Privacy Policy
Last updated: March 19, 2026
HowToImg operates the website at https://howtoimg.com and related AI image services. This Privacy Policy explains what data we collect, why we use it, when we share it, and what choices you have.
This policy applies to visitors, registered users, paying customers, and anyone who uploads content, submits prompts, or uses our generation, billing, and support features.
1. Information We Collect
- Account data, including email address, display name, profile image, login method, locale, and account security events.
- Prompt, upload, chat, and generation data, including text prompts, reference images, generated outputs, task metadata, model/provider choices, and generation history.
- Billing data, including plan selection, checkout session details, invoices, subscription status, payment provider identifiers, discounts, disputes, and refund activity.
- Device and request data, including IP address or IP hash, browser, operating system, user agent, page path, referrer, and abuse-prevention logs.
- Marketing and analytics data, including cookies, UTM parameters, visit identifiers, attribution snapshots, and event data from analytics, advertising, or affiliate tools if enabled.
- Safety and moderation data, including reports, appeals, review notes, and evidence provided during policy enforcement or dispute handling.
2. How We Use Information
- Provide the service, authenticate users, save account settings, and deliver generated outputs.
- Upload, process, store, and return reference images and generated media.
- Calculate credit usage, process orders, manage subscriptions, and issue invoices or refunds.
- Detect fraud, chargeback abuse, platform misuse, prompt stuffing, bot activity, and policy evasion.
- Review prompts, uploads, and outputs for safety, copyright, and abuse-prevention purposes.
- Measure product usage, campaign attribution, conversion performance, and service reliability.
- Send transactional emails such as verification messages, receipts, billing notices, and support responses.
3. When We Share Information
We do not sell your personal information. We share data only when necessary to operate the service, comply with law, or protect the platform.
- AI model providers that process prompts, generation parameters, and uploaded references to produce outputs.
- Payment processors that handle checkout, subscriptions, invoices, fraud signals, disputes, and refunds.
- Infrastructure, storage, analytics, customer support, and email vendors that help us run the service.
- Authorities, rights holders, or counterparties when required by law, court order, or a valid intellectual-property complaint.
4. AI Inputs, Uploads, and Outputs
Prompts, reference images, and generation settings are processed through third-party AI providers selected by the service configuration at the time of your request. Those providers may apply their own logs, retention windows, and safety reviews under their own terms.
We store generation records, task metadata, and output URLs so you can access your creation history, download outputs, receive refunds for failed tasks, and appeal moderation decisions.
Do not upload confidential, regulated, or highly sensitive material unless you are comfortable with it being processed by external AI or infrastructure providers.
5. Cookies, Analytics, Advertising, and Attribution
We use necessary cookies for login, security, and preferences. If optional services are enabled, we may also use analytics, advertising, support-chat, and affiliate cookies or scripts.
We record consent selections and may store visit identifiers, referrer data, and campaign parameters so we can measure marketing performance and prevent repeated consent prompts.
- Necessary: authentication, session continuity, locale, and consent state.
- Analytics: product usage, traffic analysis, and performance diagnostics.
- Marketing: attribution, affiliate tracking, advertising measurement, and campaign optimization.
6. Retention
We retain account, billing, and compliance records for as long as needed to operate the service, satisfy tax or accounting obligations, resolve disputes, and enforce our terms.
Generation history, prompts, uploads, outputs, chats, moderation records, and analytics data may be retained until you delete them, your account is deleted, or operational/legal retention periods expire.
We may keep limited backup, fraud, and audit records after deletion where reasonably necessary for security, legal compliance, or abuse prevention.
7. International Transfers
Our providers may process data in countries other than your own. By using the service, you understand that your information may be transferred to and processed in jurisdictions with different privacy laws.
8. Your Rights and Choices
- Access, correct, or delete account information from your settings where available.
- Request deletion of your account and associated personal data, subject to legal, billing, and fraud-retention needs.
- Manage cookie preferences through the consent banner and your browser settings.
- Opt out of promotional email where applicable; transactional messages may still be sent.
- If you are in the EEA, UK, or similar jurisdictions, you may also have rights to object, restrict processing, or request data portability.
9. Security
We use reasonable technical and organizational safeguards, including access controls, encryption in transit, provider-level security tooling, and operational logging. No internet service is completely secure, so we cannot guarantee absolute security.
10. Children
The service is not intended for children under 13, and you may need to be older depending on the law where you live. We do not knowingly collect personal information from children in violation of applicable law.
11. Contact
Privacy requests: privacy@howtoimg.com
General support: support@howtoimg.com
Legal notices: legal@howtoimg.com
