Skip to main content

Privacy policy

This Privacy Policy explains what information the current Kyeo AI service processes, why it is used, and how that information is protected. Read it before using the service.

1. Information we collect

  • Account information: the username and email address you submit during registration, plus the most recent device description and activity time recorded after sign-in
  • Payment and order information: the selected pack, amount, credits, payment method, order status, and transaction identifier returned by the payment channel; the current on-site flow does not collect card numbers or payment passwords
  • Creation data: prompts, generation settings, uploaded reference content, task status, and generated images, videos, audio, or related links
  • Security and operational data: IP information used for sign-in or registration rate limits, request status, and service error records
  • Service interactions: templates, ratings, and comments you submit, plus the read status of in-app notifications

2. How we use information

  • Process generation requests through the platform and third-party AI services
  • Manage accounts, credit balances, orders, and credit history
  • Store creation records so you can view, download, delete, or generate again with the same settings
  • Send service notifications, review results, and system announcements
  • Process templates, ratings, comments, and other in-app interactions
  • Apply sign-in and registration rate limits, troubleshoot problems, and protect the service

3. Storage and security details

  • Passwords are stored as one-way hashes with a random salt; directly readable plaintext passwords are not stored
  • The sign-in session is stored in an HttpOnly cookie for up to 7 days by default; the cookie is cleared when you sign out or delete the account
  • Some generated media expires after 14 days. Check the creation page for the actual expiry; media with no expiry date is not guaranteed to remain available forever
  • Order, credit, and service-interaction information is used to provide the related features, process transactions, and protect account security
  • After account deletion, you can no longer sign in. Account data is deleted through the account-deletion process and cannot be recovered

4. Third-party processing and public content

  • AI providers receive the prompts, settings, and uploads needed to complete a generation. Kyeo AI does not intentionally send your username or email as model parameters; personal information you include in a prompt or file is transmitted with the request
  • Payment services receive the order number, amount, product description, payment method, and callback addresses needed to process payment
  • If you publish a creation, submit a template, or post a comment, the related content and public profile details may be shown to other users
  • Kyeo AI may need to provide relevant records when required by applicable law or a valid legal request

5. Cookies and local storage

  • The sign-in cookie maintains your session and uses HttpOnly and SameSite=Lax; Secure is also enabled in production
  • Browser local storage keeps your theme, dismissed announcements, and some workbench preferences
  • Prompt drafts and the most recently selected model may be stored temporarily in the current browser and cleared after they are read by the existing flow
  • You can clear cookies and local storage in your browser. Doing so may sign you out and reset saved preferences

6. Your choices and account controls

  • You can view your profile, credits, orders, and creation records from the account pages
  • You can change your username, profile picture, and password; the email address cannot currently be changed through self-service
  • You can download generated media while it remains available and delete creation records you no longer need
  • You can delete the account. After deletion, you can no longer sign in, account data is deleted, and it cannot be recovered
  • To request an email correction, ask how a record is handled, or submit another request, use the Contact page and include information that can identify the account

7. Use by minors

  • The service is intended for users aged 18 or older. The current registration flow does not collect a date of birth or perform age verification
  • Minors should not submit personal information or use payment features without a guardian's consent
  • If a guardian believes a minor has submitted personal information, use the Contact page and provide information that can identify the account

8. Policy updates

  • This policy may change as service features or data-handling practices change
  • The updated version will be published on this page with a revised Last updated date
  • If you do not agree with an updated version, stop using the service and use the Contact page to address any account-related issue

If you have questions about this Privacy Policy or current data handling, submit an inquiry through the Contact page.

Last updated: July 15, 2026