Privacy Policy
Last updated: 29 August 2026
This explains what Unzen collects when you use Unzen, and what it does not. The
short version: your prompts and your results are never written to our servers. They are stored
by your browser, on your device. What we hold is the minimum required to run an account and
charge for it.
1. What we collect
You give us
- Account. Your email address and a hashed password. Optionally a display name, a phone
number and an avatar if you add them.
- Payment. Records of purchases: an order reference, the amount, the status and the
time. Card details are handled by the payment provider and never reach our servers.
- Correspondence. Anything you write to support.
We collect automatically
- Metering. One row per generation, recording which action you ran, which model, how
many credits it cost, what it cost us, and when. This row exists to bill you correctly and to
catch abuse. It contains no prompt and no result.
- Job state. For video and music, which are asynchronous, we hold a queue reference,
the model, the credits reserved and the status, so the result can be returned to you and
refunded if it fails. The prompt and the output are not stored.
- Technical. Your IP address and browser user-agent, used for rate limiting, fraud
prevention and security. Free-tier quotas are counted per account and per IP.
- Session. A login cookie, and a cookie recording your language choice.
What we never collect
Your prompts. Your generated images, video, music or text. Your chat history. Your uploaded
reference files beyond the moment they are passed to the model. None of it is written to our
database or to any storage we control.
2. What stays on your device
Chats, prompt history, generated media and your interface settings live in your browser's
IndexedDB storage. We cannot read it, and we cannot recover it. If you clear your browser data,
switch browsers or lose the device, that history is gone permanently. There is no cross-device
sync, because syncing would require us to hold the very thing this design exists to avoid.
3. Why we use it
- To run your account and let you sign in.
- To meter credits, take payment and issue receipts.
- To enforce free-tier limits and detect abuse, fraud and automated signups.
- To send transactional email: verification, password reset, receipts, and low-balance or
product notices you can opt out of.
- To keep the Service secure and available.
Where the law requires a legal basis, ours is performance of our contract with you (running
the account, billing), our legitimate interests (security, abuse prevention, service
improvement), your consent (optional email), and legal obligation (tax and accounting records).
4. Who we share it with
- Model providers. Your prompt and any file you attach are sent to the third-party
provider that runs the model you chose, so it can be executed. They handle it under their own
terms. We do not send them your identity.
- Payment provider. Handles your card details directly and returns us a status.
- Email provider. Delivers transactional email; receives your address and the message.
- Infrastructure. Our hosting provider, which operates the servers the Service runs on.
- Analytics. If enabled, aggregate product analytics that measure page and feature use.
They do not receive prompts or results.
- Legal. Where we are legally required, or where it is necessary to protect someone
from serious harm. Because we do not hold prompts or results, there is very little to produce
in response to such a request.
- A successor in a merger or sale of the business, under the same commitments.
We do not sell your personal data, and we do not use your content to train models.
5. Retention
- Account data: while your account exists.
- Metering rows: retained for billing, tax and abuse-prevention purposes, then deleted.
- Payment records: kept as long as accounting and tax law requires.
- Job state: cleared once a job completes or is refunded.
- Prompts and results: not retained at all, so there is nothing to expire.
6. Your rights
You can access, correct, export or delete your personal data, object to processing, and
withdraw consent for optional email at any time. Most of it you can do yourself from your
profile; for the rest, write to
privacy@unzen.ai. Deleting your account
removes your account record and associated server-side data. It does not touch what is stored in
your browser, which only you can clear.
7. Security
Passwords are hashed, traffic is served over HTTPS, and access to production systems is
restricted. No system is perfectly secure, but holding almost nothing is our strongest safeguard:
a breach of our servers would not expose a single prompt or generated file, because they are not
there.
8. Children
Unzen is for adults only and is not directed at anyone under 18. We do not knowingly collect
data from minors. If you believe a minor has created an account, write to us and we will remove
it.
9. International transfers
Our servers and our providers are located outside your country, so using the Service means your
account data is transferred internationally. We use providers that offer appropriate safeguards
for such transfers.
10. Changes
We may update this policy. Material changes are posted here with a new date. The English
version is the authoritative one.
11. Contact
Write to privacy@unzen.ai. See also our
Terms of Service.
← Back