Privacy Policy

Last updated: January 2026

ShotPro ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use our AI-powered ad teardown service.

1. Information We Collect

Account Information

When you create an account, we collect your email address, name, and profile image through our authentication provider, Clerk. This information is necessary to provide you with access to our service.

Generated Content

We store the ad creatives generated for your teardowns, the product URLs you submit, and any reference photos you upload. This content is associated with your account and is necessary to provide the service.

Usage Data

We collect information about how you use our service, including generation history, credits used, feature usage, and interaction patterns. This helps us improve our service and provide you with accurate billing.

Technical Data

We automatically collect certain technical information when you visit our website, including your IP address, browser type and version, device information, and referring URLs. This data is used for security, analytics, and to improve our service.

Payment Information

Payment processing is handled entirely by Stripe. We do not store your credit card details. We only receive confirmation of successful payments and billing details from Stripe.

2. How We Use Your Information

  • Provide the Service: Run teardowns and generate brand-faithful ad creatives from your product URL
  • Process Payments: Handle one-time Teardown Pack purchases through Stripe
  • Improve Our Service: Analyze usage patterns to enhance features and user experience
  • Send Notifications: Email you about account activity, billing, and important service updates
  • Customer Support: Respond to your inquiries and resolve issues
  • Marketing Attribution: With your consent, track advertising effectiveness through Meta/Facebook to improve our marketing
  • Security: Detect and prevent fraud, abuse, and security threats

3. Legal Basis for Processing (GDPR)

For users in the European Economic Area (EEA), United Kingdom, and Switzerland, we process your personal data under the following legal bases:

  • Contract Performance (Art. 6(1)(b) GDPR): Processing necessary to provide our service, including account management, image generation, and payment processing
  • Legitimate Interests (Art. 6(1)(f) GDPR): Service improvement, security, fraud prevention, and analytics. You can object to processing based on legitimate interests.
  • Consent (Art. 6(1)(a) GDPR): Marketing cookies, advertising attribution (Meta/Facebook), and marketing communications. You can withdraw consent at any time.
  • Legal Obligation (Art. 6(1)(c) GDPR): Retention of payment records for tax and accounting compliance

4. Cookies and Tracking Technologies

We use cookies and similar tracking technologies on our website:

Essential Cookies (Always Active)

Required for the website to function. Includes session cookies for authentication (__session) and preference cookies. These cannot be disabled.

Analytics Cookies (With Consent)

We use PostHog to understand how users interact with our service. PostHog collects anonymized usage data to help us improve features. Data is processed in the EU.

Marketing Cookies (With Consent)

We use Meta/Facebook tracking cookies (_fbc, _fbp) to measure advertising effectiveness and attribute conversions. These cookies help us understand which ads bring users to our service. You can opt out at any time through our cookie settings.

You can manage your cookie preferences at any time through the cookie settings in the footer of our website. Note that disabling certain cookies may affect your experience.

5. Third-Party Services

We use the following third-party services to operate ShotPro:

Clerk

Authentication and user management. Processes email, name, and profile data. See Clerk's Privacy Policy.

Stripe

Payment processing for one-time purchases. Processes payment and billing information. See Stripe's Privacy Policy.

Google (Gemini AI)

AI image generation for teardown creatives. Your product URLs and reference images are sent to Google for processing. Google does not use this data for training without explicit consent. See Google's Privacy Policy and Data Processing Terms.

PostHog

Product analytics to understand usage patterns. Data is processed in the EU. See PostHog's Privacy Policy.

Meta/Facebook (Conversions API)

With your consent, we share hashed email, IP address, and conversion data with Meta to measure advertising effectiveness. See Meta's Privacy Policy.

6. International Data Transfers

Your data may be transferred to and processed in the United States by our service providers. For transfers from the EEA, UK, and Switzerland, we rely on:

  • The EU-US Data Privacy Framework (for certified US companies)
  • Standard Contractual Clauses (SCCs) approved by the European Commission
  • UK International Data Transfer Agreement (IDTA) where applicable

You can request a copy of the relevant safeguards by contacting us at privacy@shotpro.app.

7. Data Storage and Security

Your data is stored securely using industry-standard practices:

  • Account data is stored in an encrypted database
  • Generated images and reference photos are stored on secure servers
  • All data transmission uses HTTPS/TLS encryption
  • Access to production systems is restricted and logged
  • We conduct regular security reviews and updates
  • We do not sell, rent, or share your personal data with third parties for their marketing purposes

8. Your Rights

Under GDPR and other privacy laws, you have the following rights:

  • Right of Access (Art. 15 GDPR): Request a copy of your personal data
  • Right to Rectification (Art. 16 GDPR): Correct inaccurate or incomplete data
  • Right to Erasure (Art. 17 GDPR): Request deletion of your data ("right to be forgotten")
  • Right to Restriction (Art. 18 GDPR): Limit how we process your data
  • Right to Data Portability (Art. 20 GDPR): Receive your data in a machine-readable format. Use the export feature in Settings to download your data.
  • Right to Object (Art. 21 GDPR): Object to processing based on legitimate interests or for direct marketing
  • Right to Withdraw Consent: Withdraw consent at any time for consent-based processing (e.g., marketing cookies)
  • Right to Lodge a Complaint: File a complaint with your local data protection authority

Supervisory Authorities:
• UK: Information Commissioner's Office (ICO) - ico.org.uk
• Ireland: Data Protection Commission - dataprotection.ie
• EU: Contact your local data protection authority

To exercise your rights, contact us at privacy@shotpro.app. We will respond within 30 days (or as required by applicable law).

9. Data Retention

We retain your data for the following periods:

  • Account Data: Retained while your account is active. Deleted within 30 days of account deletion request.
  • Generated Content: Retained until you delete them or close your account
  • Reference Photos: Retained until you delete them or close your account
  • Payment Records: Retained for 7 years as required by tax and accounting laws
  • Usage Logs: Retained for 90 days for security and debugging
  • Analytics Data: Aggregated and anonymized after 26 months

10. Children's Privacy

ShotPro is not intended for use by children under 18 years of age. We do not knowingly collect personal information from children under 18. If you believe we have collected information from a child, please contact us immediately at privacy@shotpro.app and we will delete it.

11. Automated Decision-Making

We do not use automated decision-making or profiling that produces legal or similarly significant effects on you. AI is used solely to generate ad creatives for your teardown requests.

12. Changes to This Policy

We may update this Privacy Policy to reflect changes in our practices or legal requirements. For material changes, we will notify you by email or through a prominent notice on our website before the changes take effect. Your continued use of the service after changes constitutes acceptance of the updated policy.

13. Contact Us

If you have questions about this Privacy Policy or want to exercise your data rights, contact us:

Email: privacy@shotpro.app
Data Protection Inquiries: dpo@shotpro.app