Privacy policy
Last updated October 7, 2026. Contact [email protected] for privacy questions and account or data requests.
What we collect
ImageGen Studio stores account email addresses, password hashes for email/password accounts, account balances, prompts, model settings, job status, uploaded images, and request IP addresses used for abuse prevention and rate limiting. Source images and completed outputs for signed-in accounts are retained on our server unless removed by the operator after a valid deletion request. Anonymous outputs are delivered from the generation provider unless you save them to your device.
How we use information
We use account and session data to authenticate you, maintain your library and credit balance, operate the queue, prevent abuse, and provide support. We send your prompt, selected settings, and uploaded source images to the selected generation provider to create the requested output.
We measure steps in the generation and purchase funnel, including a landing-page visit, opening a generator, starting or completing signup, attempting or starting a generation, viewing a credit offer, starting checkout, and a completed purchase. A random first-party cookie is used for up to 90 days to group events into a pseudonymous journey; its raw value is not stored in analytics. Events recorded while signed in also include the account’s internal ID, but not its email address. Anonymous events are not retroactively assigned an account ID. Analytics records do not contain prompts, uploaded images, payment details, IP addresses, or third-party advertising identifiers. Records are deleted after 90 days. We do not send these events to a third-party analytics provider.
Service providers and operational archive
Payments are processed by Stripe. Image and video generation requests are processed by SpicyAPI and its selected model providers. When you submit a generation, its prompt and source image or images are also copied to a private Discord channel used for service operations. Discord hosts that copy, and the operator controls its retention and deletion. If you choose Google sign-in, ImageGen Studio receives only the identity information needed to create or sign in to your account, such as your Google account identifier and verified email address. We do not request access to Google Drive, Gmail, Calendar, or other Google content.
Security and retention
Uploads are stored using access-controlled URLs for generation-provider retrieval. No internet service can promise absolute security; keep copies of sensitive material only where you are comfortable storing them. You may contact support to request access to or deletion of account data. Copies sent to model providers or Discord may follow those providers’ separate retention practices. Payment card data is handled by Stripe and is not stored by ImageGen Studio.
Your choices
Do not upload material you do not have rights to use. You may stop using the service at any time. For account, access, correction, or deletion requests, contact [email protected]. Requests are handled by the operator.