MockingBird AI

Privacy Policy

Last updated: December 28, 2024

🔒 TL;DR - Your Privacy Matters

  • • We do not sell your personal data to third parties
  • • Your generated content belongs to you, and we do not use it to train AI unless you opt in
  • • We only collect data necessary to provide and improve the service
  • • You can request deletion of your data at any time
  • • We comply with GDPR, CCPA, and other applicable privacy laws

1. Introduction

MockingBird AI Inc. (MockingBird, we, us, or our) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered design platform at mockingbirdai.app and related services (the Service).

By using our Service, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies, please do not use our Service.

2. Information We Collect

2.1 Information You Provide

  • Account Information: Name, email address, password (encrypted), and profile information when you create an account
  • Payment Information: Billing address and payment method details (processed securely by our payment provider, Stripe)
  • User Content: Images, prompts, and other materials you upload or generate using the Service
  • Communications: Messages you send to our support team or through feedback forms

2.2 Information Collected Automatically

  • Device Information: Browser type, operating system, device identifiers, and IP address
  • Usage Data: Pages visited, features used, time spent on the Service, and interaction patterns
  • Log Data: Server logs including access times, error reports, and referring URLs
  • Cookies and Tracking: Information collected through cookies, pixels, and similar technologies (see Section 6)

2.3 Information from Third Parties

  • Authentication Providers: If you sign in via Google, GitHub, or other OAuth providers, we receive basic profile information as authorized by you
  • Analytics Partners: Aggregated usage data from analytics services

3. How We Use Your Information

We use the information we collect for the following purposes:

3.1 Service Provision

  • Provide, maintain, and improve our Service
  • Process your transactions and manage your subscription
  • Generate AI images and other content as requested
  • Provide customer support and respond to inquiries

3.2 Service Improvement

  • Analyze usage patterns to improve features and user experience
  • Develop new products, services, and features
  • Conduct research and testing (using anonymized data)

3.3 Communications

  • Send transactional emails (receipts, account updates, security alerts)
  • Send marketing communications (with your consent, which you can withdraw anytime)
  • Respond to your requests and provide support

3.4 Safety and Legal Compliance

  • Detect, prevent, and address fraud, abuse, and security issues
  • Enforce our Terms of Service and Acceptable Use Policy
  • Comply with legal obligations and respond to lawful requests

4. AI Model Training

We do not use your User Content to train our AI models by default. Your generated images, uploaded files, and prompts are not incorporated into our training datasets unless you explicitly opt-in to our optional AI Improvement Program.

If you choose to participate in our AI Improvement Program, your contributions will be used to enhance model quality for all users. You can opt-out at any time through your account settings.

5. How We Share Your Information

We do not sell your personal information. We may share your information in the following circumstances:

5.1 Service Providers

We work with third-party companies to help us operate and improve the Service, including:

  • Cloud Infrastructure: Amazon Web Services, Google Cloud Platform
  • Payment Processing: Stripe (PCI-DSS compliant)
  • Analytics: Google Analytics, Mixpanel (anonymized data)
  • Customer Support: Intercom
  • Email Services: SendGrid, Resend

These providers are bound by contractual obligations to protect your data and use it only for the purposes specified.

5.2 Legal Requirements

We may disclose your information if required by law or in response to valid legal requests, such as subpoenas, court orders, or government investigations.

5.3 Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of the transaction. We will notify you of any such change and your options.

5.4 With Your Consent

We may share your information with third parties when you have given us explicit consent to do so.

6. Cookies and Tracking Technologies

We use cookies and similar technologies to enhance your experience, analyze usage, and deliver personalized content. Types of cookies we use:

  • Essential Cookies: Required for the Service to function (authentication, security)
  • Analytics Cookies: Help us understand how users interact with the Service
  • Preference Cookies: Remember your settings and preferences
  • Marketing Cookies: Used to deliver relevant advertisements (only with consent)

You can manage cookie preferences through your browser settings or our cookie consent tool. Note that disabling certain cookies may affect functionality.

7. Data Retention

We retain your information for as long as necessary to provide the Service and fulfill the purposes described in this policy:

  • Account Data: Retained while your account is active and for 30 days after deletion
  • User Content: Retained while your account is active; deleted within 30 days of account deletion
  • Usage Logs: Retained for up to 12 months for security and analysis
  • Payment Records: Retained as required by law (typically 7 years for tax purposes)

8. Your Rights

Depending on your location, you may have the following rights regarding your personal information:

8.1 Access and Portability

You can request a copy of the personal data we hold about you in a portable format.

8.2 Correction

You can update your account information at any time through your account settings or by contacting us.

8.3 Deletion

You can request deletion of your account and associated data. Some information may be retained as required by law or for legitimate business purposes.

8.4 Restriction and Objection

You can request that we limit processing of your data or object to certain types of processing.

8.5 Withdraw Consent

Where processing is based on consent, you can withdraw that consent at any time.

To exercise any of these rights, contact us at privacy@mockingbirdai.app. We will respond within 30 days.

9. GDPR Compliance (EEA Users)

If you are located in the European Economic Area (EEA), you have additional rights under the General Data Protection Regulation (GDPR):

  • Legal Basis: We process your data based on consent, contract performance, legitimate interests, or legal obligations
  • Data Transfers: When transferring data outside the EEA, we use Standard Contractual Clauses or other approved mechanisms
  • Supervisory Authority: You have the right to lodge a complaint with your local data protection authority

10. CCPA Compliance (California Residents)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):

  • Right to Know: Request disclosure of categories and specific pieces of personal information collected
  • Right to Delete: Request deletion of personal information (with certain exceptions)
  • Right to Opt-Out: We do not sell personal information, so this right does not apply
  • Non-Discrimination: We will not discriminate against you for exercising your privacy rights

11. Children Privacy

The Service is not intended for users under 18 years of age. We do not knowingly collect personal information from children. If we become aware that we have collected data from a child, we will delete it promptly.

12. Security

We implement industry-standard security measures to protect your information:

  • Encryption of data in transit (TLS 1.3) and at rest (AES-256)
  • Regular security audits and penetration testing
  • Access controls and employee training
  • Incident response procedures

While we strive to protect your data, no method of transmission or storage is 100% secure. We cannot guarantee absolute security.

13. International Data Transfers

Your information may be transferred to and processed in countries other than your own. These countries may have different data protection laws. We ensure appropriate safeguards are in place, including Standard Contractual Clauses, to protect your information.

14. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by email or through the Service at least 30 days before they take effect. Your continued use of the Service after changes become effective constitutes acceptance of the updated policy.

15. Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us: