Privacy Policy
1. Introduction
CtrlCut ("we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our website and services.
2. What Information We Collect
- Account Information: When you sign up, we collect your email address and (optionally) your name.
- Authentication: We use Supabase Auth for secure login and session management.
- User Content: When you upload images (for cutouts, stickers, etc.), these are stored securely in our Supabase storage.
- Usage Data: We collect information about your usage of our services, such as generated images, credits used, and purchase history.
- Payment Information: Payments are processed via DodoPayments. We do not store your credit card number, CVV, or other sensitive payment data. We only store payment records (such as plan purchased, credits granted, and transaction date) for your account and support purposes.
Payments
- Payment Processing: All payments on CtrlCut are securely processed by our third-party provider, DodoPayments. We do not store your credit card or sensitive payment information on our servers.
- PCI Compliance: DodoPayments is PCI DSS compliant, ensuring your payment data is handled with industry-standard security.
- Refunds & Cancellations: Please refer to our Refund Policy for details on refunds and cancellations.
- Disputes: If you have any issues or disputes regarding payments, please contact us at support@ctrlcut.com. We will work with you and our payment provider to resolve any concerns.
- Payment Records: We store records of your purchases (plan, credits, date) for account management and support, but never your full payment details.
3. How We Use Your Information
- To provide and improve our services (e.g., generate images, manage your credits, and process your requests).
- To authenticate users and protect accounts.
- To process payments and manage your credit balance.
- To communicate with you about your account, purchases, or support requests.
- To comply with legal obligations.
4. How We Share Your Information
- Third-Party Services: We use Supabase for authentication, database, and storage, and DodoPayments for payment processing.
- No Sale of Data: We do not sell your personal information to third parties.
- Legal Compliance: We may disclose information if required by law or to protect our rights.
5. Data Security
- All user data is stored securely using Supabase's managed infrastructure.
- Sensitive operations (like credit deduction and image generation) are protected by authentication and authorization checks.
- Uploaded images are only accessible to the authenticated user.
- Payment Security: All payment transactions are encrypted and processed securely by DodoPayments. We never store your full payment details.
6. Data Retention
- We retain your account and generated content as long as your account is active.
- You may request deletion of your account and data at any time by contacting support.
7. Your Rights
- You can access, update, or delete your personal information at any time.
- You can request a copy of your data or account deletion by contacting us at support@ctrlcut.com.
8. Children's Privacy
Our service is not intended for children under 13. We do not knowingly collect data from children.
9. Changes to This Policy
We may update this policy from time to time. Changes will be posted on this page.
10. Contact
For questions or requests, contact us at support@ctrlcut.com.