Imajinn AIPrivacy Policy

The privacy of your data is important to us, and we work hard to maintain it with careful design decisions and sparing use of third-party services that we trust.

Who We Are

UglyRobot, LLC provides AI services Imajinn AI.

This privacy policy applies to all visitors and customers using or accessing any of the websites that we produced and maintain for the services that we provide, including imajinn.ai. It also applies to human resources data of our employees and contractors.

This policy DOES NOT cover generated content we host for our customers that is shared by them. In that case the customer is responsible for publishing its own privacy policy.

UglyRobot is a registered LLC in Delaware, USA.

For any privacy-related questions, you can reach us at support@imajinn.ai.

Sharing Your Data

We use third-party services (data processors) for our service. The extent to which your data is shared with these providers depends on your use of our services, and we list the specific third-parties in use (with links to their privacy policies) in the sections below.

Each third-party provider has been vetted by our security team to ensure that privacy policies and practices meet or exceed the same levels of compliance and standards that we follow. Where appropriate and available, we hold additional signed Data Privacy Agreements with these companies as an additional layer of accountability in order to help ensure your data is safe and secure.

We disclose potentially personally-identifying and personally-identifying information only to our employees, contractors and affiliated organizations that (i) need to know that information in order to process it on our behalf or to provide services, and (ii) that have agreed, in writing, not to disclose it to others. Some of those employees, contractors and affiliated organizations may be located outside of your home country; by using our websites and services, you consent to the transfer of such information to them. We will not rent or sell potentially personally-identifying and personally-identifying information to anyone.

We may be required to disclose an individual’s personal information in response to a lawful request by public authorities, including to meet national security or law enforcement requirements.

If we ever were to engage in any onward transfers of your data with third parties for a purpose other than which it was originally collected or subsequently authorized, we would provide you with an opt-out choice to limit the use and disclosure of your personal data.

Cookies

A cookie is a string of information that a website stores on a visitor’s computer, and that the visitor’s browser provides to the website each time the visitor returns. We use cookies across our sites to manage authentication and login. Visitors who do not wish to have cookies placed on their computers should set their browsers to refuse cookies before using our websites, with the drawback that certain features may not function properly without the aid of cookies.

Personal Data We Collect

Registered Users

  • If you create an account on one of our sites, you will be prompted to provide your Email Address.
  • Your Email Address is stored in Google Firebase Authentication. Your Email Address is used to send you an email with a link to set your password or to send you an email with a link to reset your password in the event you forget your password.
  • Once an account is created, you must contact us to have it deleted.
  • Accounts have a random userid assigned to them when they are created. They are private and cannot be changed.
  • An anonymized string created from your email address (also called a hash) may be provided to the Gravatar service to see if a Profile picture of you is available for display. The Gravatar service privacy policy is available here.
  • Your First Name, Last Name and Email Address are accessible by employees on the site.
  • If you have an account and you log in to a site, we will set up several cookies to save your login information. These cookies will persist for two weeks. If you log out of your account, the login cookies will be removed. It is important that you log out if you are using a public computer.
  • For users that register on one of our sites, we also store the data they provide in their profile indefinitely. All registered users can see, change or delete most of that data at any time.

Email/Chat/Contact Forms

  • We use Google/G Suite to process all internal email and communication with our customers. Google’s privacy policy is available here.
  • Customers that email us, use live chat, or use any of the contact forms on our websites, will have their email address, IP address, and any data provided in the contact form or body of the email stored in G Suite archives and in our help desk third-party service provider, HelpScout. The HelpScout privacy policy is found here.
  • We keep all email and chat communication indefinitely to help us provide support and improve our services. Individuals can request copies of any previous correspondence with us at any time.

Embedded Content From Other Websites

Embeds are pieces from other websites that are shown from time to time on our websites. They behave in the exact same way as if the visitor has visited the other website and may use cookies or capture information. Typically embedded content is from websites that share videos, images, or other content. These services may collect your IP Address, your User Agent, store and retrieve cookies on your browser, embed additional third-party tracking, and monitor your interaction with that embedded content, including correlating your interaction with the content with your account with that service, if you are logged in to that service.

Links to the privacy policies of the most common services have been included below. Where a general privacy policy is not available, the applicable country is indicated.

 

Analytics

  • We use Vercel Analytics for tracking visits and aggregating information about the traffic to our websites. This is cookieless and anonymized GDPR compliant tracking. The Vercel Analytics privacy policy can be found here.

Marketing

  • We use email marketing to communicate with customers and potential customers from time to time. All email lists and campaigns are “opt-in” meaning we will not send you these sorts of emails unless you indicated that you wish to receive them during signup or other interactions on our website.
  • We may send you “system” emails, such as password reset requests or payment notifications/receipts even if you have not opted-in to email marketing lists.
  • All marketing emails sent by us will include an unsubscribe link in the footer of the email. Emails sent to you may also include standard tracking, including open and click activities.
    We use MailChimp. Mailchimp’s privacy policy is found here.
  • We may utilize social media and web advertising campaigns. These service providers use cookies on our sites and/or pixel tracking to serve ads across the different platforms.

Paying Customers

  • For payment transactions for Imajinn AI, we use Stripe. Stripe’s privacy policy can be found here.
  • To comply with accounting and legal requirements, we keep data on financial transactions in the systems above for up to 10 years.

Hosting and API Services

  • All web servers and hosting are managed by our team on Vercel, and Google Cloud platforms located in different regions around the world. This includes website hosting, backups, database, file storage, APIs, and log files. Vercel’s privacy policy can be found here. Google Cloud privacy policies and terms can be found here.
  • Our services use Bunny.net Content Delivery Network (CDN). Bunny.net may store web log information of site visitors, including IPs, UA, referrer, Location and ISP info of site visitors. Files and images served by the CDN may be stored and served from countries other than your own. Bunny.net’s privacy policy can be found here.
  • In order to run our Imajinn AI services, we receive and store your prompts, styles, arguments, uploaded images, and generated images made by users on your team that use the Imajinn service. This data may also be shared with our cloud provider Replicate. Replicate’s privacy policy can be found here. Staff may have access to review this data for quality control and terms of service enforcement purposes. If you submit personally identifying information in your prompts, this is against our terms of service, but may be stored in our systems.

Your Rights

If you are a registered user you can request to see or download the data we have about you.

For registered users or paying customers, this will also include profile information and download, payment, and support ticket histories.

You can also request “to be forgotten” and we will erase any personally identifiable data we have about you. Of course, this excludes data we need for administrative or security purposes or if we are required by law to retain some of the data.

An individual who seeks access, or who seeks to correct, amend, or delete inaccurate data, should direct his/her query to support@imajinn.aid. We will respond within a reasonable timeframe, not to exceed one week.

Protecting Your Data

The security and reliability of our service is our number one priority. We invest heavily in the training of our staff and our infrastructure to ensure that best practices are followed in everything that we do.

  • Every Imajinn AI employee and contractor goes through an onboarding process. All staff only have access to systems that are directly required to complete the functions of their job. We use dual factor authentication for all critical systems and communications services.
  • All staff (including any contractors) undergo initial training to ensure proper understanding of all security-related processes. Staff regularly attend industry conferences and otherwise stay informed of best practices and relevant trends. Staff review and agree, in writing, to all policies and procedures annually.
  • We only use third-party services, such as Google Cloud, that are fully vetted and adhere to the highest levels of privacy and security practices.

Data Breach Procedures

Should any event occur where customer data has been lost, stolen, or potentially compromised, our policy is to alert our customers via email no later than 48 hours of our team becoming aware of the event. We will also report such incidents to any required data protection authority. We will work closely with any customers affected to determine next steps such as any end-user notifications, needed patches, and how to avoid any similar event in the future.

Privacy Shield Frameworks

Imajinn AI complies with the EU-U.S. Privacy Shield Framework and Swiss-U.S. Privacy Shield Framework as set forth by the U.S. Department of Commerce regarding the collection, use, and retention of personal information transferred from the European Union and Switzerland to the United States. Imajinn AI has certified to the Department of Commerce that it adheres to the Privacy Shield Principles. If there is any conflict between the terms in this privacy policy and the Privacy Shield Principles, the Privacy Shield Principles shall govern. To learn more about the Privacy Shield program, please visit privacyshield.gov.

In compliance with the Privacy Shield Principles, Imajinn AI commits to resolve complaints about our collection or use of your personal information. EU and Swiss individuals with inquiries or complaints regarding our Privacy Shield policy should first contact Imajinn AI at support@imajinn.ai.

If we do not resolve your complaint, you may contact JAMS, our designated independent dispute resolution provider for Privacy Shield inquiries. You can contact JAMS, which is based in the United States, through its website at the following link: https://www.jamsadr.com/eu-us-privacy-shield

If neither Imajinn AI nor JAMS resolves your complaint, you may, in certain circumstances, be able to seek binding arbitration through the Privacy Shield Panel. You can read more about binding arbitration in Annex I to the Privacy Shield Principles.

Imajinn AI commits to cooperate with EU data protection authorities (DPAs) and the Swiss Federal Data Protection and Information Commissioner (FDPIC) and comply with the advice given by such authorities with regard to human resources data transferred from the EU and Switzerland in the context of the employment relationship.

Our commitments under the Privacy Shield are subject to the investigatory and enforcement powers of the United States Federal Trade Commission.

Get started today

It’s time to take visualization to the next level.

Imajinn Now