← Signature Twin AI

Privacy Policy

Version 1.0 · Last updated 22 September 2026 · Signature Twin AI, operated by Rachael Berry

1. Who we are

Signature Twin AI, operated by Rachael Berry is responsible for the information described here. The way to reach us about privacy — including a request to access, correct or delete your information, or a privacy complaint — is our public support form. It works even if you cannot sign in.

We do not use analytics tools, advertising trackers or marketing profiling anywhere in this app.

2. What we collect and why

These are every category of information the app holds about you.

  • Your sign-in account

    Your email address, a securely hashed password (or your Google sign-in), whether your email is confirmed, and sign-in times. Needed so only you can reach your account.

  • Your profile

    Your name, the email you gave as your purchase email, how far through setup you are, your course-access marker and your consent times. Needed to run your setup journey and unlock what you have bought.

  • Access records

    Whether your account has beta testing access or verified paid access, when it changed and who changed it. Needed to decide whether image creation is open for your account.

  • Purchase and refund records

    The provider name, the provider's own order reference, the product, the amount, the currency, the purchase date, status and any refund date and reason, plus the email used for the purchase. Needed for accounting, tax, refunds and fraud prevention. No card or banking details are ever collected or stored.

  • Administrative audit records

    A private record of administrative actions on accounts (for example granting access or recording a refund) with who did it and when. Needed for security and accountability.

  • Allowance balances and allowance history

    Your remaining included counters, and one entry per reservation showing the type, amount, status and job reference. Needed so allowances are counted fairly and failed runs are released.

  • Generation jobs and request records

    The stage, counts, status, a short failure message, and per-request technical details such as the model, image size, quality, timings, token counts and estimated cost. Needed for reconciliation, cost control, abuse prevention and troubleshooting.

  • Your original photographs

    The image files you upload, with the file name, the kind of shot and the basic review result. These are the identity source for everything the app creates for you.

  • Your selected full-body source photographs

    Which two of your own head-to-toe photographs you chose as the source for your full-body reference.

  • Your approved references

    Which generated Master portrait and which generated full-body image you approved. These become the references for later stages.

  • Generated images and the prompts used

    The image files created for you, and the prompt text that produced each one — which includes the description you typed and any Brand Kit wording. Needed so you can see, download and reuse your results, and so we can support you.

  • Your Brand Kit

    Your brand name, colours, fonts, tone and signature phrases, which you may choose to include in a prompt.

  • Lesson progress

    Which course lessons you have marked complete, so your progress is remembered.

  • Support conversations

    The subject and text of requests you send us, and our replies. Needed to help you. Messages sent through the public form also include the email address you give us.

  • Server diagnostic logs

    Short technical error records created when something fails. They hold no photographs and no prompts.

3. How your photographs are used to create images

When you ask the app to create something, the app builds one prompt on our server. That prompt may combine: the instructions you typed, your Brand Kit details, and the private reference images the stage needs — your own uploaded photographs, your approved Master portrait or your approved full-body reference.

That prompt and the reference image data are then sent to OpenAI through its API so the image can be created. The result is returned to our server and saved privately to your account.

Based on OpenAI's published API terms at the time of writing: data sent through the API is not used to train OpenAI's models by default, and may be retained by OpenAI for up to 30 days for abuse monitoring before deletion — unless the law requires otherwise, or different approved data-handling controls apply. We cannot control OpenAI's own practices and we make no promise on their behalf.

We show you a plain-language notice about this before your first image creation, and ask for your confirmation before any photograph is uploaded.

4. Who else processes your information

  • OpenAI — receives prompts and reference image data to create images, as described above.
  • Lovable Cloud (built on Supabase) — provides sign-in and authentication, the database and the private file storage that holds your photographs and generated images.
  • Lovable — provides the hosting for this app, the sign-in broker used for Google sign-in, and the email delivery used for password-reset emails. Password reset is the only email the app sends; there are no welcome, purchase or marketing emails.

These service providers may store or process information on servers outside Australia, including in the United States. We only use them to run the service described here.

5. How your files are kept private

Your photographs and generated images are kept in a private storage area. A browser can never reach that storage directly. Every time you view or download one of your own files, our server first confirms that the file belongs to your signed-in account, then issues a temporary private link that expires after 10 minutes. Those links are not stored or shared, and no other account can request them.

Your course access, paid access, purchase records and allowance balances can only be changed by our server. They cannot be changed from a browser, including from your own.

6. How long we keep things

When you complete account deletion, we delete:

  • your sign-in account and profile;
  • your uploaded photographs and your full-body source selections;
  • your generated images and the prompts stored with them;
  • your Twin records and approvals;
  • your Brand Kit and lesson progress;
  • your ordinary support conversations;
  • every one of your private files in storage — not only the database records.

A small number of records may be kept, only where the law or fair business requires it:

  • Purchase, payment and refund records — up to 5 years, for Australian accounting, tax, fraud-prevention and legal obligations. Only the minimum details are kept. No photographs, prompts or generated images are ever kept with these records.
  • Administrative audit records — up to 12 months. Where practical, your account identifier and email are replaced with a one-way deletion reference.
  • Generation jobs, request records, cost records and allowance history — up to 12 months in de-identified form for reconciliation, abuse prevention and troubleshooting. Prompts, file paths, image identifiers, email addresses and direct account identifiers are removed.
  • Support conversations about a refund, dispute, suspected fraud or a security incident — only the necessary text and the transaction reference, for 2 years after the matter is resolved, then deleted. All other support conversations are deleted with your account.
  • A deletion receipt — 5 years, containing only a random deletion reference number, the request and completion times, and the list of categories deleted and retained. It holds no photographs, prompts, generated images, Brand Kit content or your plain email address.
  • Server diagnostic logs — no longer than 30 days, unless a specific security incident requires a longer, documented hold.

An active refund, dispute or security investigation never prevents the deletion of your photographs, prompts or generated images. It may only pause deletion of the minimum transaction or support evidence genuinely needed.

When a retention period ends, the record is automatically deleted or irreversibly de-identified.

7. Your choices and requests

You can see and change your name and purchase email, download your own images, delete all of your photographs, and delete your whole account from the Account page in the app. You can also ask us to access, correct or delete your information, or make a privacy complaint, through the support form. We will respond to your request, and if you are not satisfied with our answer you may complain to the Office of the Australian Information Commissioner.

8. Children

This app is for adults. Please do not create an account, or upload photographs of a child, unless you are that child's parent or guardian and the photographs are of your own child.

9. Changes to this policy

This policy is versioned and dated. If we make a material change we will show it to you in the app and ask you to acknowledge the new version before your next photograph upload or image creation. Signing in, viewing and downloading your own material, contacting support and deleting your account never require accepting a new version.