Privacy Policy for Picir.ai
Effective Date: August 24, 2026
Introduction
This Privacy Policy describes how Picir AI — Dhaka ("Picir AI," "we," or "us") collects, uses, discloses, retains, and protects personal information when you access or use the Picir.ai website, generative artificial intelligence ("AI") media platform, and Picir Video Generator for ChatGPT (collectively, the "Services"). Dhaka is the entity responsible for the processing described in this policy.
This policy applies to information processed by Picir AI. Third-party services, including ChatGPT, identity providers, payment processors, and linked websites, process information under their own terms and privacy policies.
Information We Collect
We collect the following categories of information:
-
Account and Profile Information
- Your name, email address, account identifier, profile information, authentication provider, and account or subscription status.
- If you sign in through Google, GitHub, or another identity provider, we receive the account information that provider makes available based on your choices and its policies. We do not receive your password for that third-party account.
-
Generation Inputs and Outputs
- Prompts, selected generation settings, task identifiers, task status, model and provider information, usage cost, error information, and any media or other content you submit to or generate through the Services.
- Picir Video Generator for ChatGPT currently receives text prompts and supported video settings. It does not currently use an image attached to a ChatGPT conversation as a reference image.
-
ChatGPT Connection and OAuth Information
- OAuth issuer and subject identifiers, the email address used to link the connection, granted permissions, connection and last-used timestamps, access status, and related authorization records.
- Plugin request identifiers, idempotency keys and request fingerprints used to recognize retries, enforce task ownership, and prevent duplicate generations or charges.
- We validate access tokens to authorize requests, but do not include access tokens or authentication secrets in tool responses returned to ChatGPT.
-
Payment and Billing Information
- Billing contact details, country or region, transaction, invoice, subscription, payment-status, refund, and dispute information.
- Complete payment card numbers and security codes are collected and processed directly by our payment processors. Picir AI does not store complete payment card numbers or card security codes.
-
Usage, Device, and Log Information
- Features used, pages viewed, interactions, referring pages, timestamps, IP address, browser and device type, operating system, approximate location derived from IP address, crash or diagnostic information, and security or audit logs.
-
Cookies and Similar Technologies
- Cookies, pixels, local storage, and similar technologies used to keep you signed in, remember preferences, measure use of the Services, understand performance, and help protect the Services.
-
Support, Safety, and Communications Information
- Messages and files you send to support, survey or feedback responses, and records related to content moderation, suspected abuse, fraud prevention, security incidents, or legal requests.
- Prompts and generated media may be reviewed by automated safety services. Safety records may include the submitted content, classification categories and scores, task or request identifiers, and review metadata.
ChatGPT Plugin Data Flow
When you connect and use Picir Video Generator in ChatGPT, the following data flow applies:
- Data received from ChatGPT: authorization information associated with your connected account; the text prompt and supported settings you ask Picir AI to use; a client request identifier for generation requests; and a task identifier when you ask for a task's status.
- Data returned to ChatGPT: account eligibility and credit balance information; the expected credit cost; task identifier and status; the prompt and generation settings associated with the task; user-facing errors; and, after successful generation, an HTTPS URL for viewing or downloading the generated video.
- How the data is used: to link the request to your Picir AI account, confirm authorization and task ownership, check available credits, create the requested video, prevent duplicate submissions or charges, report progress and errors, and deliver the finished result.
- Where the result appears: the information returned by the plugin, including the generated-video URL, may appear in your ChatGPT conversation and be processed by OpenAI under its own terms and privacy policy. Only information necessary to complete and present the requested action is returned.
Disconnecting Picir AI in ChatGPT prevents new access through that connection. Disconnecting does not by itself delete your Picir AI account, prior task history, generated assets, or information already present in your ChatGPT conversation.
How We Use Information
We use personal information to:
- Create and manage accounts, authenticate users, and provide customer support.
- Process generation requests, deliver generated media, show task status, and maintain task ownership.
- Manage credits, subscriptions, billing, refunds, and payment disputes.
- Prevent duplicate requests and charges and maintain the reliability of the Services.
- Moderate content, detect abuse or fraud, investigate security incidents, and enforce our terms.
- Analyze performance and usage, troubleshoot errors, and improve the Services.
- Communicate service, security, billing, support, or policy updates.
- Comply with legal obligations and establish, exercise, or defend legal claims.
Where applicable law requires a legal basis, we rely on performance of our contract with you, our legitimate interests in operating and securing the Services, compliance with legal obligations, and consent where required, such as for certain optional cookies or communications. You may withdraw consent at any time, but withdrawal does not affect processing that occurred before withdrawal.
How We Share Information
We do not sell personal information. We disclose information only as needed for the purposes described in this policy, including to the following categories of recipients:
-
ChatGPT and OpenAI
- To receive authorized tool requests, return tool results, present task status and generated media, and, where configured, perform content-safety review.
-
Authentication and Social Login Providers
- To authenticate users and authorize the ChatGPT connection. These may include our OAuth provider and the social login provider you choose, such as Google or GitHub.
-
AI Generation and Content-Safety Providers
- To process prompts and generation settings, create requested media, assess content for safety, and return generation or moderation results. We provide only the information needed for the requested processing.
-
Hosting, Database, Storage, CDN, and Infrastructure Providers
- To host the Services, store account, connection, request, task, and safety records, deliver generated media, monitor reliability, and protect the Services.
-
Payment Processors
- To process payments, subscriptions, refunds, invoices, and disputes. Payment processors receive payment details directly and provide Picir AI with transaction and billing-status information.
-
Analytics and Performance Providers
- To measure site use, diagnose performance, and improve the Services when the applicable analytics service is enabled. Their processing may involve cookies and usage, device, and network information.
-
Professional Advisers, Authorities, and Transaction Parties
- To auditors, legal or financial advisers, regulators, law enforcement, courts, or other parties when reasonably necessary to comply with law, protect rights and safety, or complete a merger, financing, reorganization, or sale of all or part of the business, subject to appropriate protections.
We require service providers acting on our behalf to process information only for contracted purposes and to apply appropriate confidentiality and security protections.
Retention
We retain personal information only for as long as reasonably necessary for the purposes described in this policy. The applicable period depends on the type of information and our operational, security, contractual, and legal obligations:
- Account and connection records are generally retained while your Picir AI account or ChatGPT connection remains active. OAuth identity mappings and plugin request records may also be retained as needed to enforce ownership, recognize retries, prevent duplicate charges, investigate abuse, and resolve support or billing issues. Disconnecting the plugin stops future access but does not trigger account deletion.
- Prompts, task settings, task status, and generated media are retained to provide task history and access to results. For inactive non-premium accounts, assets may be marked for deletion after approximately six months of inactivity. After an asset is marked deleted, the corresponding stored media is scheduled for removal after 60 days.
- Account deletion requests end account access immediately and are scheduled to be completed within 15 days. Associated generated assets are marked deleted when the request is processed, and stored media is scheduled for removal after the 60-day deletion period. Limited task metadata may be retained longer where necessary for billing reconciliation, fraud prevention, security, dispute handling, or legal compliance.
- Payment and transaction records are retained for the period required to administer subscriptions, refunds, disputes, accounting, tax, fraud prevention, and other legal obligations.
- Safety, security, and support records are retained for as long as reasonably necessary to investigate and document abuse, safety decisions, fraud, support requests, or security incidents, and to establish or defend legal claims. The period depends on the severity and status of the matter.
- Analytics, cookie, and diagnostic data are retained according to the applicable configuration and retention settings of Picir AI and the relevant analytics or infrastructure provider.
- Backups may preserve information for a limited period after deletion until they are overwritten in the ordinary backup cycle. We do not use data awaiting backup deletion for new purposes.
When a fixed retention period is not appropriate, we determine retention based on whether the information remains necessary to provide the Services, maintain security and auditability, resolve an active issue, or satisfy legal obligations. We delete, de-identify, or restrict access to information when it is no longer needed, subject to technical and legal limitations.
Cookies and Analytics Controls
You can use browser or device settings to block or delete cookies. Blocking required cookies may prevent sign-in or other essential features from working. Where a consent control is presented, you may use it to manage optional cookies. You may also use platform or browser privacy controls to limit certain analytics technologies.
Data Storage, International Transfers, and Security
Picir AI and its service providers may process information in countries other than the country where you live. These countries may have different data-protection laws. Where required, we use appropriate safeguards for international transfers, such as contractual protections or other lawful transfer mechanisms.
We use administrative, technical, and organizational measures designed to protect personal information, including access controls, encryption in transit, restricted server-side access to plugin identity and request records, and monitoring intended to prevent unauthorized access, alteration, disclosure, or destruction. No transmission or storage system is completely secure, and we cannot guarantee absolute security.
Your Choices and Data Rights
Depending on where you live, you may have rights to access, correct, delete, or receive a copy of your personal information, and to object to or restrict certain processing. You may also have the right to withdraw consent or lodge a complaint with a data-protection authority.
-
Access and Correction
-
ChatGPT Connection Controls
- Disconnect Picir Video Generator from ChatGPT to prevent future plugin access through that connection.
- To request deletion of the Picir AI OAuth link, plugin request records, task history, or generated assets, use the account-deletion option or contact support. Removing the connection from ChatGPT does not delete content already retained by ChatGPT; use OpenAI's controls for information in your ChatGPT account.
-
Delete Data or Close Your Account
- Close your account through Account Settings by selecting the account-deletion option and completing the confirmation steps.
- You may also request deletion by contacting [email protected] from the email address associated with your account.
- Account access ends immediately after a confirmed deletion request. Deletion then follows the periods and exceptions described in the Retention section.
-
Marketing and Cookie Choices
- Use the unsubscribe link in a marketing email or contact us to opt out of marketing communications. Service and security communications may still be sent when necessary.
- Manage cookies and similar technologies as described in the Cookies and Analytics Controls section.
To submit a data request, identify the right you wish to exercise and use the email address associated with your account when possible. We may request reasonable information to verify your identity. We generally respond within 30 calendar days. If applicable law permits additional time, we will notify you of the reason for the delay.
Children's Privacy
The Services are not directed to children under 13, and we do not knowingly collect personal information from children under 13. Additional age requirements may apply under local law. If you believe a child has provided personal information to us, contact us so that we can review and delete it where appropriate.
Changes to This Policy
We may update this policy to reflect changes to the Services, our data practices, or legal requirements. We will post the updated policy on this page and revise the effective date. If a change materially affects how we use personal information, we will provide additional notice where required.
Contact Us
For privacy questions, requests, or complaints, contact:
Picir AI — Dhaka
Website: https://picir.ai
Email: [email protected]