Privacy Policy
Last updated: April 28, 2026
1. Introduction
PINMAKR ("we," "our," or "us") operates the pinmakr.com website and platform. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered Pinterest and blog content creation service. By using PINMAKR, you agree to the collection and use of information in accordance with this policy.
2. Information We Collect
2.1 Account Information
When you create an account through our authentication provider (Clerk), we collect:
- Email address
- Name (if provided)
- Profile picture (if provided)
- Authentication identifiers
2.2 Content You Create
When you use our platform, we store:
- Blog post topics, outlines, and generated content
- Pin designs, headlines, subtitles, and images
- Brand kit settings (colors, domains, styling preferences)
- Project data and saved workflows
- Keywords and research queries
2.3 Pinterest Data
If you connect your Pinterest account, we may access:
- Your Pinterest username and profile information
- Board names and descriptions
- Pin publishing permissions (with your explicit authorization)
We do not store your Pinterest password. Authentication is handled via Pinterest's official OAuth 2.0 flow. We only retain Pinterest data for as long as needed to provide our services and comply with Pinterest's data retention policies.
2.4 Usage Data
We automatically collect:
- IP address (for rate limiting and security)
- Browser type and version
- Pages visited and features used
- API usage statistics
3. How We Use Your Information
We use collected information to:
- Provide and maintain our AI content generation services
- Generate blog posts, pin designs, and keyword research using AI
- Publish content to Pinterest on your behalf (when authorized)
- Save your projects and brand settings for future use
- Enforce rate limits and prevent abuse
- Improve our platform and user experience
- Send service-related communications
- Comply with legal obligations
4. Third-Party Services
PINMAKR integrates with the following third-party services, each with their own privacy policies:
Clerk (Authentication)
Handles user authentication and account management. Clerk processes your email, name, and login credentials. See Clerk's Privacy Policy.
Supabase (Data Storage)
Stores your projects, brand kits, and content data. All data is associated with your user ID and protected by row-level security policies. See Supabase's Privacy Policy.
Anthropic / Claude AI (Content Generation)
Powers our AI content generation. Your topics and prompts are sent to Anthropic's API to generate blog posts, outlines, and pin copy. Anthropic does not use API inputs to train their models. See Anthropic's Privacy Policy.
Pinterest API
Used for publishing pins, accessing board information, and keyword research. We comply with Pinterest's Developer Guidelines and data handling requirements. See Pinterest's Privacy Policy.
Ideogram (Image Generation)
Generates AI images for your pins. Your image prompts are sent to Ideogram's API. See Ideogram's Privacy Policy.
Tavily (Research)
Provides web research data to enrich your blog content. Your topics are sent as search queries. See Tavily's Privacy Policy.
Stock Media (Pexels, Unsplash, Pixabay)
Provides stock images and videos. Your search queries are sent to these services. Images are used under their respective free licenses.
5. Data Storage and Security
- Your data is stored in Supabase with row-level security (RLS) policies ensuring you can only access your own data
- Authentication is handled by Clerk with industry-standard encryption
- API communications use HTTPS/TLS encryption in transit
- We implement rate limiting to prevent abuse and protect service availability
- We do not sell your personal information to third parties
6. Data Retention
We retain your account data and projects for as long as your account is active. You can delete individual projects at any time from your dashboard. If you wish to delete your entire account and associated data, contact us at the email below.
Pinterest-related data (board information, pin metadata) is retained only for the duration needed to provide our services, in compliance with Pinterest's data retention requirements.
7. Your Rights
You have the right to:
- Access your personal data stored on our platform
- Correct inaccurate information in your account
- Delete your projects, content, and account
- Export your content and data
- Revoke Pinterest access at any time through your Pinterest account settings
- Opt out of non-essential communications
8. GDPR Rights (EU/EEA/UK Residents)
If you are located in the European Economic Area (EEA), the United Kingdom, or Switzerland, the General Data Protection Regulation (GDPR) and equivalent local laws apply to our processing of your personal data. PINMAKR acts as the data controller for the personal data described in this policy.
8.1 Lawful Basis for Processing
- Contract — to provide the services you signed up for
- Legitimate interest — to operate, secure, and improve the platform
- Consent — for optional features (Pinterest connection, marketing communications)
- Legal obligation — where required by law
8.2 Your GDPR Rights
In addition to the rights listed in Section 7, you have the right to:
- Restrict processing of your personal data in certain circumstances
- Object to processing based on legitimate interest
- Data portability — receive your data in a structured, machine-readable format
- Withdraw consent at any time, where processing is based on consent
- Lodge a complaint with your local data protection authority
To exercise any GDPR right, email privacy@pinmakr.com. We respond to verified requests within 30 days.
9. CCPA Rights (California Residents)
If you are a California resident, the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA) give you specific rights regarding your personal information.
- Right to know what personal information we collect, use, and share
- Right to delete personal information we have collected from you
- Right to correct inaccurate personal information
- Right to opt out of the sale or sharing of personal information — we do not sell your personal information
- Right to non-discrimination for exercising any CCPA right
To exercise any CCPA right, email privacy@pinmakr.com. We do not knowingly collect or sell personal information of consumers under 16.
10. Cookies
We use essential cookies for authentication and session management (via Clerk). We do not use advertising or tracking cookies. Your theme preference (light/dark mode) is stored in your browser's localStorage.
11. Children's Privacy
PINMAKR is not intended for use by children under 13 years of age. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided us with personal information, please contact us immediately.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date. Your continued use of PINMAKR after changes constitutes acceptance of the updated policy.
13. Contact Us
If you have questions about this Privacy Policy or wish to exercise your data rights, contact us at:
Email: privacy@pinmakr.com