Information you provide
- Creation content: sketches, annotations, prompts, notes, selected options, reference photos, and other content you choose to submit.
- Generated content: stickers and refinements returned from the generation service.
- Optional account data: when you choose Apple or Google sign-in, Pixora receives an account identifier and may receive your name and email address. Google may also provide a profile-photo URL, which Pixora stores with the account and account analytics record. Apple may provide a private relay address when you choose Hide My Email.
- Support messages: information you include when emailing Pixora Support.
Automatically processed information
When you are signed in, Pixora records account-linked analytics events such as sign-in, session start, image generation or refinement, collection sends, and feature or tool use. The analytics record includes a randomly generated session identifier and the app surface that sent the event. If you enable image-ready notifications, Pixora includes an Apple Push Notification service (APNs) device token with a generation request so it can ask APNs to deliver the result notification.
Pixora stores a random guest identifier in shared Keychain storage so the app and iMessage extension can apply the same free-credit balance. The generation service stores only a one-way derived identifier with that balance and temporary job reservations; it is not used for advertising or cross-app tracking.
When you make a generation request, the server converts the client IP address to a one-way hash and can keep that rate-limit record for up to 15 minutes. Vercel, Pixora's hosting provider, retains request metadata such as request ID, path and search parameters, user agent, status, and timing in runtime logs used to operate and debug the service.
Purchases, credits, and Pixora Plus
Pixora offers optional consumable credit packs and an optional auto-renewable Pixora Plus subscription through Apple's In-App Purchase system. Apple, not Pixora, processes App Store billing. Pixora does not receive or store your payment-card number, Apple Account password, or full billing information.
To verify and provide a purchase, Pixora processes StoreKit-signed transaction and entitlement data, such as product and transaction identifiers, an app-specific account token, and purchase, expiration, renewal, revocation, and refund-status information. Pixora uses this information to apply a credit pack, provide and restore Pixora Plus access and its included allowance, prevent a transaction from being replayed, and respond to verified refund, revocation, and refund-reversal notices.
Credit packs are consumable and tied to a signed-in Pixora account. Pixora Plus is an auto-renewable subscription; its current price, billing period, and included allowance are shown by Apple before purchase. You can restore purchases or manage and cancel Pixora Plus through Apple's subscription controls from Pixora. Deleting a Pixora account disables its Pixora entitlements but does not cancel Apple billing or an App Store subscription.
How Pixora uses information
- Generate, moderate, refine, save, sync, and deliver stickers you request.
- Authenticate optional accounts and synchronize account collections.
- Send image-ready notifications when enabled.
- Measure feature use for signed-in accounts, prevent abuse, enforce request limits, and apply, restore, revoke, or reinstate credits and Pixora Plus access when verified purchase status changes.
- Respond to support, privacy, and deletion requests.
AI processing and service providers
Pixora sends the content required for a generation or refinement to Pixora's servers. Those servers send the submitted prompt and image content to OpenAI for safety moderation and image generation. By submitting a photo, image, sketch, message, or other content, you represent that you have the rights and permissions needed to use it for the requested generation or refinement. Do not submit sensitive personal information or content that violates another person's intellectual-property, privacy, or publicity rights.
Under OpenAI's standard API data controls, abuse-monitoring logs may contain submitted content and metadata derived from it and may be retained for up to 30 days (or longer when legally required). Pixora's production account may use different approved data controls; the periods below describe Pixora's own application records.
Pixora uses service providers to operate app functionality:
- OpenAI for content moderation and image generation.
- Vercel for application hosting and server functions.
- Redis, when configured, for temporary generation jobs, credit balances, and account records.
- Google Cloud Storage, when configured, for generated stickers and collection metadata you choose to synchronize with an account.
- Apple and Google for optional authentication; Apple also processes App Store billing, provides StoreKit purchase and entitlement records, and provides push notifications.
The release build does not include social features, advertising features, or third-party advertising SDKs. Pixora does not use the data described here to track you across other companies' apps or websites for targeted advertising or advertising measurement. Information may also be disclosed when required by law, to protect users or the service, or as part of a business transfer subject to appropriate safeguards.
On-device storage and sharing
Drafts, stickers, and history are stored locally on your device and in the shared App Group used by the Pixora iOS app and iMessage extension. The APNs notification token and a random guest credit identifier are stored in shared Keychain items. They remain until you delete them, delete your account through Pixora, or remove the app and its data. Pixora accesses the camera or photo library only after you choose the related feature and iOS grants permission. A sticker leaves Pixora through Messages, Photos, or the share sheet only when you choose to send, save, or share it.
Retention and deletion
- Temporary generation jobs: Pixora stores a job's status and generated output for up to six hours, then expires it automatically. Submitted prompts, sketches, and reference photos are forwarded for processing and are not intentionally added to your Pixora cloud collection.
- Rate limiting: the generation server retains a one-way hash of the client IP address in Redis for up to 15 minutes.
- Credits, purchases, and subscriptions: the service keeps a pseudonymous free-credit balance and job reservation state while the balance can be used. Signed-in credit-pack balances remain available until used, revoked, or account deletion; Pixora Plus entitlement records and allowance balances remain available until they expire, are revoked, or the account is deleted. Pixora retains minimal non-content transaction, entitlement, refund, and idempotency records after account deletion only as needed to prevent a purchase from being replayed, process verified App Store status changes, and meet legal obligations.
- Runtime logs: Vercel retains runtime-log request metadata for a plan-dependent period (currently one hour on Hobby, one day on Pro, three days on Enterprise, or up to 30 days with Observability Plus). A configured Log Drain can retain or export logs under its own settings.
- Local content: retained on your device until you delete it, delete your Pixora account, or remove Pixora data from the device.
- Cloud collection: account-synced stickers and associated metadata remain until you delete an item or delete your Pixora account.
- Account and analytics records: account profiles and account-linked analytics remain until account deletion; an inactive server session is configured to expire after up to 30 days.
- Support messages: Pixora may retain support correspondence as needed to respond to a request, protect the service, or meet legal obligations.
You can permanently delete your Pixora profile, cloud stickers, account-linked analytics, and active sessions from Pixora > Settings > Account > Delete account. Pixora makes remaining account credits and Pixora Plus access unusable and clears its local drafts and stickers on that device. For an account created with Sign in with Apple, Pixora also revokes its stored Apple authorization before deleting the account. It retains only minimal non-content purchase records when necessary to prevent a consumed App Store purchase from being credited again or to process verified App Store status changes. Deleting Pixora does not delete your Apple Account or Google Account, and it does not cancel an App Store subscription or stop Apple billing; manage or cancel Pixora Plus separately through Apple's subscription controls. For a privacy request or help with an account you cannot access, email 1andrewh000111@gmail.com.
Your choices
You may use core local creation features without an account. You can decline camera, photo-library, or notification permissions; disable notifications in Pixora or iOS Settings; withdraw AI-processing consent in Pixora Settings; sign out of cloud sync; delete individual content; or delete your account. You can restore eligible App Store purchases and manage or cancel Pixora Plus through Apple's subscription controls. Withdrawing AI consent prevents new generations and refinements but does not delete existing stickers.
Children
Pixora is not directed to children under 13, and we do not knowingly collect personal information from children under 13. Contact us if you believe a child has provided personal information.
Security and international processing
Pixora uses reasonable technical and organizational safeguards, but no online service can guarantee absolute security. Information may be processed in the United States or other locations where Pixora's providers operate, subject to applicable safeguards.
Changes to this policy
We may update this policy as Pixora changes. The effective date above will be revised when material changes are published.