Skip to content
LaunchPage AI— LaunchPage AI home

Privacy Policy

What we collect, why we collect it, and every third party that sees it.

Last updated 30 July 2026

Summary

We collect the minimum needed to run an account, take payment, and generate your pages. We do not sell personal data, we do not run advertising trackers, and we do not use your briefs or generated pages to train models.

What we collect

Account data: your name, email address and profile image as supplied by the sign-in provider you choose, plus the provider account identifier used to recognise you on return.

Content: the briefs you write, the answers you give in the brand interview, the generation settings you choose, and the pages produced from them.

Usage data: a record of each completed generation — the model used, the output format, token counts and duration — which is how quotas are counted.

Billing data: a Stripe customer identifier, your plan, subscription status and renewal date. Card details are entered on Stripe's own pages and never reach our servers.

We do not use advertising cookies. The only browser storage we set is what the application needs to function: your session, your theme, and your language preferences.

Why we use it, and on what basis

To provide the service you asked for — generating pages, storing your projects, showing your history. This is performance of our contract with you.

To take payment and prevent abuse, including rate limiting. This is our legitimate interest in running a viable service, and our legal obligation to keep financial records.

To contact you about your account — sign-in links, receipts, and notice of material changes. Transactional only; we do not send marketing without asking first.

Who processes it for us

These are the only third parties that receive your data, and each processes it only on our instructions:

  • Stripe — payments, subscription state and invoices
  • OpenAI and Anthropic — receive your brief and generation settings in order to produce the page; both are used, with automatic failover between them
  • Neon — the PostgreSQL database where your account, projects and usage records are stored
  • Resend — sends one-time sign-in links, where you use email sign-in
  • Google and GitHub — only if you choose to sign in with them, and only to confirm your identity

Model providers may retain a copy of a request briefly for abuse monitoring under their own terms. Your briefs are not used to train their models under the API terms we operate on.

Where it is held

Data is stored and processed in the United States and the European Union, depending on the provider. Where data leaves your region, the transfer relies on the standard contractual clauses our providers have in place.

How long we keep it

Projects and generation history are kept until you delete them or close your account. Deleting your account removes them.

Billing records are kept for as long as tax and accounting law requires, typically six years, even after an account closes.

Your rights

You can access, correct, export or delete your data. Most of this is immediate and self-service: Settings shows what is stored, lets you edit your name, delete all projects, or delete the account entirely, and every project can be downloaded as a complete ZIP.

For anything the interface does not cover — including objecting to processing or asking for a portable export of everything at once — write to legal@launchpage.ai.

If you are in the UK or EU and think we have handled your data badly, you can complain to your national data protection authority. We would rather you told us first.

Security

Passwords are never stored, because we do not use them: sign-in is delegated to Google, GitHub, or a one-time email link. Traffic is encrypted in transit. Database access is restricted to the application, and every query is scoped to the signed-in account.

Generated pages are previewed inside a sandboxed frame with no access to your session, so a page a model writes cannot read your account.

No system is perfectly secure. If a breach affects you, we will tell you and the relevant regulator within the timeframes the law sets.

Children

The service is not intended for children, and we do not knowingly collect their data. If you believe a child has created an account, tell us and we will remove it.

Changes

We will post any update here and change the date at the top. For material changes we will also email account holders.