Privacy Policy
This policy reflects the current WeightGainer application design. Mandatory privacy rights and disclosure duties under applicable law remain unaffected.
1. Scope
This Privacy Policy explains how WeightGainer handles information when you use the website, sign in, purchase credits, upload images, generate results, or contact support.
2. Information we process
Account data. We process account identifiers and authentication information provided through Supabase, such as your email address, user ID, session information, and sign-in metadata.
Credit and transaction data. We maintain your credit balance and records needed to prevent duplicate credit grants and reconcile purchases, including PayPal order and capture identifiers, purchase amount, currency, credit quantity, transaction status, associated user ID, and credit validity information where applicable.
Uploaded images and generation requests. Images you upload are transmitted for AI processing together with the generation instruction necessary to perform the requested transformation.
Generated results. Completed outputs may be stored temporarily in Cloudflare R2 for recovery, currently for up to approximately 24 hours, and may also be stored in your browser using IndexedDB so you can access them locally.
Technical and security data. Our infrastructure may process IP addresses, request metadata, browser and device information, timestamps, authentication status, error details, rate-limit information, and security signals needed to operate, secure, and troubleshoot the service.
3. How we use information
We use information to authenticate users; provide AI image generation; manage credits; process and verify purchases; enforce credit validity; temporarily deliver and recover generated results; prevent fraud, abuse, duplicate transactions, and unauthorized access; diagnose failures; maintain service reliability; comply with legal obligations; and respond to support or legal requests.
4. Image processing and AI provider
Uploaded images and the instructions needed to generate your requested result are sent to OpenAI through its API. WeightGainer does not intentionally publish uploaded images or generated results. Provider-side processing and retention are governed by the applicable OpenAI API terms, privacy terms, and service settings in effect at the time of processing.
5. Temporary storage and browser storage
Generated results may be stored in Cloudflare R2 under non-public object storage for temporary recovery. The current application is designed to treat these results as expiring after approximately 24 hours and to limit the number of temporary results retained per account. Actual physical deletion may occur after the configured lifecycle system processes the expiration.
WeightGainer also uses IndexedDB in your browser to store generated files locally. Browser-stored results may remain until you clear site data, use private/incognito browsing that discards storage, uninstall or reset the browser, or otherwise remove local data. Local browser data does not automatically follow you to another device.
6. Payments
Payments are processed by PayPal. WeightGainer does not store your full card number or PayPal password. PayPal may collect and process billing, identity, payment-instrument, device, risk, and transaction information under its own privacy policy. We receive transaction identifiers and status information needed to grant credits and prevent duplicate processing.
7. Service providers
WeightGainer currently relies on providers including Cloudflare for hosting, Workers, logs, security, and R2 storage; Supabase for authentication and database services; PayPal for payment processing; and OpenAI for AI image generation.
8. Retention
Temporary generated files are intended to expire after approximately 24 hours from server-side temporary storage. Local browser copies may persist longer as described above. Account, credit, payment, security, and transaction records may be retained for as long as reasonably necessary to operate the service, resolve disputes, prevent fraud, maintain accounting records, enforce credit validity, and satisfy legal obligations.
9. Security
We use access controls, server-side secrets, authenticated API endpoints, non-public object storage, transaction validation, and other technical measures intended to reduce unauthorized access. No online system is perfectly secure, and we cannot guarantee absolute security.
10. International processing
Our providers may process information in countries other than your own. Where required, appropriate contractual or legal mechanisms should be used for international transfers.
11. Your rights
Depending on where you live, you may have rights to request access, correction, deletion, restriction, objection, portability, or information about our processing. Some records may need to be retained for fraud prevention, accounting, dispute resolution, or legal compliance. To exercise applicable rights, contact us using the address below.
12. Children
WeightGainer is not intended for users under 18. We do not knowingly offer the service to children.
13. Changes to this policy
We may update this policy as the service, providers, or legal requirements change. The effective date at the top identifies the current version.
14. Privacy contact
Requests for legally required operator information may also be submitted through this address as described in the commercial disclosure.