Legal
Privacy Policy
Last updated: 11 July 2026
This policy describes what data we collect, how we use it, and your rights concerning your personal information.
1. Introduction and Scope
This Privacy Policy explains how TextileDesign Inc. ("TextileDesign", "we", "us", or "our") collects, uses, discloses, and safeguards your personal data when you use our website, application, API, and associated services (collectively, the "Services"). This policy applies to all users of our Services across all jurisdictions. We are committed to protecting your privacy and ensuring your data is handled transparently and in compliance with applicable data protection laws, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA).
2. Information We Collect Directly from You
We collect information you directly provide when using our Services. This includes: Account Information (name, email address, password, organizational affiliation); Billing Information (payment details, billing address, tax identification numbers) processed through our secure payment providers; Profile Data (preferences, settings); and User Content (text prompts, reference images, generated designs, and feedback). Providing this information is necessary for the performance of our contract with you and to provide the Services.
3. Information We Collect Automatically
When you interact with our Services, we automatically collect certain technical information. This includes: Log Data (IP addresses, browser type, operating system, referring/exit pages, date/time stamps); Device Information (device identifiers, hardware model); and Usage Data (pages visited, features utilized, interaction metrics, generation request frequency, and error logs). We collect this data using cookies, web beacons, and similar tracking technologies to ensure the security, reliability, and optimization of our platform.
4. How We Use Your Information
We process your personal data based on lawful grounds to: provide, operate, and maintain our Services; process transactions and manage your account; personalize your experience; improve, test, and enhance our platform; communicate with you regarding updates, security alerts, and support; detect, investigate, and prevent fraudulent, unauthorized, or illegal activity; and comply with our legal obligations. We do not sell your personal data.
5. AI Training Data and Model Usage
TextileDesign explicitly does not use your personal data, private text prompts, uploaded reference images, or privately generated outputs to train, fine-tune, or improve our base AI models or those of our third-party providers without your explicit, opt-in consent. If you choose to publish your generations to the public community showcase, you may be presented with an option to allow that specific content to be used for model improvement, which you can revoke at any time.
6. Image Visibility and Privacy Controls
The default visibility of your generated designs is determined by your subscription tier. Free or Basic tier users may have their generations set to public by default, making them visible in our community galleries. Pro and Enterprise tier users benefit from private-by-default generations. All users have granular control over their privacy settings within their account dashboard, allowing you to toggle the visibility of individual generations or your entire portfolio.
7. Sub-processors and Third-Party Sharing
To provide our Services, we engage trusted third-party sub-processors, including cloud hosting providers (e.g., AWS, GCP), payment gateways (e.g., Razorpay), and specialized AI model inference providers. Your data is only shared to the extent necessary to perform these functions. We execute strict Data Processing Agreements (DPAs) with all sub-processors, ensuring they adhere to stringent security standards, confidentiality obligations, and restrictions against using your data for their own independent purposes, including model training.
8. International Data Transfers
As a globally operating company, your information may be transferred to, stored, and processed in countries other than your own, including the United States. Where we transfer data from the European Economic Area (EEA), the UK, or Switzerland to jurisdictions not deemed adequate by relevant authorities, we rely on legally validated transfer mechanisms, such as Standard Contractual Clauses (SCCs), and implement supplementary technical and organizational safeguards to ensure your data remains protected.
9. Data Retention Schedules
We retain your personal data only for as long as necessary to fulfill the purposes outlined in this policy. Account data, prompts, and generated images are retained for the active lifecycle of your account. Telemetry, application logs, and security data are typically retained for 90 days before aggregation or deletion. Financial transaction records are retained for up to 7 years to comply with tax and accounting legal obligations. Upon account deletion, your data is permanently removed from our active systems within 30 days and from secure backups within 90 days.
10. Your Privacy Rights (GDPR & CCPA)
Depending on your residency, you possess specific rights regarding your personal data. Under the GDPR and CCPA, these may include the right to: access the personal data we hold about you; request correction of inaccurate data; request deletion/erasure of your data ("Right to be Forgotten"); object to or restrict processing; request data portability in a structured, machine-readable format; and opt-out of automated decision-making or the "sale" or "sharing" of personal data (though we do not engage in such practices).
11. Exercising Your Rights
You can exercise many of your privacy rights directly through your account dashboard settings. For more complex requests, such as comprehensive data exports or complete account deletion, please email support@cleverlyai.online with the subject "Privacy request". We will verify your identity to protect your security and respond to your request within the timeframes mandated by applicable law (typically within 30 to 45 days).
12. Data Security Measures
We implement robust, industry-standard technical and organizational security measures to protect your data against unauthorized access, loss, destruction, or alteration. This includes encryption of data in transit (TLS 1.3) and at rest (AES-256), strict access controls, multi-factor authentication for administrative access, regular vulnerability scanning, and routine security audits. While we strive to protect your data, no system is entirely impenetrable, and we cannot guarantee absolute security.
13. Children's Privacy
Our Services are not directed at, nor do we knowingly collect personal data from, children under the age of 18 (or the applicable age of majority in your jurisdiction). If we become aware that we have inadvertently collected personal data from a child without verified parental consent, we will take immediate steps to delete such information and terminate the associated account.
14. Changes to This Privacy Policy
We may periodically update this Privacy Policy to reflect changes in our practices, technology, or legal requirements. We will notify you of material changes by posting the updated policy on our website, updating the "Last Updated" date, and, where appropriate, sending an email notification or an in-app alert. Your continued use of the Services after such updates constitutes acknowledgment of the revised policy.
15. Contact Information
If you have questions, concerns, or complaints about this Privacy Policy or our data handling practices, email support@cleverlyai.online with the subject "Privacy". If you are unsatisfied with our response, you have the right to lodge a complaint with your local data protection supervisory authority.