Privacy Policy
1. What stays on your device
The free tier stores your prompt history, Vault, picks, theme preference, and other in-app settings in your browser's localStorage. None of this is sent to our servers. We do not require an account for the free tier and we do not keep a copy of your free-tier prompts.
2. What goes to AI providers when you use AI features
When you use any AI feature — Generate My Prompt, Run With AI, Auto-Boost, Auto-Tune, Build Image Prompt → Generate Image (gpt-image-1), the Image Workshop photo enhancer (gpt-image-1), Reverse Engine image-to-prompt (GPT-4.1 vision), Build Video Prompt → Generate Video (AI video), or the 5-shot Storyboard generator — your submitted text and any uploaded content are sent over HTTPS to our AI service providers (currently OpenAI) to process the request. Inputs and outputs are not retained on PromptMeGood servers beyond what is needed to return a result. AI providers may retain inputs and outputs in line with their own policies (see OpenAI's Privacy Policy). We have configured our API access so that our provider does not train on them, and we do not use your inputs to train models either.
3. When you create an account or buy a paid plan
An account is optional and only needed to (a) buy Founding Member ($79 one-time, lifetime, price locked, first 500 buyers), (b) subscribe to Pro Monthly ($14/mo), Pro Yearly ($129/yr), or Pro Studio ($29/mo or $290/yr) at launch, or (c) opt into account-backed Vault storage. Authentication is handled by Supabase. We store on our servers:
- Your email (used to sign in and to attach your plan to your account).
- Your plan status (
free,pro, orfounding). - A Supabase user ID and (if applicable) a Stripe customer ID.
- Optional profile fields you choose to add (such as a display name).
- If you sign in with Google, the basic profile information Google shares (email, name, photo URL).
You can sign out at any time and request account deletion by emailing support@promptmegood.com. Account deletion does not automatically refund a Founding Member purchase — see the Terms for refund details.
4. Payments (Stripe)
Founding Member purchases and Pro subscriptions are processed by Stripe. We never see, handle, or store your full card number, CVV, or bank account details — Stripe collects those directly. Stripe sends us a confirmation that includes your email, the amount charged, the plan, a Stripe customer ID, and a checkout session ID. We use that information to mark your account as paid and to provide receipts and customer support. Stripe's own privacy practices apply to anything they collect.
5. Optional account-backed Vault storage
If you opt in (signed-in users only), the prompts you choose to save can be mirrored to our servers (Supabase) so the Vault follows you across devices. You can export the Vault to a file at any time, or delete individual entries (or the whole Vault) from inside the app. Deleted entries are removed from our database; backups rotate on a rolling schedule and any residual copies are removed within 30 days.
6. Email collection (waitlist & updates)
If you submit your email through the pricing-page waitlist, contact form, or any newsletter form, your email is stored in our database and a notification is sent to our support inbox via Zoho Mail (our email provider). We use it only to notify you about plan launches and product updates. Unsubscribe at any time by replying or by emailing support@promptmegood.com.
7. What we never do
We do not sell your personal data. We do not share your prompts, files, photo briefs, generated images, or Vault contents with advertisers or data brokers. We do not run third-party advertising on the site. We do not use your inputs to train AI models.
8. Pseudonymous usage analytics
We use Microsoft Clarity to understand de-identified, aggregated usage patterns so we can improve the product. Clarity assigns a session identifier rather than collecting your name, but because session replay and IP-derived metadata are involved, this data is best described as pseudonymous. It includes:
- Click and scroll behavior — heatmaps of taps and scrolling.
- Masked session recordings — replays of mouse movement and navigation. Clarity automatically masks form fields and text inputs, so the contents of your idea field, generated prompts, and any text you type are not captured.
- Frustration signals — aggregate counts of rage clicks, dead clicks, and quick exits.
- Approximate location, device, browser, and IP-derived metadata — collected by Clarity for analytics.
Opt out of Clarity at privacy.microsoft.com, or by enabling Do Not Track / a tracker-blocking extension.
Do Not Track (DNT) & Global Privacy Control (GPC): Browser DNT signals and the Global Privacy Control (GPC) signal are not industry-standard for analytics tools, so Microsoft Clarity does not act on them automatically. PromptMeGood treats both DNT and GPC as an opt-out of pseudonymous analytics: when either header is detected at page load, the Clarity tag is not initialized for your session. Because we do not sell or share personal data and do not use cross-context advertising, no additional GPC-triggered actions apply.
9. Cookies & local storage
We use a small number of first-party cookies and localStorage keys to remember your theme, Vault data, daily-limit counters, returning-user state, conversion-nudge dismissal (sessionStorage, cleared on tab close), sign-in session (for signed-in users), and the Microsoft Clarity analytics session. We do not use third-party advertising cookies.
10. You're in control
Export, import, or clear your locally-stored data any time from the 🗄️ Vault drawer in the app. Clearing your browser storage removes everything PromptMeGood has saved on your device. Signed-in users can also delete cloud-synced prompts and request full account deletion via email.
11. Your privacy rights (GDPR / UK GDPR / CCPA)
If you are in the EU, UK, California, or another jurisdiction with similar laws, you have the right to: (a) request access to data we hold about you, (b) request correction or deletion, (c) object to or restrict processing, (d) data portability where applicable, and (e) lodge a complaint with your local data-protection authority. Email support@promptmegood.com with your request and we will respond within a reasonable timeframe (typically 30 days). We do not sell or share your personal information.
12. Data retention
Locally-stored data stays on your device until you clear it. Account-backed Vault entries stay until you delete them or your account. Account records (email, plan, Stripe customer ID) are kept while your account is active and for up to 24 months after deletion to handle billing disputes, refunds, and legal obligations. Stripe payment records are retained per Stripe's policies and tax requirements (typically 7 years). AI provider request logs are subject to those providers' retention (typically up to 30 days). Microsoft Clarity session data is retained per Clarity's defaults (typically up to 13 months).
13. Sub-processors
The third parties we share data with to operate the service: OpenAI (text, vision, image, video, and Storyboard inference), Stripe (payment processing), Supabase (authentication and account profile if account-backed features are enabled), Microsoft Clarity (pseudonymous analytics), and Zoho Mail (email delivery for waitlist notifications and contact-form submissions). We may add or change sub-processors over time; material changes will be reflected here.
14. International transfers
Our sub-processors are primarily based in the United States. By using PromptMeGood you understand that your inputs and account data may be processed in the US under appropriate safeguards (such as Standard Contractual Clauses where required).
15. Children
PromptMeGood is intended for users 13 and older. We do not knowingly collect personal information from children under 13. If you believe a child has provided us information, contact us and we will remove it.
16. Security
We use industry-standard practices to protect your data — HTTPS for all traffic, hashed credentials handled by Supabase, and PCI-compliant payment processing handled by Stripe. No internet service can be guaranteed 100% secure; if we become aware of a security breach affecting your data, we will notify you and any required regulators in line with applicable law.
17. Changes to this policy
We may update this Privacy Policy from time to time. The "Last updated" date at the top reflects the most recent revision. Material changes will be highlighted in the app.
Questions or data requests? Email support@promptmegood.com.
