Privacy Policy
How Lovision handles personal information — effective August 29, 2026
Effective date: August 29, 2026
Last updated: August 29, 2026
Version: 2.0
This Privacy Policy explains how Lovision collects, uses, discloses, stores, and protects personal information when you use Lovision’s websites, web and desktop applications, APIs, model context protocol services (“MCP”), plugins, integrations, collaboration features, AI features, and related services (collectively, the “Service”).
In this Policy, “Lovision,” “we,” “us,” and “our” mean the provider that makes the Service available to you and acts as the controller or personal information processor for the processing described here. For a paid account, that provider is also identified in the applicable checkout, order form, invoice, or app-store listing.
This Policy does not govern a third-party website, model, plugin, integration, or external AI client after information leaves Lovision under your direction. Those parties may have their own privacy terms.
1. Our role
For individual accounts, Lovision generally determines why and how personal information is processed and acts as a controller or personal information processor.
For an organization account, the organization may control project content and member data. Where we process that data only on the organization’s instructions, the organization is the controller and Lovision is its processor or service provider. The organization’s notice and any applicable data processing agreement govern that processing. We remain responsible for account administration, billing, security, abuse prevention, and product operations that we determine independently.
2. Information we collect
The information we collect depends on the features you use and the choices you make.
| Category | Examples |
|---|---|
| Account and identity | User ID, name, email address, avatar, authentication and session information, organization membership, language, theme, and account preferences. Authentication credentials are handled by our identity provider; Lovision does not need your full payment-card details. |
| User Content | Projects, canvases, prompts, reference files, uploads, generated images or videos, 3D assets, fonts, design tokens, comments, messages, agent conversations, task instructions, feedback, and exports. User Content can contain personal information if you put it there. |
| Collaboration and sharing | Invitations, roles, permissions, presence and cursor information, share settings, link-access events, comments, and member activity needed to maintain a collaborative workspace. |
| Public and community content | Display name, avatar, project title, description, category, thumbnail, selected prompt, selected model, likes, and approved project or canvas snapshots that you choose to publish. |
| AI and feature usage | Selected model and parameters, request and provider job IDs, generation status, output metadata, moderation or quality-review results, credit cost, task history, and recovery state. |
| Subscription and transaction data | Plan, credit balance and ledger, usage records, subscription status, billing period, transaction and invoice references, tax and country information, and limited payment metadata returned by our payment provider. |
| MCP, plugin, and integration data | Authorized client, scopes, organization and project target, plugin manifest and permissions, actions performed, OAuth connection details, encrypted access or refresh tokens, and content retrieved from or sent to a connected service. |
| Device, network, and log data | IP address, user agent, browser, operating system, device and app version, language, timestamps, request routes, client session identifier, crash stack traces, redacted diagnostic breadcrumbs, performance measurements when enabled, and security or abuse signals. |
| Support and communications | Support requests, correspondence, survey or feedback responses, attachments, and notification preferences. |
We may derive operational information such as feature adoption, usage totals, likely fraud or abuse, and service performance from the information above. We do not use private User Content to infer sensitive characteristics for advertising.
3. Sources of information
We collect information:
- from you, when you register, upload content, create or generate material, purchase a plan, contact support, publish, or connect a service;
- automatically, when your browser, desktop app, or external client communicates with the Service;
- from your organization or collaborators, when they invite you, share content, assign a role, mention you, or act in a shared project; and
- from providers and integrations, such as identity, payment, AI model, security, hosting, collaboration, and connected-service providers.
4. Why we use information
| Purpose | Information generally used | Legal basis where applicable |
|---|---|---|
| Provide accounts, projects, storage, collaboration, sharing, MCP, plugins, and requested AI features | Account data, User Content, collaboration data, AI usage, integration data | Perform our contract; act on your request before entering a contract |
| Process subscriptions, credits, usage, invoices, and refunds | Account, transaction, plan, and usage data | Perform our contract; comply with tax and accounting law |
| Authenticate users and protect the Service | Account, session, network, device, audit, and abuse data | Perform our contract; legitimate interests in security and fraud prevention; legal obligation |
| Maintain reliability, troubleshoot errors, and recover generation jobs | Diagnostic, request, job, device, and limited content context where necessary | Perform our contract; legitimate interests in reliable and secure operations |
| Improve product features and performance | Aggregated or de-identified usage, feedback, and optional statistical measurements | Legitimate interests; consent where required for optional technologies |
| Operate public galleries, community features, and shared links | Content and profile information you choose to publish or share | Perform your request; consent where required; legitimate interests in operating the feature |
| Provide support and service communications | Account data, contact details, support content, and service status | Perform our contract; legitimate interests; legal obligation |
| Enforce terms, moderate public content, and respond to legal requests | User Content, reports, activity, security, and transaction data | Legitimate interests; legal claims; legal obligation; protection of vital interests where applicable |
Where consent is the basis, you may withdraw it at any time. Withdrawal does not affect processing already completed. Where we rely on legitimate interests, we balance those interests against your rights and expectations.
5. AI processing
When you use an AI feature, we process the prompt, selected references, feature parameters, account and credit context, and resulting Output to provide the request, deliver or recover the result, prevent abuse, calculate usage, and troubleshoot failures.
We may transmit the information needed for a request to AI infrastructure and model providers, including providers available through fal.ai and models supplied by companies such as OpenAI, Google, xAI, ByteDance, Black Forest Labs, Ideogram, Recraft, Kling, MiniMax, and Meshy. The provider used depends on the model you select and can change as the model catalog changes. The product or model documentation identifies available models.
We do not use private User Content to train general-purpose AI models unless we separately disclose that use and obtain any consent required by law. A model or connected service that you select may process data under provider-specific terms shown for that feature. Do not submit sensitive information to an AI feature unless you have authority to do so and have assessed the selected model and provider.
We may use automated tools and trained reviewers to detect prohibited use, evaluate failed generations, and review content submitted to public galleries or community features. We do not use Lovision AI to make solely automated decisions that produce legal or similarly significant effects about you.
Where required or enabled, we may process provenance information and add visible or machine-readable labels to identify AI-generated or synthetic content.
6. Collaboration, public sharing, MCP, and plugins
- Collaborators. Members of a project or organization can access content and activity according to their role and permissions. Changes may appear in real time with member identity, presence, and cursor information.
- Shared links. People who receive a link can access content according to the link setting. Link recipients may copy, download, or re-share what they can see.
- Public features. Content you submit to a gallery or community can be indexed, viewed, copied, and shared by the public. We may display the profile and project information described in Section 2.
- MCP and external clients. An authorized external AI client can receive data and perform actions within the scopes you approve. The external client’s provider processes data under its own terms once it receives that data.
- Plugins and integrations. A plugin or connected service can access the capabilities and data covered by its permissions. Third-party plugin developers and connected services may independently determine how they use data they receive.
Review permissions and sharing settings carefully. Removing access prevents future access through Lovision but cannot recall copies already received by other people or third parties.
7. When we disclose information
We do not sell personal information. We do not share personal information for cross-context behavioral advertising.
We disclose information only as described below or at your direction:
| Recipient | Purpose and information disclosed |
|---|---|
| Identity and account providers | OneAuth / Better Auth infrastructure processes sign-in, verification, sessions, account profile, and related subscription or credit identity. |
| Payment providers | Stripe and connected billing infrastructure process checkout, payment, tax, subscription, invoice, dispute, and refund information. Lovision does not receive your full card number. |
| Hosting, storage, database, and delivery providers | Cloud, database, content delivery, and object-storage providers, including Cloudflare infrastructure where deployed, store and deliver Service data. |
| Realtime collaboration providers | Liveblocks processes collaboration rooms, presence, and synchronized project activity where realtime features are used. |
| AI and model providers | The selected model and its infrastructure providers receive prompts, selected references, parameters, and technical data needed to fulfill and return the request. |
| Security and diagnostics providers | Cloudflare Turnstile helps protect sign-in flows. Sentry receives redacted error and diagnostic information and, only when enabled, sampled performance measurements. |
| Connected services | Services such as Pinterest receive or provide data when you authorize an integration. |
| Other users and the public | Collaborators, link recipients, organization members, and the public receive information according to your permissions and publishing choices. |
| Professional advisers and corporate transaction parties | Lawyers, accountants, auditors, insurers, financing sources, and a buyer or successor may receive information subject to confidentiality and applicable law. |
| Authorities and affected parties | We may disclose information when reasonably necessary to comply with law, protect rights and safety, investigate fraud or abuse, enforce agreements, or establish and defend legal claims. |
Our providers may process information only for the services they provide to us unless they act as an independent controller under their own terms. The provider list can change as the Service evolves; a materially new category of processing will be reflected in this Policy or an appropriate notice.
8. Cookies and similar technologies
We use cookies, local storage, and similar technologies for authentication, security, preferences, editor state, and optional statistical measurements.
Essential technologies cannot be disabled because they are needed to sign in, maintain security, remember core settings, and operate the editor. Optional statistical technologies are disabled by default and can be changed in Settings → Preferences → Cookies. Error reporting and security logs that are necessary to keep the Service reliable and secure may continue even when optional statistical measurements are off.
See the Cookie Policy for the technologies, purposes, retention, and choices.
9. International data transfers
Lovision and its providers may process information in countries other than the one where you live. Those countries may have different data-protection laws.
Where required, we use recognized safeguards for international transfers, such as adequacy decisions, standard contractual clauses, contractual and technical safeguards, security assessments, certifications, or another lawful transfer mechanism. For personal information transferred from mainland China, we will use the applicable statutory mechanism, provide required notices, and obtain separate consent where required.
Because a user selects some AI models, plugins, MCP clients, or connected services, the selected provider’s location and terms may affect where data is processed. Review the applicable provider before sending sensitive or regulated information.
10. Retention
We keep personal information only for as long as reasonably necessary for the purposes described here, including to provide the Service, maintain security and continuity, resolve disputes, enforce agreements, and comply with legal obligations. The retention period depends on the type of information and why it is processed.
| Information | Typical retention approach |
|---|---|
| Account and active project data | Kept while the account or organization needs the Service, then deleted or de-identified after a valid deletion request and the scheduled grace period, normally 30 days. |
| User-owned projects and stored assets | Kept until you delete them or the account is hard-deleted. Detached temporary assets are generally eligible for cleanup after about 24 hours, and unreferenced persistent assets after about 30 days. |
| Organization-owned shared data | May remain for the organization after a member leaves or deletes an account; the deleted member’s retained creator identifiers are removed or replaced with a deletion marker. |
| Public submissions and shared links | Kept until removed, unpublished, expired, or the underlying project/account is deleted, subject to technical caches and copies made by recipients. |
| AI jobs, usage, credits, and transaction records | Kept as needed to deliver and recover jobs, show history, settle credits, support billing, prevent fraud, and meet accounting or legal requirements. |
| Integration credentials | Kept in encrypted form while the integration is connected, then revoked or deleted when disconnected, expired, or the account is hard-deleted, subject to the third party’s own retention. |
| Security, diagnostic, and audit records | Kept for limited operational periods based on security, incident-response, debugging, and legal needs. Sensitive query values, authorization headers, and cookies are redacted from client diagnostics where designed. |
| Deletion, fraud-prevention, billing, and legal records | Limited records may remain after account deletion when needed to document the request, prevent abuse, comply with tax or financial law, resolve disputes, or establish legal claims. |
Backups are access-restricted and age out through routine rotation. Data scheduled for deletion may remain in a backup until that backup is rotated, but it is not returned to active use except where necessary for disaster recovery, security, or legal compliance.
11. Account deletion
You can request deletion in Settings → Account. The Service records a scheduled hard-deletion date, normally 30 days after the request. Authentication and access may end immediately, and restoration may not be available even during the grace period.
At hard deletion, Lovision deletes user-owned projects, canvases, uploaded and generated storage objects, personal prompt and preference data, personal agent conversations and tasks, personal shares, community activity, and stored integration credentials according to the applicable data relationships. Organization-owned assets, tasks, billing records, or collaborative material may remain for other organization members, but the deleted user’s retained identity is removed or replaced with an anonymous deletion marker.
We may retain the limited records described in Section 10. Deleting your Lovision account does not automatically delete copies held by collaborators, public recipients, external AI clients, plugins, or connected third parties.
12. Security
We use administrative, technical, and organizational measures designed to protect personal information, including access controls, scoped permissions, encrypted transport, credential protection, secret redaction, sandboxing for supported plugins, provider review, monitoring, and deletion procedures.
No system is completely secure. Protect your credentials, review sharing and integration permissions, keep local software current, and contact us promptly if you suspect unauthorized access.
13. Your choices and rights
Depending on where you live, you may have the right to:
- know whether and how we process your personal information;
- access or receive a portable copy;
- correct inaccurate or incomplete information;
- delete personal information;
- restrict or object to certain processing;
- withdraw consent;
- opt out of sale, sharing, targeted advertising, or certain profiling where applicable;
- appeal a refusal of a privacy request; and
- complain to a data-protection authority or regulator.
You can update profile and preference information, manage cookies, disconnect integrations, change sharing permissions, export content, and request account deletion through the Service. For other requests, contact us as described in Section 18.
We may verify your identity and authority before completing a request. An authorized agent may submit a request where permitted by law, but we may require proof of authorization and direct verification with you. We will not discriminate against you for exercising a privacy right. Rights may be limited where an exemption applies, such as protecting another person’s rights, security, legal privilege, fraud prevention, or a legal retention duty.
14. Additional information for the EEA, United Kingdom, and Switzerland
The legal bases we generally rely on are described in Section 4. You may object to processing based on legitimate interests and request restriction while an objection is considered. You may also request data portability for information processed by automated means based on consent or contract.
If we transfer personal data outside the EEA, United Kingdom, or Switzerland, we use the safeguards described in Section 9 where required. You may contact us to request information about the applicable safeguard.
You may lodge a complaint with the supervisory authority where you live or work or where an alleged violation occurred. We encourage you to contact us first so we can try to resolve the issue.
15. Additional information for California and other U.S. states
In the preceding 12 months, we may have collected the categories described in Section 2, including identifiers; customer records; commercial information; internet or electronic network activity; approximate geolocation derived from IP address; audio, electronic, visual, or similar information contained in User Content; professional information a user chooses to provide; and inferences about product use, preferences, security, or abuse.
We collect, use, retain, and disclose those categories for the business and commercial purposes in Sections 4 and 7. We do not sell personal information and do not share it for cross-context behavioral advertising. We have not knowingly sold or shared personal information of consumers under 16 for those purposes.
Account credentials, financial account access information handled by the payment provider, and sensitive information a user includes in User Content may qualify as sensitive personal information. We use sensitive personal information only to provide requested services, maintain security, prevent fraud, or for other purposes permitted without a right to limit, unless we provide a separate notice.
Residents of applicable U.S. states may have rights to know, access, correct, delete, obtain portability, opt out, limit certain uses of sensitive personal information, and appeal. Because we do not sell or share personal information for behavioral advertising, there is no sale or sharing opt-out required for our current practices. We honor legally valid browser-based opt-out preference signals where they apply to a processing activity.
16. Additional information for mainland China
For purposes of the Personal Information Protection Law of the People’s Republic of China, the Lovision provider described at the beginning of this Policy is the personal information processor for processing it determines.
We process personal information on the legal bases permitted by applicable law, including obtaining consent, performing or administering a contract to which you are a party, complying with legal duties, responding to public-health or emergency needs, processing information lawfully disclosed by you within a reasonable scope, and other bases provided by law. Where required, we obtain separate consent for sensitive personal information, disclosure to another processor, public disclosure, or cross-border transfer.
Sensitive personal information may include identity credentials, financial transaction information, precise location, biometric or health information, information about children under 14, and sensitive material you place in User Content. Do not submit such information unless it is necessary, lawful, and appropriately authorized. The Service is not directed to children under 13; processing personal information of a child under 14 requires the consent of the child’s parent or guardian and special protection.
You may exercise rights to know, decide, restrict, refuse, access, copy, correct, supplement, and delete personal information as provided by law, and may request an explanation of our processing rules. Close relatives may exercise lawful rights relating to a deceased person’s information unless the person arranged otherwise.
17. Children
The Service is not directed to children under 13, and we do not knowingly collect their personal information. If local law requires a higher age for independent consent, that higher age applies. A parent or guardian who believes a child provided information without valid permission should contact us so we can investigate and delete it where required.
18. Contact us
Submit privacy questions, rights requests, complaints, and data-protection notices through the Lovision Help Center. Include the email associated with your account, the relevant organization if any, the right you want to exercise, and enough detail for us to locate the information. Do not send passwords, authentication tokens, or unnecessary sensitive information.
The provider responsible for a paid account is also identified in the applicable checkout, order form, invoice, or app-store listing. If an organization controls your account or project, contact that organization for organization-controlled data; you may also contact Lovision if you need assistance identifying the correct recipient.
19. Changes to this Policy
We may update this Policy to reflect changes in the Service, law, providers, or processing practices. We will post the updated version and effective date. If a change materially affects your rights or how we use personal information, we will provide additional notice or obtain consent where required. Earlier versions may be requested through the Help Center.