Privacy Notice

Last updated: 5/1/2026

1. Who we are

This Privacy Notice describes how IdeaBank.ai ("IdeaBank.ai", "we", "us") collects and uses personal data when you use our website and Service. IdeaBank.ai acts as the data controller for personal data we collect about you in connection with the Service.

2. Personal data we collect

  • Account data — name, email address, login credentials, profile information.
  • Content — ideas, prompts, projects, notes, and other inputs you submit, and outputs we generate for you.
  • Support data — messages you send us and any attachments.
  • Usage and telemetry — pages viewed, features used, timestamps, errors, and device information.
  • Device and network data — IP address, browser, operating system, and approximate location derived from IP.
  • Cookies — see Section 9 below.

Payment data (card details, billing address, tax information) is collected and processed by our Merchant of Record, Paddle, and is not stored by us.

3. How we use your data and legal basis

  • To provide the Service (account creation, generating outputs, storing your projects) — performance of a contract.
  • To secure the Service and prevent fraud or abuse — legitimate interests and legal obligation.
  • To improve the Service (analytics, debugging, product development) — legitimate interests.
  • To provide customer support — performance of a contract and legitimate interests.
  • To send service communications and, where you opt in, marketing — legitimate interests or consent.
  • To comply with legal obligations — legal obligation.

4. Data sharing

We share personal data with the following categories of recipients:

  • Service providers and subprocessors — hosting, database, AI model providers, analytics, error tracking, email, and customer support tools that help us operate the Service.
  • Paddle, our Merchant of Record, for the sale of subscriptions, payment processing, subscription management, tax compliance, invoicing, and refund handling.
  • Professional advisers — legal, accounting, and similar advisers under duties of confidentiality.
  • Authorities — where required by law, regulation, court order, or to protect rights, property, or safety.
  • Successors — in connection with a merger, acquisition, or sale of assets.

We do not sell your personal data.

5. International transfers

Your data may be processed outside your country, including in countries outside the UK or EEA. Where we transfer personal data internationally, we rely on appropriate safeguards such as Standard Contractual Clauses or adequacy decisions.

6. Data retention

We retain personal data only for as long as necessary to provide the Service, comply with our legal obligations, resolve disputes, and enforce our agreements. When data is no longer needed it is deleted or anonymised.

7. Your rights

Depending on your location you may have rights to access, correct, delete, restrict, or port your personal data, to object to certain processing, and to withdraw consent at any time. UK and EEA users also have the right to lodge a complaint with their local data protection authority. We will respond to verified requests within the timeframe required by law (within one month under GDPR).

8. Security

We implement appropriate technical and organisational measures to protect personal data, including encryption in transit, access controls, and least-privilege principles. No method of transmission or storage is fully secure; we cannot guarantee absolute security.

9. Cookies

We use essential cookies required to operate the Service (e.g. for authentication and session management) and may use analytics cookies to understand how the Service is used. Where required by law, we ask for your consent before setting non-essential cookies. You can manage cookie preferences in your browser.

10. Children

The Service is not directed to children under the age required by law in their jurisdiction. We do not knowingly collect personal data from children.

11. Changes to this notice

We may update this Privacy Notice from time to time. The "Last updated" date above shows when changes took effect.

12. Contact

For privacy questions or to exercise your rights, contact us via the support contact listed in the Service.