Privacy Policy
1. Information We Collect
When you use Snap Headshot, we collect the following information:
- Account information: Your email address and password when you create an account.
- Uploaded photographs: The selfies you upload for headshot generation.
- Payment information: Payment is processed securely via Stripe. We do not store your full card details on our servers.
- Usage data: We collect anonymised usage statistics to improve our service, including page visits and feature usage.
2. How We Use Your Data
Your data is used solely to provide and improve the Snap Headshot service:
- To process your uploaded photos and generate AI headshots
- To manage your account and credits
- To process payments via Stripe
- To communicate with you about your orders and account
- To improve our AI models and service quality (using anonymised data only)
3. AI Processing
Your uploaded photographs are sent to our AI provider (Astria) for headshot generation. This processing is necessary to deliver the service you requested. Astria processes your images in accordance with their own privacy policy and does not use your photos to train their general AI models. Uploaded photos are used only for your specific generation session.
4. Data Retention
- Uploaded source photos are deleted from our servers within 30 days of headshot delivery.
- Generated headshots are stored in your account until you delete them or your account is closed.
- Account data is retained for as long as your account is active.
- Payment records are retained as required by UK financial regulations.
5. Third-Party Services
We use the following third-party services:
- Stripe: Secure payment processing. Stripe Privacy Policy
- Astria: AI image generation. Photos are processed under their data protection terms.
- PocketBase: Database and authentication hosted on our own servers.
6. Your Rights
Under UK GDPR, you have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your data (subject to legal obligations)
- Object to processing of your data
- Data portability — receive your data in a machine-readable format
- Withdraw consent at any time where processing is based on consent
To exercise any of these rights, contact us at legal@snapheadshot.net.
7. Cookies
We use essential cookies to maintain your session and authentication. We do not use advertising or tracking cookies. Essential cookies are necessary for the service to function and cannot be disabled.
8. Data Security
We implement industry-standard security measures to protect your data, including encrypted connections (TLS/SSL), secure password hashing, and restricted access to our servers. While no system is completely secure, we take reasonable steps to safeguard your information.
9. Children's Privacy
Our service is not intended for use by individuals under the age of 18. We do not knowingly collect data from children. If we become aware that we have collected data from a child under 18, we will delete it promptly.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by email or via a notice on our website. Your continued use of the service after changes are posted constitutes acceptance of the updated policy.
11. Contact
For any questions about this Privacy Policy or your data, contact us at: legal@snapheadshot.net
Last updated: April 2026