Privacy Policy
Effective date: June 7, 2026
PenPublishAI.com ("we," "our," or "us") operates the penpublishai.com website and platform. This Privacy Policy informs you of our policies regarding the collection, use, and disclosure of personal information when you use our Service.
1. Information We Collect
Information You Provide
- Account Information: When you create an account, we collect your name, email address, and password (stored in hashed form).
- Payment Information: When you subscribe to a paid plan, we collect payment details through our payment processor, Stripe. We do not store credit card numbers on our servers.
- Content You Create: Articles, prompts, images, and other content you generate or upload through the platform.
- CMS Credentials: If you connect WordPress, Blogger, or other CMS platforms, we store authentication credentials in encrypted form.
- Communications: When you contact our support team or provide feedback.
Information Collected Automatically
- Usage Data: Pages visited, features used, time spent, click patterns, and interaction data.
- Device Information: Browser type, operating system, screen resolution, and language preferences.
- Log Data: IP address, access times, referrer URLs, and error logs.
- Cookies: Session cookies for authentication and preference cookies for theme and language settings.
2. How We Use Your Information
We use the collected information for the following purposes:
- To provide, maintain, and improve the PenPublishAI.com platform.
- To process transactions and manage your subscription.
- To generate AI-powered content based on your inputs and preferences.
- To send transactional emails (account confirmations, billing receipts, password resets).
- To detect and prevent fraud, abuse, and security incidents.
- To comply with legal obligations.
- To analyze usage patterns and improve user experience.
- To provide customer support and respond to your inquiries.
3. AI-Generated Content
PenPublishAI.com uses artificial intelligence models provided by third-party AI services (including OpenRouter and its associated model providers) to generate content. When you submit prompts or inputs for content generation:
- Your inputs are transmitted to AI model providers for processing.
- AI providers may temporarily process your inputs to generate responses.
- We do not control how third-party AI providers handle data after processing.
- We encourage you to review the privacy policies of underlying AI model providers.
4. How We Share Your Information
We do not sell your personal information. We may share your data with:
- Service Providers: Third parties that help us operate our platform, including hosting (Vercel/Neon), payment processing (Stripe), email delivery (Resend), and error tracking (Sentry).
- CMS Integrations: If you connect WordPress, Blogger, or Pinterest, we transmit content to those platforms on your behalf.
- Legal Requirements: When required by law, court order, or governmental regulation.
- Business Transfers: In connection with a merger, acquisition, or sale of assets, with prior notice.
5. Data Security
We implement industry-standard security measures to protect your personal information, including:
- TLS/SSL encryption for all data in transit.
- AES-256-GCM encryption for sensitive stored credentials.
- Bcrypt hashing for passwords with salt rounds of 12.
- Role-based access controls and audit logging.
- Regular security assessments and monitoring.
However, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security.
6. Data Retention
- Account Data: Retained as long as your account is active. You may delete your account at any time.
- Content: Articles and generated content are retained until you delete them or your account.
- Logs: Server logs are retained for up to 90 days for security and debugging purposes.
- Billing Records: Retained for 7 years as required by applicable law.
7. Your Rights
Depending on your jurisdiction, you may have the following rights:
- Access: Request a copy of the personal data we hold about you.
- Correction: Request correction of inaccurate or incomplete data.
- Deletion: Request deletion of your personal data and account.
- Portability: Request your data in a machine-readable format.
- Objection: Object to processing of your personal data for certain purposes.
- Withdrawal of Consent: Withdraw consent at any time where processing is based on consent.
To exercise any of these rights, contact us at support@penpublishai.com.
8. International Data Transfers
Your information may be transferred to and processed in countries other than your own. Our infrastructure providers (Vercel, Neon, Cloudflare) operate globally. We ensure appropriate safeguards are in place for international transfers, including Standard Contractual Clauses where required.
9. Children's Privacy
PenPublishAI.com is not intended for use by individuals under the age of 16. We do not knowingly collect personal information from children. If we become aware that we have collected data from a child, we will delete it promptly.
10. Third-Party Links
Our platform may contain links to third-party websites or services. We are not responsible for the privacy practices of these third parties. We encourage you to review the privacy policies of any third-party service you access through our platform.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Effective date" above. Your continued use ofPenPublishAI.com after changes are posted constitutes acceptance of the updated policy.
12. Contact Us
If you have any questions about this Privacy Policy, please contact us: