Privacy Policy
Last updated: 4 januari 2026
At Pixevo, we take your privacy seriously. This privacy policy describes how we collect, use and protect personal data when you use our service. We process your data in accordance with the General Data Protection Regulation (GDPR).
1 Who We Are
Pixevo is a service of Vuurpijl Beheer BV, located at Lagedijk 11A, 2064 KV Spaarndam, The Netherlands.
Chamber of Commerce: 34108141
VAT number: NL807542313B01
Email for privacy questions: [email protected]
2 Data We Collect
Account Data
- Email address
- Name (optional)
- Password (encrypted)
- Profile photo (optional)
Payment Data
- Billing address
- VAT number (if applicable)
- Payment history
- Subscription details
Usage Data
- IP address
- Browser and device information
- Date and time of access
- Features used and generations
- Error messages and logs
Content
- Uploaded images (source material)
- Generated images and videos
- Prompts and settings
- Created characters and projects
3 Legal Basis
We process your personal data based on the following legal grounds:
Contract performance: For delivering our service and processing payments.
Legitimate interest: For improving our service, fraud prevention and security.
Consent: For marketing communications and placing optional cookies.
Legal obligation: For retaining financial records and complying with tax legislation.
4 How We Use Your Data
- Creating and managing your account
- Processing payments and tracking your credit balance
- Generating images and videos according to your specifications
- Improving our service and resolving technical issues
- Preventing fraud and abuse
- Sending service notifications about your account
- Complying with legal obligations
- Analyzing usage patterns to improve our service
5 Cookies and Tracking
We use cookies and similar technologies for the operation of our service.
Essential cookies: Necessary for the website to function, such as session cookies and authentication.
Analytical cookies: For measuring website usage and improving our service. These are only placed with your consent.
You can manage cookies through your browser settings. Blocking essential cookies may affect the functioning of Pixevo.
We do not share personal data with advertisers and do not use cookies for personalized advertising.
6 Data Sharing
We do not sell your personal data to third parties.
We only share data with:
Payment processors (Stripe) for processing payments. They have their own privacy policy.
Cloud storage providers within the EU for storing your content.
AI model providers for executing generation requests. Prompts and uploads are not used for training unless explicitly stated.
Government authorities if legally required.
All processors we work with have signed a data processing agreement and are bound by confidentiality.
7 International Data Transfers
We strive to process your data exclusively within the European Economic Area (EEA).
Some AI model providers may be located outside the EEA. In that case, we ensure appropriate safeguards, such as Standard Contractual Clauses (SCC) approved by the European Commission.
Stripe (payment processing) is based in the US and complies with the EU-US Data Privacy Framework.
You can request a copy of the applicable safeguards via [email protected].
8 Automated Decision-Making
Pixevo makes limited use of automated decision-making within the meaning of Article 22 GDPR.
Automatic content moderation: Some AI models have built-in filters that automatically reject certain prompts or output. This is a measure to protect against illegal content.
Fraud detection: We may use automated systems to detect abuse and fraud. If fraud is suspected, your account may be automatically blocked, followed by manual review.
You have the right to request human intervention, to express your point of view and to contest the decision via [email protected].
9 Retention Periods
Account data: As long as your account is active, plus 30 days after deletion.
Generated content: Depending on your storage quota. Older content may be automatically deleted when the limit is reached.
Payment data: 7 years after the transaction, in accordance with legal retention requirements.
Log files: Maximum 12 months for security and analysis purposes.
After these periods, data is permanently deleted or anonymized.
10 Your Rights
- Right of access: You can request which data we have about you.
- Right to rectification: You can have incorrect data corrected.
- Right to erasure: You can request deletion of your data.
- Right to restriction: You can request restriction of processing.
- Right to data portability: You can request your data in a structured format.
- Right to object: You can object to processing based on legitimate interest.
- Right to withdraw consent: You can withdraw given consents at any time.
To exercise your rights, contact us at [email protected]. We will respond to your request within 30 days.
11 Security
We take the security of your data seriously and have implemented appropriate technical and organizational measures.
All data is encrypted during storage and transit (HTTPS/TLS).
Passwords are hashed with modern algorithms and cannot be traced back.
Access to personal data is limited to employees who need it for their work.
We actively monitor our systems for security incidents.
Despite our measures, no security method is 100% foolproof. In case of a data breach, we follow the legal notification requirements.
12 Changes to This Policy
We may update this privacy policy from time to time to reflect changes in our practices or legal requirements.
For significant changes, we will notify you via email or a notification in the application.
We recommend checking this policy regularly.
The date of the last change is listed at the top of this document.
Privacy Contact
Have questions about how we handle your data? Contact our privacy officer.
You also have the right to file a complaint with the Dutch Data Protection Authority (autoriteitpersoonsgegevens.nl).