Privacy Policy

Last updated: May 2026

Data Protection
Encryption
Transparency
Compliance

At BrandLab, we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered brand and content platform.

Information We Collect

We collect information you provide directly to us, including:

  • Account information (name, email address, password or Google OAuth token)
  • Business information you enter or import — website URLs, brand kit data, product details, and uploaded assets (logos, images)
  • Content you generate or save on the platform — posts, research reports, scheduled tasks, and content library items
  • Payment and billing information processed through Stripe, PayPal, Razorpay, or Dodo Payments
  • Optional OpenRouter API key if you choose to supply your own
  • Usage data and analytics (pages visited, features used, errors encountered)

How We Use Your Information

We use the information we collect to:

  • Provide, operate, and improve BrandLab features — including Brand DNA generation, content creation, product import, and research reports
  • Process your purchases and credit transactions
  • Run scheduled content tasks and automated workflows on your behalf
  • Send transactional emails, security notices, and platform updates
  • Respond to your support requests and questions
  • Analyse aggregate usage patterns to improve the platform

Third-Party Services

BrandLab integrates with the following third-party services to deliver its features. Your data may be transmitted to these services as required to provide functionality:

  • OpenRouter — routes your content and research prompts to LLM providers (Anthropic Claude, OpenAI GPT, Google Gemini)
  • Perplexity Sonar — performs live web research for Research reports
  • Image generation providers — Google Gemini, Black Forest Labs FLUX, Sourceful Riverflow, OpenAI Image models
  • Uploadthing — stores uploaded assets such as logos and images
  • Payment gateways — Stripe, PayPal, Razorpay, Dodo Payments process billing information
  • Google OAuth — used if you sign in with Google

We do not sell your personal data to third parties.

Data Security

We implement industry-standard security measures to protect your personal information. All data is encrypted in transit. Access to your account is protected by JWT-based authentication.

Data Retention

We retain your account data, business profiles, and generated content for as long as your account is active. You can delete a business and its associated content at any time from the Business settings page. To request full account deletion, contact us at the address below.

Your Rights

You have the right to:

  • Access and receive a copy of your data
  • Request correction of inaccurate data
  • Request deletion of your account and associated data
  • Opt out of non-transactional communications
  • Restrict or object to certain processing

Contact Us

If you have any questions about this Privacy Policy, please contact us at privacy@brandlab.app