CASTSHOT

Privacy Policy

Last updated: May 2026

1. What We Collect

  • Account information (email, name)
  • Photos you upload for processing
  • Generated headshots and related account records needed to provide the service
  • Usage data (quiz selections, generation count)
  • Technical data (hashed IP address, device type)
  • Payment data — processed by LemonSqueezy only. We never see or store card numbers.

2. How We Use Your Data

  • Provide and continuously improve the service
  • Process payments securely
  • Send transactional account emails
  • Detect and prevent fraud
  • Comply with legal obligations

3. Data Storage

CastShot stores account and service data using the providers described in this policy. We do not sell your personal data. We do not share personal data with third parties except as described in Section 4.

4. Third Parties

  • Supabase — database, authentication, and file storage
  • OpenAI — photo processing. Images are not retained for AI training.
  • LemonSqueezy — payment processing
  • Vercel — application hosting
  • PostHog — product analytics for site and app usage events. We use it for product and funnel measurement, not advertising.

5. Your GDPR Rights

If you are in the EU, you have the following rights:

  • Access — request a copy of your data
  • Rectification — correct inaccurate data
  • Erasure — right to be forgotten
  • Portability — receive your data in JSON format
  • Restriction — limit how we process your data
  • Object — ask us to review privacy concerns, including analytics-related concerns, under the applicable rules for your request

Exercise your rights via the Settings page or by emailing support@castshot.actor. We review privacy requests manually and respond as appropriate under applicable obligations.

6. Data Retention

  • You can request deletion of supported account data through the Settings flow or by contacting support
  • Supported deletion paths remove generated assets and related account data where applicable
  • Original or source images may also be cleaned up automatically through existing cleanup paths
  • Some records may be retained when needed for payment, fraud prevention, security, support, tax/accounting, or legal obligations
  • Additional retention automation and broader compliance hardening remain future improvements
  • Payment and related compliance records may be retained longer when reasonably needed or legally required

7. Children

CastShot is not intended for users under 18. We do not knowingly collect data from minors.

8. Contact

Privacy questions: support@castshot.actor

TermsPrivacyRefundsCookies

© 2026 CastShot. All rights reserved.