Privacy Policy

Last updated: April 14, 2026

What we collect

Account data: email, name (via Google OAuth or signup). Used to authenticate you.

Brand data you enter: project names, brand profiles, uploaded documents, Instagram handles, website URLs. Used only to generate your content.

Usage data: which features you use, generation counts, billing events. Used for product improvement and rate-limiting.

Demo rate-limit logs: a hashed fingerprint of your IP (never the raw IP) is stored for 30 days to prevent abuse of the public demo. The hash rotates daily so history can't be correlated with new visits.

What we don't collect

We don't sell your data. We don't use your brand content to train models. We don't place third-party advertising cookies.

Who we share data with

Supabase (database + auth), Stripe (billing), Google Gemini + OpenAI DALL-E (AI generation — your prompts + brand inputs are sent to them to produce your content), Upstash (rate-limiting), Cloudflare (CAPTCHA), Plausible (privacy-friendly analytics, no cookies, no PII).

Each of these providers has their own privacy policy. We only send the minimum data required for the feature.

Your rights

You can export all your data from account settings. You can delete your account at any time — all personal data is permanently removed within 30 days. Email us for specific access or deletion requests.

Cookies

We use a single cookie to remember your login session. No tracking cookies. No third-party advertising cookies.

Contact

Email hello@nabiha.app with any privacy question. We respond within 7 days.

Privacy questions: hello@nabiha.app