This Privacy Policy describes how Happique ("we", "us", or "our") collects, uses, and shares information about you when you use our applications, website, and services (collectively, the "Services"), including the Happique Android app (package com.happique.sweets.chat). Contact the developer responsible for these Services at [email protected]. This policy explains our data practices; it does not replace permission requests or consent where required.
To close your account or request removal of personal data, see Request Account and Data Deletion.
1. Information We Collect
Account Information
When you sign in using email or a supported sign-in provider (currently Discord), or edit your profile, we process:
- Your display name and username
- Your email address
- Your profile avatar/image
- OAuth provider identifiers (we do not store your provider password)
- Account IDs, authentication sessions and verification records. Email sign-in codes are stored in hashed form. Existing password accounts use hashed passwords, not plain-text passwords.
Generation Data
When you use our AI generation features, we collect:
- Text prompts and parameters you provide for image/video generation
- Metadata about generated outputs (dimensions, file size, model used, generation seed)
- Images, videos and other files you choose to upload, including photos of people when you use them as references
- Generated images and videos, job status and generation history
Generation runs on servers. Submitted prompts, selected files or file URLs and generation settings are sent to the AI service used for your request. Do not submit private information about other people or media you are not authorized to use.
Support Messages and Access Requests
When you submit a message, we store your name, email, subject, message, requested resource and, if signed in, your account ID. We also record the browser user agent, language, time zone, viewport size, page path and IP address reported by our network proxy when available. Authorized administrators use this information to handle support and access requests and prevent abuse. Submitting a request does not automatically grant access. Contact [email protected] about your submitted data.
Safety and Account Requests
AI safety reports include the reporting account, the reported AI result, reason, optional explanation and handling record. We store these reports and account-deletion requests to investigate unsafe outputs and carry out deletion. Authorized staff can access the relevant result and prompt. Happique does not provide creator reporting or creator blocking.
Usage Data
We automatically collect certain information when you use the Services:
- Device information (device name, brand, model, operating system, app version and build), language, region and time zone
- An app-generated device ID, a hash derived from device attributes, account associations and session information
- Push notification tokens, notification permission status and your notification preferences
- Feature usage patterns (which modules you use, generation frequency)
- Credit and quota consumption records
- Crash reports, error stack traces, diagnostic breadcrumbs and sampled performance traces. These reports can include your account ID, email, username, session ID and device context. Servers and service providers also receive network information such as your IP address.
Payment Information
Where purchases are available, payment processing is handled by the payment provider for that distribution channel. Our website and supported direct-distribution builds use Dodo Payments. The current Google Play build does not offer purchases inside the app. It can display existing account entitlements, balances and purchase history. We retain transaction references, plan details, status, amount and dates for account management and support; full card details are handled by the payment provider.
2. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Services
- Process your AI generation requests and deliver results to you
- Manage your account, subscriptions, and credit/quota balances
- Communicate with you about the Services, including support inquiries, service updates, and (with your consent) marketing communications
- Detect, prevent, and address technical issues and abuse
- Comply with legal obligations and enforce our Terms of Service
AI processing and any provider retention are subject to the provider and configuration used for the selected model. This policy does not promise that every external provider has zero retention or identical training policies. Contact us before submitting sensitive content if you need information about the provider used for a particular model.
3. Data Storage & Security
We use the following infrastructure and safeguards:
- Database: Account and generation metadata is stored in PostgreSQL databases.
- File Storage: Generated images, videos, and uploaded files are stored in object storage, including Cloudflare R2. Media delivery URLs may be accessible to anyone who receives the URL; do not treat a file URL as a private vault.
- Transit: Our production app connects to our service over HTTPS.
- Access Control: Access to user data is restricted to authorized personnel for operating and supporting the Services.
While we implement commercially reasonable security measures, no method of electronic storage or transmission is 100% secure. We cannot guarantee absolute security of your data.
4. Third-Party Services
We share information with the following categories of third-party service providers to operate the Services:
- Authentication: Discord (for OAuth login). Subject to Discord's Privacy Policy.
- Cloud Infrastructure: Cloudflare (CDN, R2 storage, Workers). Subject to Cloudflare's Privacy Policy.
- AI Model Providers: Third-party AI model APIs used for image and video generation receive the prompts, input media or media URLs and settings required for a request. The provider depends on the model and service configuration. Providers may process data in countries other than your own.
- Diagnostics: The Sentry React Native SDK sends error and performance information to our configured GlitchTip endpoint at glitchtip.asppj.top, including the identifiers described above.
- Notifications: Google Firebase Cloud Messaging processes push tokens and notification payloads to deliver Android notifications. Email delivery providers process your email address and messages such as sign-in codes.
- Payment Processing: Third-party payment processors handle subscription and credit transactions. We do not store complete payment card numbers.
Happique discovery displays system-provided templates, not user posts. Happique does not provide public creation publishing or content-sharing buttons. Your creation history is accessible through your own account. Media delivery URLs may still be accessible to anyone who possesses the URL; removing sharing features does not make those URLs access-controlled. You can save results to your device. Copies you distribute outside the app are outside our control. Information may also be disclosed when required by law or necessary to address fraud, abuse or security incidents. We do not sell personal and sensitive user data.
5. Device Permissions & Choices
- Photos, videos and camera: Used when you select or capture reference media, update an avatar, or save a result to your device. Selected media is uploaded when you submit it to a feature that requires server processing. Granting permission alone does not mean your entire photo library is uploaded.
- Notifications: Used for generation updates and the notification categories you enable. You can change preferences in the app and revoke notification permission in Android settings.
- Local storage: Stores sign-in tokens, language and notification preferences, app-generated device identifiers and caches.
You can revoke device permissions in system settings. Features requiring a revoked permission may stop working, but revoking permission does not delete information already sent to our servers. Use the deletion request process below for server-side data.
6. Cookies
We use cookies and similar technologies to maintain your session, remember your selected preferences, and store your consent choice. Through Google Tag Manager, and with your permission, the website uses Google Analytics 4 to measure visits to public pages. Google receives browser and connection information; we do not send account details, user content or URL query parameters in our page events. Google Ads is disabled by default. When enabled and separately accepted, advertising tags may process ad-click identifiers and use cookies for conversion measurement and personalized advertising. Analytics consent alone does not authorize advertising. You can withdraw analytics consent using “Cookie settings” at any time. Google may process data outside your country; see Google’s privacy policy. For details and cookie lifetimes, see our Cookie Policy.
7. Data Retention
We retain your information as follows:
- Account data: Retained as long as your account is used to provide your account and its associated services. You may request account deletion at any time using the process below.
- Uploaded and generated content: Stored to provide generation history and media delivery. Removing an item from your gallery does not necessarily erase all source files, job records, cached copies or backups immediately. You can request deletion of associated files as well as gallery entries.
- Billing, support and security records: Retention depends on the transaction, unresolved request, fraud-prevention need and applicable legal obligations. Records needed for these purposes may be retained after account deletion.
- Diagnostics, caches and backups: Retention depends on the service configuration and backup cycle. These copies may not disappear at the same time as data in the active application.
8. Your Rights
Depending on your location, you may have certain rights regarding your personal information:
- Access: Request a copy of the personal information we hold about you.
- Correction: Request correction of inaccurate or incomplete information.
- Deletion: Request deletion of your personal information and account.
- Data Portability: Request your data in a machine-readable format.
- Opt-Out: Opt out of marketing communications at any time.
- Restriction: Request restriction of processing of your personal information.
To exercise any of these rights, please contact us at [email protected]. We will review the request, verify account ownership where needed and explain the steps, expected completion time and any information that must be retained. Applicable legal response deadlines still apply.
Depending on your location, you may also have rights to object to processing, withdraw consent or complain to a data protection authority. Withdrawing consent does not affect processing that was lawful before withdrawal.
9. Request Account and Data Deletion
In the Happique app, open Profile, Account Settings, then Delete account, then Continue on website. Review and submit your request on this page. Happique uses one shared account for Web and the app: deletion affects both platforms, including access to creations, credits and purchased benefits. This is not an app-only data reset. Once your request is accepted, your account is disabled immediately. Business data is normally removed within 30 days after verification. Necessary payment records remain linked to a de-identified, non-login accounting record.
Alternatively, to request deletion of your Happique account and associated data, email [email protected] with the subject "Happique account deletion". Send the request from your registered email address when possible, and identify the account you want deleted. You do not need to reinstall the app to make this request. Never send your password or a sign-in verification code.
The request covers your account profile, authentication sessions, uploaded and generated media, generation records and linked device and notification records. You may also request deletion of specific content without closing your account. We may need to verify ownership before acting on the request.
If information must be retained for legal, accounting or security reasons, we will explain the categories, reason and applicable retention period when handling your request. Cached or backup copies and data processed by external providers may require separate removal steps. Uninstalling the app or signing out does not delete your account. Account deletion does not automatically cancel a subscription managed by an external payment provider; contact support for help with both.
10. Children's Privacy
The Services are not intended for children under the age of 13 (or the applicable age of consent in your jurisdiction). We do not knowingly collect personal information from children. If we learn that we have collected personal information from a child, we will take steps to delete it promptly. If you believe a child has provided us with personal information, please contact us at [email protected].
11. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify you by updating the "Last updated" date at the top of this page and, where appropriate, by sending you a notification through the Services or via email. Your continued use of the Services is subject to the updated policy. We will request additional consent where required for changes to data processing.
12. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us:
- Email: [email protected]
- General inquiries: [email protected]
- Contact form: happique.sweets.chat/contact