Effective date: 3 October 2026
This policy explains what personal data RobloxCraft AI (the "Service") collects, why, who receives it and what rights you have. The controller of your data is [OPERATOR_NAME], [OPERATOR_STATUS], [ADDRESS], [COUNTRY]. Contact for privacy questions: [SUPPORT_EMAIL].
We collect as little as we need to run the Service. We do not sell personal data, show ads or use analytics or advertising trackers.
| What | Details | Why |
|---|---|---|
| Account | Email address, sign-up and last sign-in time, plan and account status | To sign you in and provide your account |
| Sign-in | One-time sign-in links (stored only as a hash, valid 15 minutes, single use); a sign-in cookie | To keep you signed in securely |
| Guest session | A random session token stored in your browser | To keep your work if you use the Service without an account |
| Access request | During the closed beta: email, name, what you want to build, age and privacy confirmations | To review requests and tell you when access is open |
| Your content | Prompts, reference images, generated scripts, models and animations, versions and edit requests | To generate results and keep your work |
| Usage and credits | Which actions you run, credits spent and bought, estimated provider costs | To count credits, enforce limits and prevent abuse |
| Payments | Subscription status, plan, Paddle customer and subscription IDs. Card and billing details are handled by Paddle and never reach us | To link your purchases to your account |
| Moderation | For blocked requests: category, a short excerpt, time and a hashed session ID; reports you send about results | To prevent harmful content and abuse |
| Technical | IP address, browser type, request times; a token that links the Roblox Studio plugin to your session | Security, rate limiting, troubleshooting and plugin sync |
In your browser we store your language, theme, whether you have seen the welcome tour, and a local cache of your works (localStorage and IndexedDB). This data stays on your device.
We share data only with providers that help us run the Service:
| Recipient | Purpose | Location |
|---|---|---|
| [HOSTING_PROVIDER] | Servers and database | [HOSTING_LOCATION] |
| Paddle (Paddle.com Market Ltd) | Payments, invoices and taxes as Merchant of Record; Paddle is an independent controller for payment data | UK / USA |
| Google (Gemini, Imagen) | Generating scripts, text and concept images from your prompt | USA / worldwide |
| Zhipu AI (GLM) | Generating scripts from your prompt | China |
| fal.ai (TRELLIS) | Generating 3D models from concept images | USA |
| Tripo3D, Meshy | Generating 3D models (backup providers) | China, USA |
| [EMAIL_PROVIDER] | Sending sign-in emails | [EMAIL_LOCATION] |
| Bunny Fonts, cdnjs (Cloudflare), jsDelivr, esm.sh | Fonts and code libraries loaded by your browser; they see your IP address | EU / worldwide |
AI providers receive the content of your request (prompt and, for 3D, the image), not your email. Which provider handles a request depends on the action and on availability. Where a provider offers it, we ask it not to store request data (for example, fal.ai requests are sent with storage disabled), and we prefer API options that exclude training on submitted data. Each provider processes data under its own terms and privacy policy.
Some recipients are outside the EEA/UK. Where required, transfers are protected by safeguards such as the European Commission's Standard Contractual Clauses.
We may disclose data if required by law or to protect the rights and safety of users and the Service.
When you delete your account, your account, works and files are deleted straight away. Usage and credit records are kept for accounting without any link to you.
The Service is not intended for children under 13. Children under 13 may use it only together with a parent through the parent's account. In the EEA/UK, users under 16 need a parent's consent. Only adults can make purchases. If you believe a child under 13 has given us personal data without a parent's involvement, contact us and we will delete it.
We use one necessary cookie, rc_auth, which keeps you signed in (HttpOnly, 30 days). We do not use analytics or advertising cookies, so no cookie banner is needed. When you pay, Paddle's checkout may set its own cookies under Paddle's policy.
Connections are encrypted (HTTPS). Sign-in links are stored only as hashes. API keys you save in the Service are encrypted (AES-256-GCM). Access to the admin tools is limited to authorised administrators.
Depending on where you live, you can ask to access, correct, delete or export your data, restrict or object to processing, and withdraw consent. In Settings → Account you can download all your data and delete your account yourself at any time. For anything else, write to [SUPPORT_EMAIL] from the email address of your account; we answer within 30 days. You can also complain to your local data protection authority.
We may update this policy. For material changes we will give notice on the site or by email before they take effect.
[OPERATOR_NAME], [ADDRESS], [COUNTRY] · [SUPPORT_EMAIL]