Privacy Policy

Last updated: July 10, 2026

This policy explains how ImgEditor processes information when you visit the website, create an account, upload images, generate results, make a purchase, or contact support. ImgEditor is an independent service. Questions or deletion requests can be sent to [email protected].

Information we process

  • Account information: name, email address, verification status, login provider, account role, and subscription status.
  • Images and prompts: uploaded reference images, prompts, generated outputs, generation settings, and technical job identifiers needed to provide the requested workflow and generation history.
  • Billing records: plan, price, currency, payment status, Stripe customer/session identifiers, and credit transactions. ImgEditor does not store complete payment-card details.
  • Service and security data: IP address, user agent, approximate country, timestamps, error logs, and a random browser identifier used to limit abuse. The current identifier does not inspect canvas, WebGL, screen, or hardware characteristics.
  • Optional analytics: page and product events are sent to configured analytics providers only after you accept analytics cookies. Do not place names, emails, prompts, or image contents in analytics event properties.
  • Support and newsletter data: information you submit to support or when you explicitly subscribe to product updates.

Why we process this information

We use the minimum information needed to provide accounts, generate and store requested images, calculate credits, process payments, prevent fraud and abuse, restore generation jobs, provide support, maintain security, and—where consent is given—understand product usage. We do not sell personal information.

Service providers

ImgEditor uses service providers to operate the product. Depending on the feature and configuration, these include:

  • Cloudflare and compatible object storage for delivery, security, and image storage;
  • Stripe for checkout, subscriptions, and payment records;
  • Resend for transactional email and opt-in newsletter delivery;
  • configured AI generation providers to process the prompt and images required for a generation request;
  • Google Analytics, Microsoft Clarity, and Baidu Analytics only after analytics consent, when those integrations are enabled.

Images and prompts submitted to an AI workflow are sent to the provider needed to perform that request. Provider infrastructure, logs, and retention are also governed by the applicable provider terms. Do not upload sensitive or regulated information unless you have confirmed that the workflow and provider terms are suitable for it.

Storage, retention, and deletion

Generated outputs and reference images associated with account history may be stored in object storage so the result can be displayed and downloaded. Deleting a generation-history item initiates deletion of its stored output. Deleting an account initiates deletion of stored input and output objects associated with that account before database records are removed.

Temporary uploads that never become part of a completed generation can require separate storage lifecycle cleanup. If you need immediate removal of an abandoned upload, contact [email protected]. Payment and security records may be retained when required for tax, accounting, dispute, fraud-prevention, or legal obligations.

Cookies and local storage

Essential cookies maintain sessions, locale, security, and your analytics choice. A random browser identifier may be stored for up to 90 days for abuse prevention. Optional analytics scripts load only after consent. See the Cookie Policy for details and controls.

Your choices

You can download results, delete generation-history items, delete your account from security settings, unsubscribe from newsletters, reject optional analytics, or contact support to request access, correction, or deletion. Some requests may require identity verification.

Security and international processing

We use access controls, signed storage requests, authentication, input validation, and operational logging to protect the service. No internet service can guarantee absolute security. Providers may process data in countries outside your own; applicable contractual and provider safeguards govern those transfers.

Children

ImgEditor is not directed to children under 13, or a higher minimum age where local law requires it. Do not create an account if you are below the applicable age.

Changes and contact

Material updates will be posted on this page with a revised date. Contact [email protected] or use the contact form with privacy questions.