50% OFF Summer sale — auto-applied at checkout through Aug 31

Privacy Policy

Last updated: June 1, 2026

This Privacy Policy describes how Copyforge handles personal data when you use our website, applications, API, and browser extension (the "Service").

1. Data We Collect

  • Account data: name, email, hashed password (or OAuth identifier), profile preferences.
  • Content data: prompts, briefs, brand voices, and generated outputs you create on the platform.
  • Billing data: handled by our payment processor; we store only subscription status and the last four digits of payment methods.
  • Usage data: generation counts, tool usage, login streaks, and diagnostic logs needed for security and product quality.

2. How We Use Data

  • To deliver and improve the Service;
  • To process payments and prevent fraud;
  • To send transactional and (if enabled) digest emails;
  • To maintain security, debug, and meet legal obligations.

We do not sell your personal data, and we do not train foundation AI models on it.

3. AI Processing

Generation requests are processed by trusted AI providers under data-processing agreements. Inputs and outputs are transmitted over TLS and stored encrypted at rest. Providers process content only to return results and are contractually prohibited from using your data for model training.

4. Cookies & Analytics

We use essential cookies for authentication and a minimal set of first-party analytics to understand usage. No third-party advertising cookies are set.

5. Email Preferences

Transactional emails (security, billing) are sent while your account is active. The weekly digest is opt-in/out from Settings and via the one-click unsubscribe link in every digest email.

6. Your Rights

Depending on your jurisdiction (GDPR, CCPA, and similar laws) you may request access, correction, export, or deletion of your personal data. Contact privacy@copyforge.dev and we will respond within 30 days.

7. Data Retention

We retain account data while your account is active. After closure, data is deleted within 30 days unless retention is required by law (e.g. tax records).

8. International Transfers

Data may be processed in the United States and other countries where our providers operate. We rely on standard contractual clauses where required.

9. Security

We use row-level security on our database, encryption in transit and at rest, hashed API keys, and least-privilege access. No system is perfectly secure; report vulnerabilities to security@copyforge.dev.

10. Children

The Service is not directed to children under 16, and we do not knowingly collect their data.

11. Changes

We will notify you of material changes via email or in-app at least 14 days before they take effect.

12. Contact

Questions? privacy@copyforge.dev.