Privacy Policy

Introduction

StonedGPT ("we", "our", or "us") is committed to protecting the privacy of our users ("you" or "your"). As of August 2024, this Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website (the "Site"). Please read this privacy policy carefully. If you do not agree with the terms of this privacy policy, please do not access the site.

Information We Collect

We collect several types of information for various purposes to provide and improve our Service to you:

Personal Data

  • Account Information: Email address and name provided during registration
  • Profile Information: Any personal information you choose to provide in your profile or through our services
  • Payment Information: When you purchase our services (processed securely by our payment processors)

Usage Data

  • Technical Data: IP address, browser type, device information, operating system
  • Analytics Data: Anonymous data about site usage patterns and user behavior
  • Cookie Data: Information stored via cookies and similar tracking technologies
  • Log Data: Server logs, access times, and pages viewed
  • Conversation Data: AI prompts, responses, and generated content stored temporarily for service provision
  • Usage Metrics: Daily usage counts and rate limiting data

How We Use Your Information

We use the collected information for various purposes:

  • To provide and maintain our AI-powered services
  • To process your prompts and generate AI responses
  • To enforce rate limits and usage quotas
  • To provide customer support
  • To notify you about changes to our Service
  • To monitor the usage of our Service and detect abuse
  • To detect, prevent and address technical issues
  • To fulfill any other purpose for which you provide it
  • To send internal notifications and system emails via Amazon SES
  • We do NOT use your data for AI model training or improvement
  • We do NOT sell, rent, or share your personal data with third parties for marketing purposes

Cookies and Tracking Technologies

We use cookies and similar tracking technologies to track activity on our Service and hold certain information. Cookies are files with small amount of data which may include an anonymous unique identifier. You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent.

We use the following types of cookies:

  • Essential Cookies: Required for the operation of our Site
  • Analytical/Performance Cookies: Allow us to recognize and count visitors and analyze site usage
  • Functionality Cookies: Enable us to remember your preferences
  • Targeting Cookies: Record your visit to our Site, the pages you visit, and the links you follow

Data Storage and Security

We use industry-standard security measures to protect your personal information:

  • Secure authentication and authorization systems
  • Encryption of data in transit using SSL/TLS protocols
  • Regular security assessments and updates
  • Access controls and authentication requirements for our staff
  • Regular backup procedures to prevent data loss

Data Retention

We retain different types of data for different periods:

  • Account Information: Retained while your account is active and for a reasonable period after deletion
  • Conversation Data: Automatically deleted after 30 days of inactivity
  • Usage Data: Retained for up to 12 months for service analytics and rate limiting
  • Payment Data: Retained as required by financial regulations and our payment processor (Stripe)
  • Legal Compliance: Some data may be retained longer to comply with legal obligations, resolve disputes, and enforce agreements

International Data Transfers

Your information may be transferred to — and maintained on — computers located outside of your state, province, country or other governmental jurisdiction where the data protection laws may differ from those of your jurisdiction. If you are located outside United States and choose to provide information to us, please note that we transfer the data to the United States and process it there.

Your Data Protection Rights

Depending on your location, you may have certain rights regarding your personal information:

  • The right to access information we hold about you
  • The right to rectification if information we hold is inaccurate or incomplete
  • The right to erasure of your personal information
  • The right to restrict or object to processing of your personal information
  • The right to data portability
  • The right to withdraw consent at any time where we relied on your consent to process your information

Third-Party Services

We use the following third-party services to provide our AI-powered platform:

  • Stripe: Payment processing and subscription management
  • DeepSeek: AI text generation services for our text models
  • OpenAI: AI image generation services for our image models
  • Amazon SES: Email delivery for system notifications
  • Klaviyo: Internal email notifications (not marketing to users)
  • Supabase: Database and authentication services

These third parties have access to your data only to perform specific tasks on our behalf and are contractually obligated not to disclose or use it for any other purpose. We do not share your conversation data with marketing companies or data brokers.

Children's Privacy

Our Service does not address anyone under the age of 13 ("Children"). We do not knowingly collect personally identifiable information from anyone under the age of 13. If you are a parent or guardian and you are aware that your child has provided us with personal data, please contact us so we can take appropriate action.

Changes to This Privacy Policy

We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "effective date" at the top of this Privacy Policy. You are advised to review this Privacy Policy periodically for any changes.