Privacy Policy
Last updated: 2025
This Privacy Policy explains how DeepFaker ("DeepFaker", "we", "us", "our"), collects, uses and protects your personal data. By using the DeepFaker website and services, you agree to the practices described in this Policy.
1. Data controller
The controller of your personal data is:
DeepFaker
2. Data we collect
2.1. Information you provide
- Email address
- Password (stored only in hashed form)
- Referral codes you create or use
- Content you upload (e.g. images, videos, prompts, training material)
2.2. Information collected automatically
- IP address and approximate location
- Device and browser information
- Technical logs and error reports
- Cookies and similar technologies (see Cookie Policy)
2.3. Payment data
Payments on the DeepFaker platform are processed by the external payment processor Deep-Payments LLC. DeepFaker does not store your card number or CVV code. Deep-Payments LLC processes card data in compliance with PCI-DSS standards.
3. How we use your data
We use your data to:
- Create and manage your DeepFaker account
- Process payments, credits and subscriptions
- Display your current credits and rewards
- Provide, maintain and improve our services
- Prevent fraud, abuse and security incidents
- Send important technical or security notifications
- Comply with legal obligations
4. Legal basis (GDPR)
We process your data on the following legal bases:
- Performance of a contract — creating an account, providing the service, processing payments
- Legitimate interest — security, service improvement, fraud prevention
- Consent — for certain cookies or marketing communication (where required)
5. Data sharing
We may share your data with:
- Deep-Payments LLC — for payment processing and fraud prevention
- Infrastructure and hosting providers (e.g. cloud servers)
- Public authorities when legally required (e.g. court orders, tax authorities)
We do not sell your personal data to third parties.
6. Data retention
We keep your data for as long as necessary to provide the services, comply with legal obligations (for example accounting and tax rules), or until you request deletion where applicable.
7. Your rights
Under GDPR you have the right to:
- Access your personal data
- Request correction of inaccurate or incomplete data
- Request deletion of your data (where legally possible)
- Restrict or object to processing in certain cases
- Request data portability
- Lodge a complaint with a data protection authority
To exercise your rights, contact us via the support page.
8. Security
We use appropriate technical and organisational measures to protect your data, including encryption, password hashing, access controls and security monitoring. No method of transmission or storage is 100% secure, but we work to keep your data as safe as possible.
9. International transfers
In some cases your data may be processed on servers outside the European Union. In such cases we ensure appropriate safeguards such as Standard Contractual Clauses or equivalent mechanisms required by GDPR.
10. Contact and complaints
If you have questions about this Policy or how we process personal data, contact us via the support page. You also have the right to lodge a complaint with your local data protection authority.
11. Changes to this Policy
We may update this Privacy Policy from time to time. A "Last updated" date will always be shown at the top. If changes are significant, we may notify you by email or through the service.
