What we store. What we don't.
Privacy notice pursuant to Art. 13 / 14 GDPR. Last updated: 5 June 2026.
What we don't do
- We don't train models on your prompts or responses.
- We don't sell your data or share your content with advertisers.
- We don't load third-party tracking or advertising pixels.
- You can disable "Save history" in Settings — when off, no conversation messages are persisted to our database.
What we process and why
- Account data — your email address and authentication identifiers, handled by our auth provider Clerk. Purpose: creating and securing your account. Legal basis: performance of contract (Art. 6 (1)(b) GDPR).
- Conversations— the prompts you send and the model responses, but only when you have "Save history" enabled. Stored at rest in the EU. Purpose: letting you resume past chats. Legal basis: contract (Art. 6 (1)(b)).
- Model inference — to generate a reply, your prompt is sent to our self-hosted inference servers for the duration of the request. Prompts are processed transiently and are not used for training. Legal basis: contract (Art. 6 (1)(b)).
- Generated media — images or video you generate are stored in object storage so their links remain available to you. Legal basis: contract (Art. 6 (1)(b)).
- Usage metrics — message count, token usage and request latency, aggregated per day. Purpose: enforcing quotas and billing. Legal basis: contract and our legitimate interest in a functioning service (Art. 6 (1)(b), (f)).
- Payment data — processed exclusively by Stripe. We receive your subscription status and the last digits / brand of your card, never the full card number. Legal basis: contract (Art. 6 (1)(b)).
- Error and security logs — technical diagnostics (e.g. error reports via Sentry, server logs) to keep the service secure and reliable. Legal basis: legitimate interest (Art. 6 (1)(f)).
Processors & recipients
We engage the following processors under Art. 28 GDPR. Where a provider processes data outside the EU/EEA, transfers are safeguarded by the EU Standard Contractual Clauses (SCC) and, where applicable, the EU–US Data Privacy Framework.
- Vercel Inc. — application hosting and content delivery (USA; SCC).
- Clerk, Inc. — authentication and account management (USA; SCC).
- Neon, Inc. — managed Postgres database, EU region (Frankfurt).
- Stripe Payments Europe, Ltd. — payment processing (Ireland).
- Upstash, Inc. — rate-limiting datastore (Redis).
- Cloudflare, Inc. — object storage (R2) for generated media (SCC).
- Resend — transactional email delivery (USA; SCC).
- Functional Software, Inc. (Sentry) — error monitoring (USA; SCC).
- RunPod, Inc. — GPU compute for model inference and media generation (USA; SCC).
How long we keep data
- Account data: for the life of your account, deleted on request or after account closure.
- Conversations: until you delete them or close your account; not stored at all when "Save history" is off.
- Invoices and payment records: kept for the statutory retention period (up to 10 years, §§ 147 AO, 257 HGB).
Adults only (18+)
This service is intended exclusively for adults. We do not knowingly process data of persons under 18.
Your rights
You have the right to access (Art. 15 GDPR), rectification (Art. 16), erasure (Art. 17), restriction (Art. 18), data portability (Art. 20) and to object to processing (Art. 21). Where processing is based on consent, you may withdraw it at any time with effect for the future. Send requests to privacy@unfiltr.ai.