1. Data we process
- Your verified email and display name when you sign in with Google.
- Images, prompts, task settings, generated outputs, and creation history.
- Credit balance, orders, product selection, and payment status. LaunchSKU does not store full card numbers.
- If you use the Amazon workspace: store details, SKU facts, listing versions, image roles, exports, uploads, and Processing Reports.
- Limited security, consent, service-performance, and product-usage records needed to operate and protect the service.
2. Public free-tool retention
The free background tool keeps the upload privately only while processing it and then attempts to remove the source. The temporary result remains available for up to 60 minutes so you can download it or continue in Studio. After expiry the link stops working and the result is scheduled for deletion.
3. Private workspace and access
Signed-in uploads and generations are available only inside the authorized workspace. Studio outputs remain private unless you deliberately add an image to the Amazon workflow and approve it for use.
4. AI and service providers
Before an image task reaches the image model, the raw user brief and an internal request identifier are sent to Creem's Moderation API for content-safety screening. A blocked, flagged, unavailable, or unknown moderation result does not proceed to generation. When screening allows the request, the selected images and composed brief are sent to the AI image service needed to complete the task. If you explicitly enable AI-assisted Listing copy, confirmed product facts may be sent to the enabled AI service. Google handles sign-in. Creem handles checkout and payment credentials and also provides prompt moderation. Cloudflare hosts application data. Each provider processes data under its own terms. Do not upload passwords, complete payment-card data, or unrelated sensitive personal information.
5. Purpose, safety, and analytics
We use data to provide the requested image or seller workflow, prevent abuse, calculate credits, diagnose failures, protect workspace access, and improve the product. Product analytics are designed not to include prompts, image contents, direct contact details, or payment credentials.
6. Access, export, deletion, and retention
Workspace owners can use the account area to export organization data or create a deletion request. A request can be cancelled while it is pending. After backup, legal, and billing review plus an exact second confirmation, the active workspace records and project-controlled R2 objects are deleted and only a receipt without the original account or request identifier remains.
Cloudflare D1 Time Travel may retain a recoverable copy for up to 30 days, depending on the account plan. Test-mode transaction records are deleted with the test workspace. For Live transactions, we retain only the minimum payment, tax, refund, and dispute ledger for seven years; an unresolved dispute may be retained until the later of seven years after the transaction or three and a half years after final resolution. Images, prompts, generated files, full webhook payloads, and payment-card details are not part of that ledger.
Deleting LaunchSKU's copy does not by itself erase data already sent to Google, Creem, Cloudflare infrastructure, or an enabled AI provider; those copies follow the provider's contract and deletion channels. Until an automated notification service is separately approved, completion notification is a verified manual step sent within 72 hours, and a deletion is not treated as fully closed while that notification remains pending.
7. Your responsibilities
Upload only material you may legally use. Review generated product structure, color, text, people, intellectual-property risk, and marketplace compliance before commercial use. Invited team owners are responsible for giving access only to authorized people.
8. Contact
Privacy, data, or safety questions can be sent to support@launchsku.com.