Privacy
Privacy Policy
This policy explains what data Image to Image uses to generate AI images and operate your account.
Last updated: September 18, 2026
Information we collect
We collect account information such as your Google sign-in email, generated image history, and session data needed to keep you signed in.
When you create an image, we process the source photo, prompt, generated image link, save status, and related task metadata.
How generation media is processed
Uploaded images and text prompts are used to create the AI-generated image you request. We send the generation inputs required for that request to service providers that help operate the product.
Generated images may be saved to your private history so you can preview and download them while they remain available.
Safety review
Non-empty text prompts are checked against local policy rules and Waffo Prompt Sift before generation starts. Uploaded images are checked with Sightengine before generation starts.
The automated checks described here apply to prompts and uploaded images before generation. Generated image results can be reported to support@imagetoimage.org for manual review.
We store only the account and optional task identifiers, review stage, provider, decision, reason code, matched policy category, provider request identifier, policy version, and timestamp. We do not store prompt text, uploaded media, secrets, signatures, or full provider responses in moderation audit records.
Retention
Generated image files may be stored to provide private history, preview, and download functionality. Availability may end as part of the service's storage lifecycle.
We may retain generated files and the minimum account, task, storage, billing, and moderation metadata for as long as reasonably necessary to operate the service, maintain security, enforce policies, handle disputes, or meet legal obligations.
Cookies and authentication
We use cookies or similar session storage to keep you signed in and to protect authenticated dashboard routes.
Google OAuth is used for sign-in. Google may process data according to its own privacy policies.
Your data rights
Depending on the law that applies to you, you may ask to access a copy of your personal data, correct inaccurate or incomplete data, delete personal data, close your account, restrict or object to processing, receive portable data, or withdraw consent where processing relies on consent.
You can update available profile information in Dashboard > General. You can delete an eligible password-based account in Dashboard > Security. For any request, including account deletion that cannot be completed in the dashboard, email support@imagetoimage.org from your registered email address with the subject "Privacy Request" and describe the right you want to exercise.
We may need to verify your identity before completing a request. We aim to respond within 30 calendar days, subject to applicable law. Some information may be retained when required for legal, tax, accounting, fraud prevention, security, or dispute-resolution purposes.
If you believe your request was not handled properly, you may contact us again or lodge a complaint with the data protection authority that applies in your location.
Contact
For privacy requests, account questions, safety reports, or content removal requests, email support@imagetoimage.org.