Privacy Policy

Effective date: August 20, 2026

1. What this policy covers

This policy explains what data CleanVector (“we”, “us”) collects when you use cleanvector.ai, why we collect it, and the choices you have. It applies to the website, the app and our APIs.

2. Data we collect

  • Account data. When you sign in with Google or Apple we receive your name, email address and profile picture. We never see your password.
  • Content you create. Prompts you write, images you upload and the vectors we generate for you are stored so your library keeps working.
  • Billing data. Payments are processed by Stripe. We store your plan, credit balance and Stripe customer reference, never your card number.
  • Technical data. Standard server logs (IP address, browser type, timestamps) used for security and debugging, retained briefly.
  • Product usage and quality feedback. For signed-in users we record account-scoped events such as a creation being queued or completed, opening or saving an asset, pricing or paywall views, checkout and purchase status, the downloaded file format, and any result quality vote or reason you submit. This helps us find failed workflows and improve output quality.
  • Acquisition context. We keep the first and latest page or campaign that brought a signed-in customer, including referral pages and campaign parameters such as UTM values or Google click identifiers when present. This lets us connect registrations and purchases to the channel that generated them.

3. How your content is processed

To generate and vectorize images, your prompts and images are sent to our AI processing partners (fal.ai and the model providers available through it) strictly to perform the work you requested. Results are stored in our object storage (Cloudflare R2) so you can re-download them at any time. We do not use your content to train models, and we do not sell your data to anyone.

4. Cookies

Essential session storage keeps you signed in and secures your account. It cannot be disabled while using authenticated features.

Google Analytics and Google Ads tags start with storage and advertising consent denied. In that state they send cookieless measurement signals without writing analytics or advertising cookies. Reddit Pixel also stays off. We show a brief cookie notice on your first visit. Choosing “Only necessary” keeps optional storage off; choosing “Sounds good” or continuing to another page after the notice allows it. Your preference is saved in your browser, and you can change it at any time through “Privacy choices” in the footer. Advertising personalization stays off.

First-party storage remembers the page, referral or campaign that brought you to CleanVector so it can be associated with your account after sign-in. Declining optional analytics removes Google client and session identifiers but keeps this first-party source context for our own acquisition reporting.

5. Analytics and advertising measurement

CleanVector also keeps the signed-in product usage and quality events described above in our own database. This operational measurement does not depend on advertising cookies and is not shared with advertising platforms. Before consent, Google receives cookieless signals that include the consent state and basic page or conversion activity. These signals do not use analytics or advertising cookies to identify a visitor. When you allow analytics, Google and Reddit may receive page addresses, device and browser information, referral data, and the product events described above. Reddit advanced matching is disabled, so we do not send email addresses or phone numbers through the pixel. We keep the first and latest campaign touch associated with your account so completed purchases can be attributed in our own reporting. Google client and session identifiers are added only after you accept optional analytics. We use this information to evaluate product usage and campaign performance, not to sell personal data. Consent Mode communicates your choice to Google. See Google’s business data responsibility information and Reddit Pixel documentation.

6. Retention & deletion

Your account data and library are kept for as long as your account exists. You can ask us to delete your account and all associated content at any time via the contact page; deletion is completed within 30 days, including copies in object storage.

7. Your rights

Depending on where you live (e.g. GDPR in the EU, CCPA in California), you may have the right to access, correct, export or erase your personal data, and to object to or restrict certain processing. Write to us via the contact page and we will respond within 30 days.

8. Security

All traffic is encrypted in transit (TLS). Content is stored in access-controlled storage, and production data access is limited to operating the service. No method of storage is 100% secure, but we work to protect your data with industry-standard measures.

9. Children

CleanVector is not directed at children under 13 and we do not knowingly collect their data.

10. Changes to this policy

We may update this policy as the product evolves. Material changes are announced on this page with an updated effective date.

Questions about this policy or your data? Contact us and we read everything.