Imogen

Privacy Policy

Last updated July 19, 2026

This Privacy Policy explains what information Imogen collects, how we use it, and the choices you have. By using Imogen you agree to the practices described here, alongside our Terms of Service.

1. Information we collect

  • Account information. When you sign in with Google, we receive your name, email address, and profile picture via Supabase Auth.
  • Content you provide. Design briefs/prompts, uploaded reference images, and any edits or overrides you make to a generated design.
  • Usage data. Pages visited, features used, clicks, and how long you spend in different parts of the product, collected via PostHog. This may include session recordings of in-app activity (with sensitive input fields masked), used only to understand and improve the product — never to build an ad profile.
  • Technical data. Browser type, general device info, and approximate location derived from IP address, collected automatically as part of normal web/analytics operation.

2. How we use your information

  • To operate the Service: authenticate you, generate and store your designs, and maintain your SOUL taste profile and mascot persona.
  • To generate designs: your prompt and any attached images are sent to our third-party AI provider (currently DeepSeek) to produce the design output.
  • To improve Imogen: aggregated usage analytics help us understand which features are used and where to focus next.
  • To communicate with you: service-related notices, e.g. account or security updates.

We do not use your content to train our own AI models, we don't run ads on Imogen, and we don't sell your personal information.

3. Third-party AI providers

Imogen is built on third-party large language models — we don't operate our own model. When you submit a brief and any attached images, that content is sent to our AI provider (DeepSeek) solely to generate your design. We do not permit that content to be used to train models on our behalf. Our provider processes this data under its own terms; we recommend avoiding sensitive personal information in prompts regardless.

4. Other third parties we use

Supabase (authentication, database, and file storage — hosts your account and project data) and PostHog (product usage analytics, described in §1). These providers act as processors on our behalf. We don't sell or share your data with data brokers or advertisers.

5. Cookies and similar technologies

We use essential cookies to keep you signed in, and analytics identifiers (via PostHog) to recognize your browser across sessions for usage analytics. We don't use third-party advertising cookies.

6. Data retention

We keep your account and project data for as long as your account is active. If you delete your account, we delete your projects, designs, and associated content within 30 days, except where retention is required by law or for fraud/abuse prevention.

7. Your choices and rights

You can access, edit, or delete your projects and designs directly in the app, and delete your account at any time from Settings. Depending on where you live, you may have additional rights — access, correction, deletion, portability — under laws like the GDPR or CCPA. Contact us to exercise them.

8. Children's privacy

Imogen isn't directed at children under 13, and we don't knowingly collect personal information from them.

9. Security

We use industry-standard practices — encrypted connections, access-scoped database policies via Supabase Row-Level Security — to protect your data. No system is 100% secure.

10. Changes to this policy

We may update this policy from time to time. Material changes will be reflected by an updated date at the top of this page.

11. Contact

Questions about this policy, or want to exercise a privacy right? Reach us at [email protected].