Privacy Policy

Last updated: January 6, 2025

1. Introduction

ChromaSpec ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered vehicle wrap visualization service ("Service"). Please read this policy carefully. By using the Service, you consent to the practices described in this Privacy Policy.

2. Information We Collect

2.1 Information You Provide

  • Account Information: Name, email address, and business information when you create an account
  • Vehicle Images: Photos you upload for wrap visualization
  • Customer Data: Information about your customers that you enter into the system
  • Payment Information: Billing details processed through our payment provider (Stripe)
  • Communications: Messages you send to us for support or feedback

2.2 Information Collected Automatically

  • Usage Data: Pages visited, features used, time spent on the Service
  • Device Information: Browser type, operating system, device identifiers
  • Log Data: IP address, access times, referring URLs
  • Cookies: Session cookies for authentication and preference storage

3. How We Use Your Information

We use the information we collect to:

  • Provide, maintain, and improve the Service
  • Process your AI-powered wrap visualizations
  • Process payments and manage subscriptions
  • Send transactional emails (account confirmations, invoices, etc.)
  • Respond to your comments, questions, and support requests
  • Monitor and analyze usage patterns to improve user experience
  • Detect, prevent, and address technical issues and security threats
  • Comply with legal obligations

4. AI Processing

When you upload vehicle images for visualization:

  • Images are processed by AI models to generate wrap visualizations
  • Images are stored securely for your access and future renders
  • We do not use your images to train AI models without explicit consent
  • Generated visualizations are associated with your account

5. Data Sharing and Disclosure

We may share your information in the following circumstances:

  • Service Providers: With third parties who perform services on our behalf (cloud hosting, payment processing, analytics)
  • AI Providers: With AI service providers for image processing (data is processed under strict data processing agreements)
  • Legal Requirements: When required by law or to respond to legal process
  • Business Transfers: In connection with a merger, acquisition, or sale of assets
  • With Your Consent: When you direct us to share information

We do not sell your personal information to third parties.

6. Data Retention

We retain your information for as long as your account is active or as needed to provide services. Uploaded images and visualizations are retained for the duration of your subscription plus 30 days. After account deletion, we may retain certain information as required by law or for legitimate business purposes. You may request deletion of your data by contacting us.

7. Data Security

We implement appropriate technical and organizational security measures to protect your information, including:

  • Encryption of data in transit (TLS/SSL) and at rest
  • Regular security assessments and updates
  • Access controls and authentication mechanisms
  • Secure cloud infrastructure (AWS/Google Cloud)

However, no method of transmission over the Internet is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.

8. Your Rights and Choices

Depending on your location, you may have the following rights:

  • Access: Request a copy of the personal information we hold about you
  • Correction: Request correction of inaccurate personal information
  • Deletion: Request deletion of your personal information
  • Portability: Request a machine-readable copy of your data
  • Objection: Object to certain processing of your information
  • Withdrawal: Withdraw consent where processing is based on consent

To exercise these rights, please contact us at [email protected].

9. Cookies and Tracking

We use cookies and similar technologies to:

  • Keep you signed in to your account
  • Remember your preferences
  • Understand how you use our Service
  • Improve our Service based on usage patterns

You can control cookies through your browser settings. Note that disabling cookies may affect functionality of the Service.

10. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws. When we transfer information internationally, we implement appropriate safeguards in accordance with applicable law, such as standard contractual clauses.

11. Children's Privacy

The Service is not intended for individuals under the age of 18. We do not knowingly collect personal information from children. If we learn that we have collected personal information from a child, we will take steps to delete such information promptly.

12. Third-Party Services

Our Service integrates with the following third-party services:

  • Stripe: Payment processing
  • Google Cloud / AI Services: Image processing and AI generation
  • AWS / Cloud Storage: Data and image storage
  • Auth0 / Authentication: User authentication

These services have their own privacy policies, and we encourage you to review them.

13. California Privacy Rights (CCPA)

If you are a California resident, you have specific rights regarding your personal information under the California Consumer Privacy Act (CCPA), including the right to know what personal information we collect, request deletion, and opt-out of sale of personal information (we do not sell personal information). To exercise these rights, contact us at [email protected].

14. European Privacy Rights (GDPR)

If you are in the European Economic Area (EEA), you have rights under the General Data Protection Regulation (GDPR). Our legal bases for processing include: performance of contract, legitimate interests, compliance with legal obligations, and consent. You have the right to lodge a complaint with your local data protection authority.

15. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the new Privacy Policy on this page and updating the "Last updated" date. We encourage you to review this Privacy Policy periodically.

16. Contact Us

If you have questions or concerns about this Privacy Policy or our data practices, please contact us at:

Email: [email protected]

For data protection inquiries in the EU, you may also contact our Data Protection Officer at [email protected].