Privacy Policy

How Is It AI Photo handles images, detector processing, account data, credits, and private history.

Last updated: 2026-07-17

Service Modes

Is It AI Photo has two explicit operating modes. If the supported detector is unavailable, the endpoint returns a labelled storage-path mock, uses no credit, creates no history, and deletes the temporary R2 object before responding. When the detector is configured, Basic Checks require a signed-in account and use the processing, credit, and history rules below.

Image Uploads

The upload endpoint accepts JPG, PNG, and WebP files up to 10 MB. It validates the declared media type and file signature. Images are never assigned a public R2 URL.

In mock mode, the object is deleted before the response. In detector-backed mode, a safe-for-work image and its structured result are retained in private Cloudflare R2 and D1 storage for up to 30 days so the signed-in user can review or delete the check.

Local Browser Preview

Your browser creates a local object URL so it can show the selected image during the current tab session. That local preview is not the R2 object and disappears when you choose another file, leave the page, or close the tab.

Accounts And Usage Data

If you register or sign in, the shared ZShip account service processes the account details needed for authentication and security. Standard server logs may include request time, user agent, network information, response status, and request ID for security and debugging.

Detector-backed checks record the account owner, file name, media type, size, result evidence, provider request ID, credit transaction proof, creation time, and expiry time. Payment remains disabled.

Third-Party Detection

Detector-backed Basic Checks send the uploaded image directly from our server to Sightengine over HTTPS with the GenAI and safety moderation models enabled. Sightengine may process requests in the EU, Canada, or the United States on standard plans; region selection and immediate end-user data deletion are Enterprise controls.

Sightengine’s ordinary API processing is governed by its Terms of Service and Data Processing Addendum. We do not call Sightengine’s Feedback API or other voluntary reporting mechanisms that grant model-training rights over submitted media.

Sightengine returns probabilistic scores. Is It AI Photo stores a three-state interpretation and broad confidence level, not a claim of certainty.

Acceptable Images

Upload only SFW images you own or are authorized to test. Do not upload sensitive personal data, illegal content, or images that violate another person’s rights.

Your Choices

Signed-in users can delete a saved detector-backed check and its private image from the History page before the 30-day expiry. Expired rows are removed during account history cleanup, and the private bucket is configured for a matching retention ceiling when detector-backed production is enabled.

You can request access, correction, or deletion of account-related personal information by contacting us. There is no mock image object or result history to delete after a mock response completes.

Security

We use encrypted transport, private storage bindings, input validation, and access controls. No internet service can guarantee perfect security.

Contact

Questions about this policy can be sent to [email protected].