Privacy Policy
Effective date: August 8, 2026
This policy covers qart.uk. thinkwith.pictures has its own policy; signing in on one does not sign you in on the other.
What we collect
- Account identity. Signing in with Discord gives us your Discord user ID and username. Signing in with Google gives us your Google account identifier and first name. We do not request or store your email address from either provider — if you email support, we have that address only because you sent it.
- What you create. The codes you claim, the destinations you point them at, the payloads and prompts you submit, images generated for you, and any image you upload to guide generation.
- Purchase records. Which credit pack you bought, when, the amount, and a Stripe identifier. We never see or store your card number — Stripe handles the card.
- Usage records. Your credit balance and its transaction history, generation runs and their status, daily allowance counters, and an approximate scan count per code.
- Technical data. Standard server logs including IP address and browser user-agent, collected by our host Cloudflare, used for security, abuse prevention, and debugging.
Scan data
When someone scans one of your codes we increment a counter so you can see roughly how often it has been used. The count is deliberately approximate — responses are cached, so bursts undercount. We do not build a profile of the person scanning, and we do not give you their identity, location, or device.
How we use it
- To run the service: resolving your codes, generating images, tracking your balance.
- To process payments, through Stripe.
- To enforce allowances and prevent abuse.
- To answer you when you contact support.
We do not use your prompts, uploads, or generated images to train our own models, and we do not sell your data.
Who else sees it
- Cloudflare — hosting and network. Handles all traffic.
- Modal — the GPU infrastructure that generates images. Receives your payload and prompt, and any image you upload, solely to produce your result.
- OpenRouter — used for some image-editing actions, on the same basis.
- Stripe — payment processing. Receives what it needs to take the payment.
- Discord / Google — only as your sign-in provider, at the moment you sign in.
We may also disclose information where legally required, or to investigate abuse of the service.
What is public
A claimed code's destination is public by nature: anyone who scans the code follows it. Your account identity is not attached to a code, and we do not publish who owns what.
Retention
Account and purchase records are kept while your account exists; purchase records may be kept longer where tax or accounting rules require it. Generated images you do not explicitly keep are deleted after about 30 days. Runs and their billing records are pruned after about 180 days once they hold nothing you kept.
Your choices
You can retarget or retire any code you own at any time. You can ask us to delete your account and its content by emailing support@qart.uk. Deleting your account disables your codes — anything already printed stops working — and forfeits unspent credits.
Depending on where you live you may have rights to access, correct, export, or erase your personal data. Email us and we will action it.
Cookies
One strictly functional cookie keeps you signed in. No advertising cookies and no third-party tracking cookies. We use privacy-preserving aggregate analytics that do not profile individual visitors.
Children
qart.uk is not intended for under-13s, and purchases require you to be 18 or older.
Changes and contact
We will update this page and its effective date if this policy changes. Questions: support@qart.uk.