Privacy Policy
Last updated: March 25, 2026
Uni-1 ("we," "us," or "our") operates the website uni-1.me and provides an AI-powered image generation service. This Privacy Policy explains how we collect, use, share, and protect your personal information when you use our service.
1. Information We Collect
Account Data
When you sign in via Google OAuth, we receive your name, email address, and profile avatar from Google. We do not receive or store your Google password.
Payment Data
Payments are processed by Stripe. We do not directly collect or store your credit card numbers, bank account details, or other payment credentials. Stripe may share with us your billing name, email, and transaction history for record-keeping purposes.
User Content
This includes text prompts you submit and any images you upload as references for generation. Generated output images are also temporarily stored on our servers.
Usage Data
We use Google Analytics to collect anonymized usage data such as pages visited, session duration, browser type, device information, and approximate geographic location. This data does not personally identify you.
2. How We Use Your Information
- Provide the service — authenticate your identity, process your prompts, generate images, and deliver results.
- Process payments — manage subscriptions, issue receipts, and handle billing inquiries through Stripe.
- Improve the product — analyze aggregated, anonymized usage patterns to optimize performance and user experience.
- Ensure security — detect fraud, prevent abuse, and enforce our Terms of Service.
- Communicate with you — send service-related notices such as billing confirmations or policy updates.
We do not use your uploaded images or prompts to train AI models.
3. Data Retention
- Uploaded images and generated output — automatically deleted within 1 hour of creation. We do not retain copies.
- Account data — retained for as long as your account is active. You may request deletion at any time.
- Payment records — retained as required by applicable tax and financial regulations (typically up to 7 years).
- Analytics data — retained by Google Analytics according to their standard retention policy (14 months by default).
4. Information Sharing
We do not sell, rent, or trade your personal information. We only share data with the following third-party service providers, strictly for the purposes described:
- Stripe — payment processing and subscription management.
- Google — OAuth authentication and website analytics (Google Analytics).
We may also disclose information if required by law, regulation, legal process, or governmental request.
5. Your Rights
Under GDPR (EEA/UK residents)
You have the right to:
- Access the personal data we hold about you.
- Rectify inaccurate or incomplete personal data.
- Erase your personal data ("right to be forgotten").
- Restrict or object to the processing of your data.
- Data portability — receive your data in a structured, machine-readable format.
- Withdraw consent at any time where processing is based on consent.
Under CCPA (California residents)
You have the right to:
- Know what personal information we collect, use, and disclose.
- Request deletion of your personal information.
- Non-discrimination for exercising your privacy rights.
To exercise any of these rights, contact us at contact@uni-1.me. We will respond within 30 days.
6. Cookies & Tracking
We use the following cookies and tracking technologies:
- Essential cookies — required for authentication and session management. These cannot be disabled.
- Google Analytics — collects anonymized usage data to help us understand how visitors interact with our site. You can opt out using the Google Analytics Opt-out Browser Add-on.
7. Data Security
We implement industry-standard security measures to protect your data, including HTTPS encryption for all data in transit, secure server infrastructure, access controls limiting data access to authorized personnel, and automatic deletion of user-uploaded content within 1 hour. While no system is 100% secure, we are committed to protecting your information and promptly addressing any security incidents.
8. Children's Privacy
Uni-1 is not intended for use by anyone under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that a child under 13 has provided us with personal data, we will take steps to delete such information promptly. If you believe a child has provided us with personal data, please contact us at contact@uni-1.me.
9. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws. When we transfer data internationally, we take appropriate safeguards to ensure your information remains protected in accordance with this Privacy Policy and applicable law.
10. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will update the "Last updated" date at the top of this page and, where appropriate, notify you via email or a notice on our website. We encourage you to review this policy periodically.
11. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us at:
