill any other purpose for which you provide it
- To send internal notifications and system emails via Amazon SES
- We do NOT use your data for AI model training or improvement
- We do NOT sell, rent, or share your personal data with third parties for marketing purposes
Cookies and Tracking Technologies
We use cookies and similar tracking technologies to track activity on our Service and hold certain information. Cookies are files with small amount of data which may include an anonymous unique identifier. You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent.
We use the following types of cookies:
- Essential Cookies: Required for the operation of our Site
- Analytical/Performance Cookies: Allow us to recognize and count visitors and analyze site usage
- Functionality Cookies: Enable us to remember your preferences
- Targeting Cookies: Record your visit to our Site, the pages you visit, and the links you follow
Data Storage and Security
We use industry-standard security measures to protect your personal information:
- Secure authentication and authorization systems
- Encryption of data in transit using SSL/TLS protocols
- Regular security assessments and updates
- Access controls and authentication requirements for our staff
- Regular backup procedures to prevent data loss
Data Retention
We retain different types of data for different periods:
- Account Information: Retained while your account is active and for a reasonable period after deletion
- Conversation Data: Automatically deleted after 30 days of inactivity
- Usage Data: Retained for up to 12 months for service analytics and rate limiting
- Payment Data: Retained as required by financial regulations and our payment processor (Stripe)
- Legal Compliance: Some data may be retained longer to comply with legal obligations, resolve disputes, and enforce agreements
International Data Transfers
Your information may be transferred to — and maintained on — computers located outside of your state, province, country or other governmental jurisdiction where the data protection laws may differ from those of your jurisdiction. If you are located outside United States and choose to provide information to us, please note that we transfer the data to the United States and process it there.
Your Data Protection Rights
Depending on your location, you may have certain rights regarding your personal information:
- The right to access information we hold about you
- The right to rectification if information we hold is inaccurate or incomplete
- The right to erasure of your personal information
- The right to restrict or object to processing of your personal information
- The right to data portability
- The right to withdraw consent at any time where we relied on your consent to process your information
Third-Party Services
We use the following third-party services to provide our AI-powered platform:
- Stripe: Payment processing and subscription management
- DeepSeek: AI text generation services for our text models
- OpenAI: AI image generation services for our image models
- Amazon SES: Email delivery for system notifications
- Klaviyo: Internal email notifications (not marketing to users)
- Supabase: Database and authentication services
These third parties have access to your data only to perform specific tasks on our behalf and are contractually obligated not to disclose or use it for any other purpose. We do not share your conversation data with marketing companies or data brokers.
Children's Privacy
Our Service does not address anyone under the age of 13 ("Children"). We do not knowingly collect personally identifiable information from anyone under the age of 13. If you are a parent or guardian and you are aware that your child has provided us with personal data, please contact us so we can take appropriate action.
Changes to This Privacy Policy
We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "effective date" at the top of this Privacy Policy. You are advised to review this Privacy Policy periodically for any changes.