Privacy Policy

Last Updated: November 3, 2025

Introduction

Picniq Inc. ("we", "us", "our") is committed to protecting your privacy and safeguarding your personal information. This Privacy Policy describes how we collect, use, store, and protect your personal information when you use the Picniq service (the "Service").

By using the Service, you consent to the collection and use of information in accordance with this policy. This policy complies with applicable data protection laws, including the General Data Protection Regulation (GDPR) and relevant US privacy regulations.

1. Information We Collect

1.1 Personal Information You Provide

When you register for or use the Service, we may collect the following information:

  • Identity Details: Full name, email address, phone number
  • Payment Details: Credit card or other payment information (processed through a secure third-party service)
  • Account Details: Username, password (encrypted), account preferences
  • Photos: Personal photos you upload to the Service for the purpose of creating professional headshots

1.2 Information Collected Automatically

When using the Service, we automatically collect certain technical information:

  • Device Information: Device model, operating system, browser version, unique device identifier
  • Usage Information: Pages visited, date and time of use, actions taken in the Service
  • Geographic Location: IP address, general geographic area (country, city)
  • Cookies: Information stored in cookies to improve the user experience

1.3 Information from Third Parties

We may receive information from third parties such as:

  • Identity and login providers (e.g., Google, Facebook)
  • Payment service providers
  • Analytics services

2. Purposes of Information Use

2.1 Providing the Service

We use your information to:

  • Provide and maintain the Service
  • Create headshot images using artificial intelligence
  • Process payments and manage your account
  • Communicate with you regarding the Service

2.2 Improving the Service

We use information for:

  • Improving and developing the Service
  • Training and improving our AI models
  • Analyzing usage patterns and trends
  • Testing and fixing issues

2.3 Communication and Marketing

We may use information for:

  • Sending transaction and service notifications
  • Sending updates and information about new features
  • Sending marketing materials (subject to your consent)
  • Conducting surveys and requesting feedback

2.4 Security and Fraud Prevention

We use information to:

  • Protect the security of the system and data
  • Detect and prevent fraud, illegal activity, or misuse
  • Enforce our Terms of Service

2.5 Legal Obligations

We may use information to:

  • Comply with legal and regulatory obligations
  • Protect our rights in legal proceedings
  • Cooperate with law enforcement authorities

3. Legal Basis for Processing

The processing of your personal information is carried out on one or more of the following legal bases:

  • Consent: Your explicit consent to use information for specific purposes
  • Performance of Contract: The information is necessary to provide the service you purchased
  • Legitimate Interest: The information serves legitimate purposes such as improving the service, data security, and fraud prevention
  • Legal Obligation: The information is required by law

4. Sharing Information with Third Parties

4.1 Service Providers

We share information with third-party service providers who assist us in providing the Service, such as:

  • Cloud Storage Providers: For storing information and photos (AWS, Google Cloud)
  • Payment Processors: For processing credit card transactions
  • Analytics Services: For analyzing website usage (Google Analytics)
  • Customer Support Services: For managing service inquiries

All service providers are required to maintain the confidentiality of information and use it solely for the purposes for which it was provided.

4.2 Business Partners

In certain cases, we may share information with business partners for:

  • Promotion and offering of complementary services
  • Commercial collaborations

Such sharing will only be done with your explicit consent.

4.3 Business Transfer

In the event of a merger, acquisition, or asset sale, your personal information may be transferred to the acquiring entity. In such a case, we will notify you in advance and ensure the acquiring entity continues to protect your privacy.

4.4 Legal Requirements

We may disclose information when:

  • Required by law, court order, or legal process
  • To protect our rights, property, or safety
  • To prevent illegal activity or suspected fraud
  • In cooperation with law enforcement authorities

4.5 Anonymous and Aggregate Information

We may share anonymous or aggregate information that does not personally identify you for research, marketing, and business development purposes.

5. Data Security

5.1 Technical Security Measures

We implement advanced security measures to protect your information:

  • Encryption: All sensitive information is transmitted and stored in encrypted form (SSL/TLS, AES-256)
  • Access Control: Restricting access to information only to authorized employees who need it
  • Two-Factor Authentication: Option for enhanced account security
  • Security Monitoring: Continuous monitoring for suspicious activity and security threats
  • Backups: Regular data backups to prevent data loss

5.2 Organizational Security Measures

  • Employee Training: Our employees undergo training in data security and privacy protection
  • Security Policy: We maintain strict security policies and procedures
  • Security Audits: Periodic security reviews by external parties
  • Response Plan: A defined plan for handling security incidents

5.3 Your Security Responsibility

You are responsible for maintaining the security of your account:

  • Maintain a strong and unique password
  • Do not share your login credentials with others
  • Use two-factor authentication when possible
  • Notify us immediately of any suspicious account activity

5.4 Security Limitations

Despite our efforts, no security method is completely foolproof. We cannot guarantee absolute security of information. In the event of a security breach that could affect you, we will notify you and the relevant authorities in accordance with applicable law.

6. Data Storage and Retention

6.1 Storage Location

Your information is stored on secure servers located in the United States and/or other countries in accordance with the service providers we use. All data transfers comply with applicable data protection requirements.

6.2 Retention Period

We retain your information for the period necessary for the purposes for which it was collected:

  • Account Details: As long as the account is active
  • Uploaded Photos: Up to 30 days after the final images are created, unless you request earlier deletion
  • Final Images: Up to 90 days after creation, unless you choose to download and save them yourself
  • Payment Information: In accordance with legal and tax requirements (generally 7 years)
  • Information for Legal Purposes: In accordance with legal obligations

6.3 Automatic Data Deletion

Our system automatically deletes old photos after the retention period to ensure we do not store information longer than necessary.

7. Your Rights

In accordance with applicable data protection laws, you have the following rights:

7.1 Right of Access

You are entitled to receive information about the personal data we hold about you. You may submit an access request by contacting us.

7.2 Right to Rectification

If you discover that your information is incorrect or outdated, you may request that it be corrected. We will update the information as soon as possible.

7.3 Right to Erasure

You may request deletion of your personal information, subject to certain legal limitations. Deletion will be completed within 30 days of receiving the request.

7.4 Right to Restriction of Processing

You may request that we restrict the use of your information in certain cases, such as when you dispute the accuracy of the information.

7.5 Right to Object

You may object to certain uses of your information, such as direct marketing. You may unsubscribe from marketing communications at any time.

7.6 Right to Data Portability

You may receive your information in a structured and commonly used format, and transfer it to another service provider.

7.7 Right to Lodge a Complaint

If you believe your rights have been violated, you may lodge a complaint with the relevant data protection authority in your jurisdiction.

7.8 Exercising Your Rights

To exercise your rights, you may contact us through:

  • Email: hello@picniq.ai
  • Through the account settings on the website

We will respond to your requests within 30 days, in accordance with applicable law.

8. Cookies and Similar Technologies

8.1 What Are Cookies

Cookies are small text files stored on your device when you visit the website. They help us improve the user experience, analyze traffic, and provide personalized content.

8.2 Types of Cookies We Use

  • Essential Cookies: Necessary for basic website functionality, such as logging in and data security
  • Functional Cookies: Improve the functionality and performance of the website
  • Analytics Cookies: Allow us to analyze website usage and improve it (Google Analytics)
  • Marketing Cookies: Used to display relevant advertisements (subject to your consent)

8.3 Managing Cookies

You can control cookies through your browser settings. Note that blocking certain cookies may affect website functionality.

In most browsers you can:

  • View stored cookies
  • Block new cookies
  • Delete existing cookies
  • Set alerts before cookies are saved

8.4 Additional Technologies

We may also use similar technologies such as:

  • Web Beacons: Small images embedded in pages for usage analysis
  • Local Storage: Local browser storage for operational purposes
  • Tracking Pixels: For monitoring marketing campaign performance

9. Minors

Our Service is not intended for minors under the age of 18. We do not knowingly collect personal information from minors. If we learn that we have collected information from a minor without parental or guardian consent, we will delete that information as soon as possible. If you believe a minor has provided us with personal information, please contact us.

10. Changes to the Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in the Service, technology, or legal requirements.

10.1 Notice of Changes

In the event of material changes, we will notify you through:

  • Notice on the website
  • Email notification (when we have your email address)
  • Notice upon logging into your account

10.2 Continued Use

Continued use of the Service after publication of changes constitutes acceptance of the updated policy. If you do not agree to the changes, you should stop using the Service and request account deletion.

10.3 Last Update Date

The date of the last update of this policy appears at the top of this document.

11. International Data Transfers

11.1 International Servers

Our cloud services may store information on servers located outside the United States. Data transfers comply with applicable data protection laws and are only made to jurisdictions with adequate data protection standards or under appropriate safeguards.

11.2 Protective Measures

When transferring data internationally, we implement additional protective measures:

  • Contracts with providers ensuring privacy protection
  • Full encryption of data
  • Compliance with international data protection standards

12. Contact Us

For any questions, requests, or complaints regarding this Privacy Policy or the handling of your personal information, you may contact:

Picniq Inc.

Privacy Officer: Email: hello@picniq.ai

We are committed to responding to your inquiries within 30 days.


Last Updated: November 3, 2025 Version: 1.0

We respect your privacy and act in accordance with all applicable laws and regulations for privacy protection.