Last updated: September 3, 2026
Privacy Policy
Canvas Studio builds AI Storybook: Bedtime Stories for parents and guardians who want to create personalized illustrated stories for their families. This policy explains what information the app processes, why it is processed, which service providers are involved, and how account deletion works.
Information we collect and process
The app processes information you provide, content created while you use the app, and technical information needed to operate accounts, purchases, generation, analytics, security, and support.
- Account information from Google or Apple Sign-In, such as provider account identifiers, email address, relay email, display name, and profile image when supplied.
- Photos, prompts, character names and details, story preferences, titles, genres, and other content you choose to submit.
- Generated story text, illustrations, story files, reading state, and saved books.
- Purchase records, Store transaction identifiers, product identifiers, subscription status, and story-credit balances used to verify and restore entitlements.
- App usage events, platform, app and device identifiers, approximate campaign attribution, diagnostics, error categories, and security or anti-abuse signals.
We do not require users to upload photos unless they want to create personalized content. User photos, prompts, and generated stories are not placed in a public gallery or sent as custom Analytics event parameters.
How we use information
We use information to provide, protect, measure, and improve AI Storybook: Bedtime Stories.
- Create personalized stories and illustrations requested by the user.
- Authenticate accounts and save, display, synchronize, deliver, or restore app content.
- Verify subscriptions, premium access, story packs, and purchase restoration.
- Measure app usage, feature performance, and Google or Meta campaign effectiveness.
- Improve reliability, diagnose errors, prevent fraud or abuse, and protect users.
- Respond to support requests and policy-related requests from users.
Storage and service providers
Information may be processed on your device and by service providers that operate the app. These providers receive only the information needed for their role.
- Local device storage, including application files and SQLite, stores downloaded or created stories, images, characters, and preferences.
- Supabase provides authentication, account databases, entitlement records, remote configuration, and server functions.
- Cloudflare Workers, R2, Queues, and Durable Objects process or store generation inputs, story assets, checkpoints, and delivery state needed to generate, retry, and deliver content.
- AI generation providers, including fal.ai and model providers accessed through OpenRouter, process photos, prompts, and generation instructions to create requested text and illustrations.
- Google Play and the Apple App Store process payments, subscription information, and Store transaction data.
- Firebase Analytics and Facebook App Events process the limited usage, device, and campaign-measurement data described below.
We do not sell uploaded photos, prompts, story text, or generated illustrations. We disclose the limited sharing of identifiers and events with Google and Meta for analytics and campaign measurement in the next section.
Analytics, advertising measurement, and tracking
Analytics collection is enabled in the Android and iOS apps and the app does not provide an Analytics toggle. We use Firebase Analytics for product and Google campaign measurement and Facebook App Events for Meta campaign measurement. These services may process app events, app-instance or device identifiers, purchase-conversion information, and an advertising identifier when platform permission and policy allow it.
- The Android app may display advertising and may use the Android advertising identifier, subject to applicable device, platform, and regional consent controls.
- The iOS app does not display ads.
- On iOS, App Tracking Transparency permission is requested before IDFA or cross-app campaign attribution is enabled.
- If iOS tracking permission is denied, restricted, unavailable, or not yet decided, IDFA collection and ad-related consent remain disabled. Aggregate Analytics remains active as permitted, and no app feature is removed.
- Custom Analytics events do not include raw photos, prompts, story text, character names, email addresses, authentication identifiers, provider tokens, image paths, or raw Store transaction identifiers.
Apple and Android device settings may provide additional controls over advertising identifiers and platform tracking permissions.
Retention and account deletion
We retain information for as long as needed to provide the app, complete generation and delivery, maintain security, verify Store entitlements, satisfy legal obligations, and resolve disputes. Content may be stored locally and in Cloudflare R2 while an account is active; temporary generation state may also remain while queued or retried work completes.
- You may use Delete Account in the app to start irreversible deletion of account-owned Supabase data, local app data, and account-owned R2 story objects.
- A deletion fence prevents queued generation work from recreating deleted account content. Server-side cleanup may continue securely after the app signs out.
- Published sample or Premium catalog assets owned by Canvas Studio are stored in a separate app-owned namespace without creator identity and are not restored as personal account content.
- A minimized, non-raw, HMAC-protected Store ownership ledger may be retained until the later of subscription expiry or 24 months after the latest Store event for entitlement, refund, fraud-prevention, and dispute purposes.
- Re-registering after deletion creates a new account; deleted stories, characters, credits, and other personal content are not restored.
Parents, guardians, and family content
The app is intended for parents and guardians creating content for their families. Parents or guardians should supervise its use, upload only photos and details they have the right and permission to use, and review generated content before sharing it outside the app.
Payments
Payments are processed through Google Play or the Apple App Store. AI Storybook does not collect or store full payment-card numbers, bank account details, or card security codes. Store-provided transaction data is verified server-side before subscriptions, premium access, or story credits are granted or restored.
Security
We use technical and organizational safeguards intended to protect information, including authenticated access, server-side purchase verification, scoped service credentials, and deletion controls. No storage or transmission method can be guaranteed completely secure.
Website storage and cookies
The mobile app does not rely on browser cookies for story creation. This landing page may use browser storage for display preferences and may use cookies or similar technologies for hosting, security, analytics, or Store-link measurement when those services are enabled.
Your choices and contact
You may manage local content in the app, use Restore Purchases for eligible Store entitlements, change Apple tracking permission or advertising-identifier settings through device settings, and use Delete Account for account deletion. For privacy, access, or deletion questions, contact canvastudio.ai@gmail.com.
Policy changes
We may update this Privacy Policy when the app, store requirements, legal requirements, or data practices change. The updated policy will show a new "Last updated" date. Where required, we will provide additional notice or request consent before materially different data processing begins.