Privacy policy
Effective June 14, 2026
This policy explains what Supershot collects, why it is used, and the choices available to you.
Information we collect
We collect information you provide when you create an account, use the service, contact us, or submit feedback. This includes your name, email address, account credentials, contact-form content, feedback type and message, and billing-related account identifiers.
When you upload images, we process the files and related information needed to deliver the service, including file names, formats, sizes, selected marketplace, processing status, and generated results.
We also receive authentication cookies and ordinary request, browser, device, IP-address, and diagnostic information needed to operate and secure the application.
How we use information
We use information to authenticate users, process and deliver images, maintain batch history, manage credits and purchases, provide support, respond to contact requests, understand feedback, prevent abuse, diagnose failures, and improve the service.
We do not sell personal information or use uploaded product images for third-party advertising.
Service providers
We use providers that process information on our behalf: Amazon Web Services for private S3 image storage, PhotoRoom for background removal, Polar for checkout and subscription management, Resend for transactional and contact email, and PostgreSQL infrastructure for application records.
If the application is hosted on Vercel, Vercel may process request and operational log information as part of hosting the web application. Each provider handles information under its own terms and privacy practices.
Image storage and deletion
Original and processed images are stored in a private S3 bucket. Access is limited through authenticated application routes and short-lived signed upload URLs.
Images remain stored while their associated batch records exist. Deleting an image or batch through the available application controls removes the associated active files and records.
Data retention
Account information is retained while the account is active. Batch data, images, feedback, contact correspondence, billing records, and security logs are retained only as long as reasonably needed to provide the service, meet legal or accounting obligations, resolve disputes, and protect the application.
Your choices
You can update account security settings, delete available image content and batches, cancel eligible subscriptions through Polar, or contact us to request access, correction, or deletion of personal information, subject to applicable legal requirements.
You can control cookies through your browser, but disabling authentication cookies will prevent signed-in features from working.
Contact
Questions or requests about this policy can be submitted through the Contact us page.
