Skip to main content

Privacy Policy

Effective January 1, 2025 | Last revised September 1, 2026 (in force September 8, 2026)

Fairium (“GenToon”, “we”, “us”, or “the Company”) provides the GenToon service (the “Service”) and is the controller of personal data processed through it. This Privacy Policy explains what personal data we collect, why and on what legal basis we process it, who we share it with, how long we keep it, how we transfer it internationally, and the rights you have over your data.

For users in the European Economic Area (EEA), the United Kingdom, and Switzerland, we process personal data in accordance with the EU General Data Protection Regulation (GDPR) and the UK GDPR. For users in California and other U.S. states with applicable privacy laws, the disclosures in the “Your U.S. State Privacy Rights” section apply. Country-specific provisions required under Korean law apply only to users in the Republic of Korea and are set out separately below. If you have any question about this Policy or wish to exercise your rights, contact us at service@gentoon.ai.

1. Categories of Personal Information Collected and Methods of Collection

A. Categories Collected

CategoryRequiredOptional
Sign-upEmail address, name (as provided by Google, Apple or Kakao for social login)Profile image, community nickname and bio
PaymentCard brand, last four digits of the card number, the payment identifier issued by the payment provider (for Korean recurring payments via Toss Payments, the card expiry date and billing key are stored in encrypted form)Tax receipt details (mobile number, business registration number, company name, representative name)
Service usage (collected automatically)IP address and the approximate location inferred from it (country and city), access logs, service usage records, device information (User-Agent, device model, operating system, app version), a device fingerprint (stored only as a one-way hash; the original is not retained)
Creation and communityGenerated content, uploaded reference images, posts and comments
AI chat and messagesConversations with AI characters and direct messages between users (retention periods in Section 15)
Mobile appPush notification token, device model, operating system, app version
Affiliate partner settlementLegal name, mobile number, settlement bank account details, business registration number — for individuals without a business registration, the resident registration number, solely to file withholding tax and payment statements as required by Article 193 of the Enforcement Decree of the Korean Income Tax Act (stored encrypted)
Business production enquiriesContact name, company name, phone number, email address, enquiry details
Social account connection and publishingIdentifier, handle, display name and profile picture URL of the connected social account; the access token issued by the platform (stored encrypted); publishing records (post identifier, publication time, caption, image URLs); performance metrics of the published posts (views, likes, comments, shares, saves, reach)
Customer supportEmail address, enquiry contentAttachments

We do not collect sensitive information such as beliefs, health or sex life. The resident registration number, a unique identifier under Korean law, is collected only for the affiliate settlement purpose above, only where the law requires it, and only with separate consent.

B. Methods of Collection

  • Direct input during sign-up and use of the website and mobile app
  • Social login via Google, Apple or Kakao OAuth
  • Account details supplied by the platform (Meta, TikTok) when you connect a social account
  • Automatic collection during payment through Polar, Toss Payments or app store in-app purchase
  • Automatic generation and collection through cookies, local storage and access logs during service use
  • Automatic transmission by the analytics SDKs installed in the web and mobile app (Sections 9 and 17)
  • Collection during enquiries made by email, the Help page or the business enquiry form

2. Purposes of Processing Personal Information

  1. Member management. Identity verification, prevention of unauthorized use, complaint resolution, and delivery of notices
  2. Service provision. AI image and script generation, project storage, character management, and community operation
  3. Payment and billing. Subscription payments, credit purchases, refunds, and issuance of tax receipts and invoices
  4. Service improvement. Usage statistics and product-usage analysis (Google Analytics, Microsoft Clarity, PostHog), error detection (Sentry), and service quality enhancement
  5. Affiliate partner settlement. Paying referral earnings and filing withholding tax and payment statements
  6. Business production enquiries. Receiving and answering enquiries, concluding and performing contracts
  7. Marketing (optional). Event and benefit notifications (only with prior consent)

Legal Bases for Processing (EEA / UK Users)

Where the GDPR or UK GDPR applies, we rely on the following legal bases:

  • Performance of a contract (Art. 6(1)(b)). To create and maintain your account, provide AI generation, project storage, character management, the community, and to process payments, subscriptions, credit purchases, and refunds. Without this data we cannot provide the Service.
  • Legitimate interests (Art. 6(1)(f)). To secure the Service against fraud and abuse, detect and fix errors, maintain access and audit logs, analyse aggregate usage to improve the Service, and to enforce our Terms. We balance these interests against your rights and you may object as described in the “Your Rights” section.
  • Consent (Art. 6(1)(a)). For optional marketing communications, which you opt into separately. You may withdraw consent at any time without affecting prior processing.
  • Legal obligation (Art. 6(1)(c)). To retain transaction and tax records and to respond to lawful requests, where mandatory law requires it.

Analytics cookies and identifiers — current status

We want to be straightforward about this rather than claim more than we do. Our analytics tools (Google Analytics, Microsoft Clarity, PostHog) load for every visitor as soon as a page loads. We do not currently show a consent banner before they load, and we do not currently detect or act on the Global Privacy Control (GPC) or Do Not Track signals a browser may send. We therefore do not claim that you consented to this processing.

If you are in a jurisdiction where consent is required for non-essential analytics cookies and identifiers, or you simply want this to stop, email service@gentoon.ai and we will delete the analytics data linked to your account and act to stop further collection about you. We are reviewing this area, and we will amend this Policy once a consent mechanism and signal-based opt-out are in place.

We do not use your prompts, uploaded reference images, or generated outputs to train AI models. Our AI processors (Google Gemini, Alibaba Model Studio, OpenAI) do not use data sent through paid API calls to train their models, and we do not build a training dataset of our own.

Some decisions in the Service are made automatically, without a human reviewing them individually: whether a referral reward is granted, whether chat access is temporarily suspended after repeated safety-filter violations, and whether a generation request is blocked by our content-safety filter. These are rule-based checks; they do not use profiling models trained on your data. If a decision affects you, you may ask us to explain it, object to it, or have it reviewed by a person, by emailing service@gentoon.ai. We will respond within 15 days for an explanation and within 30 days for a human review.

3. Retention and Use Periods

The Company destroys personal information without delay once the purpose of processing has been fulfilled. However, where retention is required by applicable law, the information shall be securely stored for the prescribed period before destruction.

DataRetention PeriodLegal Basis
Member informationUntil account deletionUser consent
Contract and payment records5 yearsContract and applicable tax/accounting law (varies by jurisdiction)
Consumer complaint and dispute resolution records3 yearsContract and applicable tax/accounting law (varies by jurisdiction)
Access logs3 monthsApplicable telecommunications / records-retention law
Tax receipt and invoice issuance records5 yearsApplicable tax law
Affiliate payment statements and withholding tax records5 yearsApplicable tax law
Records of advertising and marketing claims6 monthsKorean e-commerce law
Service activity records (including access IP and device information)1 yearApplicable telecommunications law (see Section 15)

Where mandatory local law imposes a specific minimum retention period, we keep the relevant records for that period and no longer. Korea-specific statutory retention periods are set out in the Korean-language Policy for users in the Republic of Korea.

4. Provision of Personal Information to Third Parties

The Company does not provide personal information to third parties without the user's consent. However, the minimum necessary information is shared with the following parties for the purpose of providing the Service.

RecipientPurposeData ProvidedRetention
Polar (Global)Global subscription / credit payment processing and refundsPayment information, purchase amount5 years after transaction completion
Polar Software Inc. (merchant of record)Processes global subscription and credit-pack payments, refunds, and tax handlingPayment information, purchase amount5 years after transaction completion
Google LLCSocial login, AI image generation (Gemini API)Email and profile (for login); generation prompts and reference images (for AI generation)Until termination of service use
Alibaba Cloud (Model Studio)AI character chat response generationChat conversation content, character settingsUntil termination of service use
OpenAI, L.L.C.AI image generation, harmful-content moderationGeneration prompts and reference images; chat content (for moderation)Until termination of service use
Kakao Corp.Social loginEmail, nickname, profile image (as provided by Kakao OAuth)Until termination of service use
Meta Platforms, Inc.
Threads, Instagram
Creating and scheduling posts on your behalf on the account you connected, and reading the performance metrics of those posts (views, likes, comments, shares and similar)Social account identifier, handle, display name and profile image URL; access token; the images, video and text to be publishedAccess token destroyed immediately on disconnect; other items destroyed when you delete your account
TikTok Pte. Ltd.
TikTok
Creating and scheduling posts on your behalf on the account you connectedSocial account identifier, handle, display name and profile image URL; access token; the images and text to be publishedAccess token destroyed immediately on disconnect; other items destroyed when you delete your account

Personal information may also be disclosed where required by law, such as upon presentation of a warrant by investigative authorities.

Sharing with Meta Platforms, Inc. and TikTok Pte. Ltd. happens only if you connect the corresponding social account, and we ask for separate consent that is not bundled with sign-up. You can use every other part of the Service without giving it, and you can withdraw it at any time from the connection screen.

5. Entrustment of Personal Information Processing

We entrust the processing of personal information to the following processors in order to operate the Service. Each processor acts only on our instructions and only within the scope of the entrusted work; this is distinct from the disclosures to third parties described in Section 4.

ProcessorEntrusted work
Supabase Inc.Database hosting, user authentication, file storage
Vercel Inc.Web application hosting and CDN
Cloudflare, Inc.Storage and delivery of generated images and uploaded files
Amazon Web Services, Inc.Operation of the AI generation servers (Seoul region, Republic of Korea)
Google Cloud (Gemini API)AI image and text generation
OpenAI, L.L.C.AI image generation, harmful-content filtering
Alibaba Cloud (Model Studio)AI character chat response generation
Upstash Inc.Distributed caching and rate limiting (Redis)
Functional Software, Inc. (Sentry)Error and crash monitoring
Resend Inc.Email delivery
650 Industries, Inc. (Expo)Mobile push notification relay
Google LLC (Firebase Cloud Messaging)Android push notification delivery
Apple Inc. (APNs)iOS push notification delivery
RevenueCat, Inc.In-app purchase receipt validation and subscription status
Discord, Inc.Customer enquiry notification routing
Google LLC (Google Analytics / GA4)Website usage statistics
Microsoft Corporation (Clarity)Behavioural analytics (heatmaps, session replay)
PostHog, Inc.Product usage analytics for web and mobile (funnels, retention)

International Data Transfers

We transfer personal information outside the Republic of Korea to the extent necessary to provide the Service. Under Article 28-8(1)3 of the Korean Personal Information Protection Act these transfers are entrustment and storage necessary to perform our contract with you and to improve your experience, and we disclose the details below as that Article requires. Our own AI generation servers run in the Seoul region of the Republic of Korea and are therefore not an overseas transfer, and Korean card payments (Toss Payments) are processed domestically.

Recipient · contactCountryData transferredPurposeRetentionWhen and how
Supabase Inc.
privacy@supabase.io
Republic of Korea (stored in the AWS Seoul region); United States (accessed for operations and support)Account details, project data, uploaded filesDatabase, authentication and file storageErased within 30 days of account deletion, except records subject to statutory retentionTransmitted over the network as you use the Service
Vercel Inc.
privacy@vercel.com
United States (global edge)Access logs, IP addressWeb hosting and content deliveryUntil the purpose of the entrustment is fulfilledTransmitted automatically as you use the Service
Cloudflare, Inc.
privacyquestions@cloudflare.com
United States (global network; storage location assigned automatically)Generated images, uploaded reference images and attachmentsFile storage and deliveryErased within 30 days of account deletionTransmitted on upload and retrieval
Polar Software Inc.
privacy@polar.sh
United States (may be stored in the United States, Canada or other destinations)Payment details, purchase amount, email addressGlobal subscription and credit payment processing and refunds5 years after the transactionTransmitted at checkout
Google LLC (Gemini API)
support.google.com/policies
United StatesPrompts, reference imagesAI image and text generationErased after processing; not used for model trainingTransmitted on each API call
OpenAI, L.L.C.
privacy@openai.com
United StatesPrompts, reference images, chat content (when filtering)AI image generation and harmful-content filteringErased after processing; not used for model trainingTransmitted on each API call
Alibaba Cloud (Model Studio)
alibabacloud.com/help
Japan (Tokyo region)Chat content, character settingsAI character chat response generationErased after processing; not used for model trainingTransmitted on each API call
Google LLC (Google Analytics / GA4)
support.google.com/analytics
United StatesCookie-based device identifier (_ga), pages visited and referral source, device, browser and language, IP address and inferred regionWebsite usage statistics and service improvementUp to 14 monthsSent automatically by the website tag (gtag.js)
Microsoft Corporation (Clarity)
privacy.microsoft.com
United StatesInteraction recordings (session replay) and heatmaps, pages visited, device and browser details, IP address and inferred regionBehavioural analytics for service improvementUp to 1 yearSent automatically by the website tag
PostHog, Inc.
privacy@posthog.com
European Union (Frankfurt, Germany region)User identifier, product usage events, acquisition attributes, device and OS details, IP address and inferred country, email address (on web sign-in) — full list in Section 17Product usage analytics (funnels, retention)Up to 7 years (see Section 17)Sent automatically by the SDK
Functional Software, Inc. (Sentry)
privacy@sentry.io
United StatesError message and stack trace, app version, device model, OS version (no user identifier or contact details)Error and crash diagnosticsPer the processor's retention policySent automatically by the SDK
Resend Inc.
privacy@resend.com
United StatesEmail address, subject and body of sent emailEmail deliveryPer the delivery-log retention periodTransmitted on each API call
Upstash Inc.
support@upstash.com
United StatesUser ID or IP address (hashed)Distributed caching and rate limitingUp to 30 daysTransmitted on each API call
650 Industries, Inc. (Expo)
privacy@expo.dev
United StatesPush notification token, notification title and bodyMobile push notification relayErased immediately after deliveryTransmitted when a notification is sent
Google LLC (Firebase Cloud Messaging)
support.google.com/firebase
United StatesPush notification token, notification title and bodyAndroid push notification deliveryErased immediately after deliveryTransmitted when a notification is sent
Apple Inc.
apple.com/legal/privacy
United StatesPush notification token with title and body; sign-in identifier and email address (Sign in with Apple)iOS push notification delivery; Apple account sign-inErased immediately after delivery / until you stop using the ServiceTransmitted when a notification is sent or you sign in
RevenueCat, Inc.
privacy@revenuecat.com
United StatesAccount identifier, in-app purchase receipts and purchase historyIn-app purchase validation and subscription statusUntil you stop using the ServiceTransmitted at in-app purchase
Meta Platforms, Inc.
facebook.com/privacy/policy
United StatesSocial account identifier, handle, display name and profile image URL; access token; the images, video and text to be publishedConnecting your Threads or Instagram account, publishing posts on your behalf, and reading the performance metrics of those postsAccess token destroyed immediately on disconnect; other items destroyed when you delete your accountTransmitted when you connect an account, when a post is published, and when we read a published post's metrics
TikTok Pte. Ltd.
privacy@tiktok.com
SingaporeSocial account identifier, handle, display name and profile image URL; access token; the images and text to be publishedConnecting your TikTok account and publishing posts on your behalfAccess token destroyed immediately on disconnect; other items destroyed when you delete your accountTransmitted when you connect an account and when a post is published
Discord, Inc.
privacy@discord.com
United StatesEnquirer name and email address, part of the enquiry textRouting customer enquiry notificationsPer the operations channel retention periodTransmitted when an enquiry is received

How to refuse an international transfer

You may refuse the transfer of your personal information abroad. Email service@gentoon.ai or call +82-70-4571-4025 and we will stop the transfer and request deletion of information already transferred. Refusing a transfer that is essential to the Service — database hosting, payment processing or AI generation — will limit or prevent your use of the corresponding features. Refusing the analytics transfers (Google Analytics, Microsoft Clarity, PostHog) does not affect your use of the Service.

Your Rights

Depending on where you live, applicable data-protection law gives you rights over your personal data. Where the GDPR or UK GDPR applies to you, you have the right to:

  • Access the personal data we hold about you and obtain a copy.
  • Rectify inaccurate or incomplete data.
  • Erase your data (“right to be forgotten”), subject to legal retention obligations.
  • Restrict processing in certain circumstances.
  • Object to processing based on our legitimate interests, and to object to direct marketing at any time.
  • Data portability — receive the data you provided to us in a structured, commonly used, machine-readable format, and have it transmitted to another controller where technically feasible.
  • Withdraw consent at any time, where processing is based on consent, without affecting the lawfulness of processing before withdrawal.

You can exercise most of these rights directly under Settings > My Account, or by emailing service@gentoon.ai. We will respond without undue delay and within one month of receiving your request; this period may be extended by up to two further months where the request is complex or numerous, in which case we will inform you. We do not charge a fee for a reasonable request, and we verify your identity using your account before acting on a request.

You also have the right to lodge a complaint with your local data-protection supervisory authority (for example, your national authority in the EEA, or the UK Information Commissioner's Office at ico.org.uk). We would, however, appreciate the chance to address your concern first. Additional rights for California and other U.S. state residents are set out in the “Your U.S. State Privacy Rights” section below.

8. Destruction of Personal Information

  1. Personal information shall be destroyed without delay once the retention period has expired or the processing purpose has been achieved.
  2. Electronic files: Permanently deleted using methods that prevent recovery.
  3. Paper documents: Shredded or incinerated.
  4. Account deletion is processed in the following stages.
    • Immediately on deletion — your name, email address, nickname, profile photo, and bio are irreversibly anonymised, and your login account is removed so that you can no longer sign in. Your personal projects are moved to trash.
    • 30 days after deletion — projects, generated images, and uploaded files are permanently erased from storage, and the account identifiers on payment records are removed. The transaction records themselves are kept in de-identified form for the period required by Korean e-commerce law, as set out in Section 3.
    • Connected social accounts — when you disconnect an account we destroy its access token immediately, cancel any posts scheduled at that moment, and ask the platform (Meta, TikTok) to revoke the permissions you granted us. The account identifier, handle and your past publishing records stay in your account so you can see what was published, and are destroyed together with the token when you delete your account. Records of your consent and its withdrawal are retained as evidence that consent was obtained.
    • What remains, anonymised — posts and comments you made in the community stay visible so that other people's conversations remain intelligible, attributed to “Deleted user”; a stripped account record is retained solely to keep those posts attached. Projects you shared into a workspace remain with that workspace for its other members. If you want these removed, delete them before closing your account or email service@gentoon.ai.

9. Use of Cookies

The Company uses the following cookies:

CookiePurposeDuration
Session cookie (Supabase Auth)Maintaining login stateEnd of session
csrf_tokenCSRF attack prevention1 hour
Language preference cookieRetaining selected language preferenceSession
Google Analytics (GA4) cookiesService usage analytics and service improvementUp to 2 years
Microsoft Clarity cookiesUser behavior analytics (heatmaps and session replay) for service improvementUp to 1 year
PostHog cookies (ph_*_posthog)Product analytics — recognising returning visitors and measuring usage funnelsUp to 1 year

The analytics cookies listed above are set automatically as soon as a page loads. We do not display a consent banner beforehand, and we do not currently detect or act on Global Privacy Control (GPC) or Do Not Track signals — see “Legal Bases for Processing” above. You may refuse the storage of cookies through your web browser settings. However, blocking cookies may restrict your ability to use certain features, such as logging in, and on its own it does not stop analytics collection; to stop collection, email service@gentoon.ai.

10. Measures to Ensure the Security of Personal Information

The Company implements the following measures in accordance with applicable data protection laws:

  1. Access control. Access to personal information is restricted to the minimum number of authorized personnel, and administrator accounts are managed via UUID-based whitelisting.
  2. Encryption. Passwords are stored using one-way hashing, and payment card information is processed by Polar in compliance with PCI-DSS standards. All communications are encrypted using TLS (HTTPS).
  3. Security headers. Security headers including HSTS, CSP, and X-Frame-Options are applied to prevent web-based attacks.
  4. Access restrictions. CSRF tokens, API rate limiting, and IP-based anomalous access blocking are implemented.
  5. Monitoring. Real-time error detection and security event monitoring are performed through Sentry.

Children's Privacy

The Service is not directed to children. You must meet the minimum age required to use online services in your country: at least 13 years old in the United States, and at least the age of digital consent in your country in the EEA and the UK (16, unless your country sets a lower age of 13, 14, or 15). Where applicable law requires it, a parent or guardian must provide or authorise consent. If we learn that we have collected personal data from a child below the applicable age without the required consent, we will delete the account and the data without undue delay. If you believe a child has provided us with personal data, contact service@gentoon.ai.

How to Contact Us About Your Data

For any privacy question, to exercise your rights, or to raise a concern, contact our data-protection officer, who also receives access requests and complaints. Under the Korean Personal Information Protection Act this role is held by the representative of the business.

Name
Junghwi Kim
Position
Representative, Fairium
Phone
+82-70-4571-4025
Email
service@gentoon.ai

Users in the Republic of Korea may also apply, free of charge, to the Personal Information Dispute Mediation Committee (www.kopico.go.kr, 1833-6972) or report to the Personal Information Infringement Report Center (privacy.kisa.or.kr, 118) if a request is refused or you disagree with how it was handled.

GenToon does not currently maintain a permanent establishment in the EEA or the UK. If we are required to appoint a representative under Article 27 of the GDPR or UK GDPR, we will update this Policy with their details. In the meantime, EEA, UK, and Swiss users may direct all data-protection requests to service@gentoon.ai, which we monitor as our primary data-protection channel.

Lodging a Complaint

You have the right to lodge a complaint with the data-protection supervisory authority in your country or state of residence. For users in the EEA, this is your national Data Protection Authority; in the UK, the Information Commissioner's Office (ICO) at ico.org.uk; in California, the California Privacy Protection Agency or the California Attorney General. You may also contact us first at service@gentoon.ai and we will work to resolve your concern.

Your U.S. State Privacy Rights (California and Other States)

If you are a resident of California or another U.S. state with a comprehensive privacy law, you may have the right to know what personal information we collect and how we use it, to access and delete your personal information, to correct inaccurate information, to limit the use of sensitive personal information, and to opt out of the “sale” or “sharing” of personal information and of targeted advertising.

We do not sell your personal information for money. We do not knowingly “sell” or “share” personal information as those terms are defined under the California Consumer Privacy Act (CCPA), as amended by the CPRA, except that our use of analytics cookies and identifiers (Google Analytics, Microsoft Clarity, PostHog) may be considered “sharing” for cross-context behavioural advertising purposes under California law. To opt out of these analytics cookies, email service@gentoon.ai. We do not currently detect or act on Global Privacy Control (GPC) or Do Not Track signals sent by your browser; sending one will have no effect today. We will update this Policy if and when we implement signal-based opt-out.

We do not sell or share the personal information of consumers we know to be under 16. We will not discriminate against you for exercising any of these rights. To exercise your U.S. state privacy rights, or to opt out, email service@gentoon.ai with the subject line “U.S. Privacy Request” (or “Do Not Sell or Share”); we will verify your request using your account before responding. You may use an authorized agent to submit a request on your behalf. We will respond within the time required by law (generally 45 days, extendable once where permitted).

14. Changes to This Policy

  1. This Privacy Policy may be amended due to changes in applicable laws, regulations, or internal policies of the Company.
  2. Any amendments will be announced within the Service at least 7 days prior to the effective date of the change.
  3. This Policy has been in effect since January 1, 2025. The revision dated May 9, 2026 takes effect on the same date. The revision dated August 7, 2026 (adding PostHog, Inc. as a product-analytics processor and disclosing the resulting transfer to the European Union) takes effect on the same date. The revision dated September 1, 2026 (social publishing — new collected categories, third-party sharing with and international transfers to Meta Platforms, Inc. in the United States and TikTok Pte. Ltd. in Singapore, and destruction of connection data — the access token on disconnect, everything on account deletion) takes effect on September 8, 2026, seven days after it was posted, in line with paragraph 2 above. The revision dated September 6, 2026 (per-post performance metrics — adding the metrics of published posts to the categories collected, and adding the reading of those metrics to the purpose of sharing with and transferring to Meta Platforms, Inc.) takes effect on September 13, 2026 under the same paragraph.

১৫. মেসেজ সংরক্ষণ নীতি

সার্ভিসের মধ্যে আদান-প্রদান করা মেসেজের ধরন অনুযায়ী কোম্পানি ভিন্ন ভিন্ন সংরক্ষণ মেয়াদ প্রয়োগ করে।

AI ক্যারেক্টার চ্যাট

AI ক্যারেক্টারের সাথে কথোপকথন আপনি নিজে মুছে না ফেলা পর্যন্ত অনির্দিষ্টকালের জন্য সংরক্ষিত থাকে। স্টোরেজ দক্ষতা বজায় রাখতে এক বছর (৩৬৫ দিন) ধরে নিষ্ক্রিয় সেশন স্বয়ংক্রিয়ভাবে আর্কাইভে সরানো হয়, এবং দুই বছর (৭৩০ দিন) ধরে নিষ্ক্রিয় আলাদা মেসেজ স্বয়ংক্রিয়ভাবে স্থায়ীভাবে মুছে ফেলা হয়। আপনি পিন করা (ফেভারিট করা) মেসেজগুলো স্বয়ংক্রিয় মোছা থেকে বাদ থাকে এবং আপনি আনপিন না করা পর্যন্ত সংরক্ষিত থাকে।

ইউজার-টু-ইউজার ডাইরেক্ট মেসেজ (DM)

ব্যবহারকারীদের মধ্যে আদান-প্রদান করা ডাইরেক্ট মেসেজ পাঠানোর ১৮০ দিন পর স্বয়ংক্রিয়ভাবে স্থায়ীভাবে মুছে ফেলা হয়। যেসব মেসেজ পরিষেবার শর্তাবলী লঙ্ঘনের জন্য রিপোর্ট করা হয়েছে বা মডারেশনের জন্য ফ্ল্যাগ করা হয়েছে, সেগুলো রিপোর্ট নিষ্পত্তি না হওয়া পর্যন্ত, অথবা বিরোধ নিষ্পত্তি ও আইনি সম্মতির জন্য প্রযোজ্য আইনে নির্ধারিত আরও দীর্ঘ সময়ের জন্য আলাদাভাবে সংরক্ষিত থাকে।

ব্যবহারকারীর উদ্যোগে মোছা

আপনি নিজে কোনো মেসেজ বা চ্যাট রুম মুছে ফেললে সংশ্লিষ্ট ডেটা তৎক্ষণাৎ স্থায়ীভাবে মুছে ফেলা হয়। অ্যাকাউন্ট মুছে ফেললে আপনার নাম, ইমেইল ঠিকানা, নিকনেম ও প্রোফাইল ছবি অ্যাকাউন্ট বন্ধ হওয়ার সঙ্গে সঙ্গেই এমনভাবে বেনামীকরণ (অ্যানোনিমাইজ) করা হয় যে তা আর পুনরুদ্ধার করা যায় না, এবং সংরক্ষিত প্রজেক্ট, তৈরি করা ছবি ও আপলোড করা ফাইল অ্যাকাউন্ট বন্ধ হওয়ার ৩০ দিন পর স্টোরেজ থেকে স্থায়ীভাবে মুছে ফেলা হয়। তবে কমিউনিটিতে করা আপনার পোস্ট ও মন্তব্য অন্য ব্যবহারকারীদের কথোপকথনের প্রসঙ্গ অক্ষুণ্ন রাখার জন্য বেনামী অবস্থায় থেকে যায়, যেখানে লেখকের নামের জায়গায় 'মুছে ফেলা ব্যবহারকারী' দেখানো হয়; এই উদ্দেশ্যেই শনাক্তকরণ তথ্য সরিয়ে ফেলা একটি অ্যাকাউন্ট রেকর্ড একসাথে সংরক্ষণ করা হয়। হিসাব, কর ও বিরোধ নিষ্পত্তির উদ্দেশ্যে প্রযোজ্য আইন অনুযায়ী যেসব পেমেন্ট ও লেনদেনের রেকর্ড সংরক্ষণ করা বাধ্যতামূলক, সেগুলো এই নীতির ধারা ৩ অনুসারে শনাক্তকরণমুক্ত (ডি-আইডেন্টিফায়েড) অবস্থায় আলাদাভাবে সংরক্ষণ করা হয়।

অ্যাক্সেস লগ (AuditLog)

পরিষেবা ব্যবহারের ফলে তৈরি হওয়া অ্যাক্সেস আইপি, User-Agent ও অ্যাক্সেসের সময়সহ কার্যকলাপের রেকর্ড কোরিয়ার যোগাযোগ গোপনীয়তা সুরক্ষা আইনের ধারা ১৫-২ পালন এবং তদন্তকারী কর্তৃপক্ষের বৈধ অনুরোধে সাড়া দেওয়ার জন্য এক (১) বছর সংরক্ষণ করা হয়, এরপর তা স্বয়ংক্রিয়ভাবে মুছে ফেলা হয়। তবে অভিযোগ গ্রহণের রেকর্ড ও অ্যাকাউন্ট মুছে ফেলার অনুরোধের রেকর্ড বিরোধ নিষ্পত্তি এবং মুছে ফেলার অধিকার পালনের প্রমাণ রাখার জন্য, আর গুরুতর নিরাপত্তা ঘটনার রেকর্ড পুনরাবৃত্তি রোধের জন্য ওই মেয়াদের পরেও সংরক্ষণ করা হয়। পুনরায় নিবন্ধনে বিধিনিষেধ কার্যকর করার জন্য সংরক্ষিত, অ্যাকাউন্ট বন্ধ করা ই-মেইল ঠিকানার মিলকরণ মান (হ্যাশ) বিধিনিষেধের মেয়াদ শেষ হলে মুছে ফেলা হয়। এই অনুচ্ছেদটি এই নীতির ধারা ৩-এ উল্লিখিত অ্যাক্সেস লগ (তিন মাস) সংক্রান্ত অনুচ্ছেদের চেয়ে অগ্রাধিকার পাবে।

১৬. আইন প্রয়োগকারী ও সরকারি কর্তৃপক্ষের সাথে সহযোগিতা

কোম্পানি ব্যবহারকারীদের ব্যক্তিগত তথ্য সুরক্ষায় প্রতিশ্রুতিবদ্ধ; তবে কোনো সরকারি কর্তৃপক্ষ যথাযথ প্রক্রিয়া অনুসরণ করে বৈধ অনুরোধ জমা দিলে, কোম্পানি প্রযোজ্য আইনে অনুমোদিত সীমার মধ্যে সহযোগিতা করবে।

আইনি প্রক্রিয়া

কোনো তদন্তকারী কর্তৃপক্ষ, আদালত বা অন্য সরকারি সংস্থা যখন ওয়ারেন্ট, আদালতের আদেশ বা অন্য কোনো বৈধ দলিল উপস্থাপন করে ডেটা চায়, তখন কোম্পানি কোরিয়ার ব্যক্তিগত তথ্য সুরক্ষা আইন, যোগাযোগ গোপনীয়তা সুরক্ষা আইনের ধারা ১৫-২ এবং টেলিকমিউনিকেশন বিজনেস অ্যাক্টের ধারা ৮৩ সহ প্রযোজ্য আইনে অনুমোদিত সীমার মধ্যে কেবল ন্যূনতম প্রয়োজনীয় তথ্য সরবরাহ করে। ওয়ারেন্ট বা আদেশবিহীন নিছক অনানুষ্ঠানিক অনুরোধে কোম্পানি সাড়া দেয় না।

ব্যবহারকারীকে বিজ্ঞপ্তি

কোম্পানি যখন কোনো সরকারি কর্তৃপক্ষকে ব্যবহারকারীর তথ্য প্রকাশ করে, তখন যোগাযোগ গোপনীয়তা সুরক্ষা আইন ও ব্যক্তিগত তথ্য সুরক্ষা আইনে অনুমোদিত সীমার মধ্যে সংশ্লিষ্ট ব্যবহারকারীকে জানাতে যুক্তিসঙ্গত চেষ্টা করবে। তদন্তকারী কর্তৃপক্ষ প্রকাশ না করার নির্দেশ দিলে, কিংবা বিজ্ঞপ্তি কোনো তদন্ত বা বিচারিক প্রক্রিয়ায় উল্লেখযোগ্যভাবে বাধা সৃষ্টি করতে পারলে, অথবা আইন দ্বারা অন্যথায় নিষিদ্ধ বা সীমাবদ্ধ হলে এমন বিজ্ঞপ্তি বিলম্বিত বা বাদ দেওয়া হতে পারে।

ব্যবহারকারীর অধিকার

ব্যবহারকারীরা ব্যক্তিগত তথ্য সুরক্ষা আইনের ধারা ৩৫ অনুসারে সরকারি কর্তৃপক্ষকে করা তথ্য প্রকাশের রেকর্ড দেখার অনুরোধ করতে পারেন। কোনো ব্যবহারকারী মনে করলে যে কোনো তথ্য প্রকাশ বেআইনি ছিল, তিনি একই আইনের ধারা ৪৩ অনুযায়ী মধ্যস্থতা ও ধারা ৩৯ অনুযায়ী ক্ষতিপূরণসহ আইনি প্রতিকার চাইতে পারেন। সংশ্লিষ্ট জিজ্ঞাসার জন্য, অনুগ্রহ করে এই নীতির ধারা ১২-তে উল্লিখিত ডেটা প্রোটেকশন অফিসারের সাথে যোগাযোগ করুন।

১৭. পণ্য ব্যবহারের বিশ্লেষণ (PostHog)

সেবাটি কীভাবে ব্যবহৃত হয় তা বোঝা ও উন্নত করার জন্য আমরা GenToon-এর ওয়েবসাইট ও মোবাইল অ্যাপে পণ্য বিশ্লেষণের সরঞ্জাম PostHog ব্যবহার করি। PostHog এই তথ্য ইউরোপীয় ইউনিয়নে (ফ্রাঙ্কফুর্ট, জার্মানি) অবস্থিত সার্ভারে প্রক্রিয়া করে, তাই নিচের বিষয়টি ব্যক্তিগত তথ্যের আন্তর্জাতিক স্থানান্তর।

উদ্দেশ্য

সাইন-আপ থেকে ওয়েবটুন তৈরি ও পেমেন্ট পর্যন্ত ব্যবহারের প্রবাহ (ফানেল) এবং পুনরায় ফিরে আসার হার পরিমাপ করা, ফিচারভিত্তিক ব্যবহারের পরিসংখ্যান সংকলন করা, এবং ঝরে পড়ার বিন্দু ও ত্রুটি শনাক্ত করে পরিষেবা উন্নত করাই এর উদ্দেশ্য। আপনি কোন চ্যানেলের মাধ্যমে GenToon-এ এসেছেন তাও আমরা রেকর্ড করি (নিচের “স্থানান্তরিত তথ্য” দেখুন), যাতে বিভিন্ন চ্যানেল থেকে আসা ব্যবহারকারীরা পরিষেবাটি কীভাবে ব্যবহার করেন তা তুলনা করা যায়। আমরা এই তথ্য বিজ্ঞাপন টার্গেটিংয়ে ব্যবহার করি না, এবং আপনার উপর আইনি বা অনুরূপ উল্লেখযোগ্য প্রভাব ফেলে এমন স্বয়ংক্রিয় সিদ্ধান্ত গ্রহণেও ব্যবহার করি না।

স্থানান্তরিত তথ্য

ব্যবহারকারী শনাক্তকারী (আপনার অভ্যন্তরীণ GenToon অ্যাকাউন্ট আইডি — আমাদের ডেটাবেস যে শনাক্তকারী ব্যবহার করে সেটিই); ওয়েবে সাইন ইন করলে আপনার ইমেল ঠিকানা; অ্যাকাউন্টের বৈশিষ্ট্য (সাবস্ক্রিপশন প্ল্যান, ভাষা, পেমেন্টের দেশ, সাইন-আপের তারিখ, সাইন-আপ প্ল্যাটফর্ম, এবং উৎস-সংক্রান্ত বৈশিষ্ট্য — utm_source, utm_medium, utm_campaign, আপনি কোনো অর্থপ্রদত্ত বিজ্ঞাপনের ক্লিক থেকে এসেছেন কি না, এবং কোনো অ্যাফিলিয়েট বা অন্য ব্যবহারকারীর রেফারেলে এসেছেন কি না; gclid ও fbclid-এর মতো বিজ্ঞাপন ক্লিক আইডির মান পাঠানোর আগে ঢেকে দেওয়া হয়, তাই আইডিটি নিজে স্থানান্তরিত হয় না, তবে ক্লিক আইডি ছিল — এই তথ্যটি স্থানান্তরিত হয়); ব্যবহারের ইভেন্ট (স্ক্রিন দেখা, নির্বাচন, এবং জেনারেশন বা পেমেন্ট সম্পন্ন করার মতো কাজের রেকর্ড); ওয়েবসাইটে স্বয়ংক্রিয়ভাবে সংগৃহীত ইন্টারঅ্যাকশন — আপনি যে বোতাম ও লিঙ্কে ক্লিক করেন তাতে দৃশ্যমান লেখা, এবং আপনি যে পৃষ্ঠায় আছেন তার ঠিকানা ও তাতে থাকা মান, যেমন কমিউনিটিতে আপনার টাইপ করা অনুসন্ধান শব্দ; আপনি যদি বাইরের কোনো সার্চ থেকে আসেন তবে সেই সার্চ ইঞ্জিনের নাম (Google, Bing, Yahoo বা DuckDuckGo) এবং, ব্রাউজার যখন আগের পৃষ্ঠার ঠিকানায় অনুসন্ধান শব্দটি পাঠায় তখন সেই সার্চ ইঞ্জিনে আপনার টাইপ করা শব্দ; আপনি যদি কোনো রেফারেল বা আমন্ত্রণ লিঙ্ক থেকে আসেন তবে সেই লিঙ্কের প্রকাশ্য কোড (ঠিকানার ref·via মান — এই কোড রেফারকারীর অ্যাকাউন্টের সঙ্গে মিলিয়ে নেওয়া যেতে পারে, তাই আমরা দাবি করি না যে এটি রেফারকারীর পরিচয়ের সঙ্গে সম্পর্কহীন); ডিভাইস, অপারেটিং সিস্টেম ও অ্যাপ সংস্করণের তথ্য; এবং আপনার আইপি ঠিকানা ও তা থেকে অনুমিত দেশ। আপনার তৈরি কনটেন্ট আমরা স্থানান্তর করি না: প্রম্পটের মূল লেখা, চরিত্রের সঙ্গে চ্যাটের কথোপকথন, এবং আপলোড করা বা তৈরি হওয়া ছবির ফাইল PostHog-এ পাঠানো হয় না।

গ্রহীতা, দেশ, সময় ও স্থানান্তরের পদ্ধতি

গ্রহীতা হলো PostHog, Inc. (যোগাযোগ: privacy@posthog.com) এবং গন্তব্য হলো ইউরোপীয় ইউনিয়ন (ফ্রাঙ্কফুর্ট, জার্মানি অঞ্চল)। আপনি যখন সেবা ব্যবহার করেন তখনই বিশ্লেষণ SDK-এর মাধ্যমে এনক্রিপ্ট করা নেটওয়ার্ক সংযোগে (HTTPS) তথ্য পাঠানো হয়।

গ্রহীতার উদ্দেশ্য ও সংরক্ষণের মেয়াদ

PostHog কেবল উপরে বর্ণিত উদ্দেশ্যেই তথ্য প্রক্রিয়া করে। সংরক্ষণের মেয়াদ PostHog-এর তথ্য সংরক্ষণ নীতিমালা অনুসরণ করে এবং তা সর্বোচ্চ ৭ বছর (PostHog-এর প্রকাশিত তথ্য অনুযায়ী, ৭ আগস্ট ২০২৬ তারিখে যাচাই করা)। আপনার GenToon অ্যাকাউন্ট মুছে ফেললেই PostHog-এ ইতিমধ্যে পাঠানো তথ্য মুছে যায় না — তা মুছতে হলে নিচের “আপত্তি জানানোর উপায়” অনুযায়ী আলাদাভাবে অনুরোধ করুন।

স্ক্রিন রেকর্ডিং (সেশন রিপ্লে)

PostHog-এর সেশন রিপ্লে (স্ক্রিন রেকর্ডিং) সুবিধাটি আমাদের ওয়েবসাইট ও মোবাইল অ্যাপ উভয়েই বন্ধ রাখা আছে, তাই PostHog আপনার স্ক্রিন রেকর্ড করে না। এর থেকে আলাদাভাবে, আমাদের ওয়েবসাইট — তবে মোবাইল অ্যাপ নয় — Microsoft Clarity ব্যবহার করে, যা প্রকৃতপক্ষে স্ক্রিনের ইন্টারঅ্যাকশন (সেশন রিপ্লে) ও হিটম্যাপ রেকর্ড করে; বিস্তারিত জানতে এই নীতিমালার প্রসেসর তালিকা, আন্তর্জাতিক স্থানান্তর তালিকা ও কুকি অনুচ্ছেদ দেখুন। ভবিষ্যতে PostHog-এ সেশন রিপ্লে চালু করলে আমরা আগেভাগে এই নীতিমালা সংশোধন করে জানাব।

আপত্তি জানানোর উপায়

এই প্রক্রিয়াকরণ ও স্থানান্তরে আপত্তি জানানোর এবং তা বন্ধ করে তথ্য মুছে ফেলার দাবি করার অধিকার আপনার রয়েছে। service@gentoon.ai-এ ইমেল করুন; আমরা PostHog-এ আপনার অ্যাকাউন্ট শনাক্তকারীর সঙ্গে যুক্ত বিশ্লেষণী তথ্য মুছে দেব এবং আপনার সম্পর্কে পরবর্তী সংগ্রহ বন্ধ করার ব্যবস্থা নেব; এটি হাতে-কলমে করা হয়, তাই অনুগ্রহ করে প্রক্রিয়াকরণের জন্য কিছু সময় দিন, আর অ্যাকাউন্ট মুছে ফেললে এটি স্বয়ংক্রিয়ভাবে হয় না। ব্রাউজারে কুকি ও লোকাল স্টোরেজ ব্লক করলে বারবার আসার সময় আপনাকে শনাক্ত করা কঠিন হয়, কিন্তু কেবল এতে সংগ্রহ বন্ধ হয় না — নির্ভরযোগ্য উপায় হলো উপরের ইমেল অনুরোধ। আরও লক্ষ করুন, পৃষ্ঠা খোলার সঙ্গে সঙ্গেই আমরা বিশ্লেষণী সরঞ্জাম চালু করি, আগে কোনো সম্মতি ব্যানার দেখাই না, এবং আপনার ব্রাউজার যে Global Privacy Control (GPC) বা Do Not Track সংকেত পাঠাতে পারে তা আমরা বর্তমানে শনাক্ত করি না বা তদনুযায়ী কাজ করি না। আপত্তি জানালে পরিষেবা ব্যবহারে কোনো বিধিনিষেধ আসে না।

১৮. আপনার প্রোফাইল ছবি ওয়েবটুন চরিত্রে রূপান্তর

আপনি যখন কোনো কথোপকথনকে ওয়েবটুনে রূপান্তর করেন, তখন আপনার প্রোফাইল ছবি ওয়েবটুন-স্টাইলের চরিত্র তৈরি করতে (স্টাইলাইজেশন) ব্যবহৃত হয়। এটি আপনাকে শনাক্ত করার জন্য কিংবা বায়োমেট্রিক তথ্য নিষ্কাশন, সংরক্ষণ বা মিলানোর উদ্দেশ্যে নয়। এই প্রক্রিয়ায় কোম্পানি তৈরি হওয়া চরিত্রের ছবি, সেটি আঁকার জন্য এআই যে সংক্ষিপ্ত অবয়ব-বর্ণনার লেখাটি নিষ্কাশন করেছে, এবং তৈরির সময়কার প্রোফাইল ছবির ঠিকানা (URL) সংরক্ষণ করে; একই চরিত্র আবার আঁকার সময় এগুলো পুনরায় ব্যবহার করা হয়। প্রোফাইল ছবি না থাকলে বা রূপান্তর ব্যর্থ হলে তার বদলে একটি ডিফল্ট চরিত্র ব্যবহার করা হয়। মুখমণ্ডলসহ ছবির বিশ্লেষণের জন্য এবং গ্রুপ কথোপকথন ওয়েবটুনে রূপান্তরের সময় অন্য অংশগ্রহণকারীদের বার্তা এআই-এ পাঠানোর জন্য পরিষেবার ভেতরেই এগুলোর প্রতিটির ক্ষেত্রে আলাদা আলাদা সম্মতি নেওয়া হয়। আপনি যেকোনো সময় প্রোফাইল ছবি পরিবর্তন বা মুছে, অথবা service@gentoon.ai ঠিকানায় অনুরোধ পাঠিয়ে এই ব্যবহার বন্ধ করতে এবং সংরক্ষিত চরিত্রের ছবি ও অবয়ব-বর্ণনা মুছে ফেলার দাবি জানাতে পারেন।