1. Who is responsible
DeTrace AI is the operator responsible for personal data used by this service. Privacy questions and rights requests can be sent to hello@detrace.ai.
2. Your content stays local
Text and images placed in the workspace are processed locally in your browser. They are not uploaded to a DeTrace AI processing server, stored by us or used to train models.
3. Personal data we collect
We process account details such as email address, user ID and profile name; subscription status and Stripe customer references; communications you send to us; and limited security or diagnostic information produced by service providers.
4. Purposes and legal bases
We use account and subscription data to provide the service and fulfil our contract with you. We process billing records and certain account information to comply with legal obligations.
We may use limited security and diagnostic data where necessary for our legitimate interests in protecting accounts, preventing abuse and maintaining reliable operations.
5. Service providers
Supabase provides authentication and database services. Stripe processes payments and billing records. Hosting and infrastructure providers may process limited technical logs.
These providers process data under their own terms and safeguards. We do not sell personal data.
6. Retention
Account data is kept while your account remains active and then deleted or anonymised when it is no longer needed. Transaction records may be retained where required for accounting, tax, fraud prevention or legal claims.
7. Cookies and local storage
The site uses necessary browser storage for authentication and security. We do not currently use advertising cookies. Any future non-essential tracking will be introduced with an appropriate notice and choice.
8. International transfers
Some service providers may process data outside your country. Where required, transfers are protected through recognised legal safeguards used by those providers.
9. Your rights
Depending on applicable law, you may request access, correction, deletion, restriction, objection or portability. You may also complain to your local data protection authority. UK users can contact the Information Commissioner’s Office.
10. Security and updates
We use access controls, row-level database security and established payment providers to reduce risk. No system is completely secure.
We update this notice when our processing changes. The revision date on this page identifies the current version.