RedKube
TrixyAI Privacy Policy
This Privacy Policy explains how RedKube collects, uses, stores, and shares information when you use TrixyAI.
1. Contact
If you have questions about this Privacy Policy or privacy requests, contact us at mike@redkube.io.
2. Information We Collect
Information you provide or create
- prompts and generation requests
- uploaded source images, videos, and related media
- generated images, videos, thumbnails, and project metadata
- support messages or communications you send to us
- optional survey answers, reward claims, referral codes and qualification activity
Account and device-related information
- Firebase authentication identifiers, including anonymous IDs
- subscription and purchase status
- app, device, session, and diagnostic metadata
- terms/privacy acceptance versions and timestamps
- hashed installation identifiers and request-rate identifiers used to prevent reward abuse
- app and device integrity verification results
In app versions with anonymous access, Firebase creates an account identifier without requiring a Google account or email sign-in. This identifier links your projects, credits and purchase access; it does not mean that your activity is unidentifiable to us. Existing signed-in accounts keep their identifiers when upgrading.
If you create a recovery code, we store its cryptographic hash and account association, not the code itself. We also record recovery authorization events and apply request limits. Anyone with a valid recovery code can access that account, so keep it private.
Where rewards are available, we use claim history, generation completion, referral relationships and return visits to check eligibility. We verify app/device integrity and use hashed installation identifiers to limit repeated claims. These identifiers are pseudonymous, not proof of a unique person. We do not need your address book to share an invitation. Your public invite code is included in links you choose to share.
Billing information
Purchases and subscription events may be processed through app stores and RevenueCat. We do not receive your full payment card number, but we may receive transaction identifiers, product identifiers, purchase status, entitlement status, and billing-related metadata.
3. How We Use Information
We use information to:
- operate and secure TrixyAI
- process generations and return results
- store and manage your created assets
- maintain credit balances, subscriptions, and purchase records
- debug issues, monitor abuse, and improve performance
- restore access using recovery codes and administer optional rewards and surveys
- comply with legal obligations and enforce our Terms
4. Service Providers and Third Parties
We may share information with vendors and infrastructure providers that help us operate TrixyAI, such as authentication, hosting, storage, analytics, purchase, and AI-generation providers.
These may include services such as:
- Firebase / Google Cloud for authentication, storage, and backend infrastructure
- Firebase App Check and Google Play Integrity for app/device verification
- Netlify for the website and account-deletion support requests
- RevenueCat for subscription and purchase state management
- AI generation providers used to fulfill image and video requests
- app stores for billing and subscription processing
5. Data Retention
We retain information for as long as reasonably necessary to operate the service, maintain security and billing records, resolve disputes, comply with law, and support legitimate business needs. Retention may vary depending on the type of data and your relationship with the service.
Account deletion removes recovery credentials and account-linked recovery audits, survey answers, reward progress and public invite codes. We preserve other users' already-paid rewards and the financial evidence needed to avoid duplicate payments. Pending referral reservations are cancelled when a participating account is deleted.
A deleted account's reward installation binding is replaced with a hashed installation marker without the account ID. We use that marker for reward-abuse prevention for 90 days after deletion, then stop using it for eligibility and schedule automatic deletion. Storage cleanup may finish shortly afterward. Short-lived hashed request-limit records also expire automatically. Hashing does not make these identifiers anonymous.
6. Your Choices and Rights
Depending on your location, you may have rights to request access, correction, deletion, or restriction of certain personal information. You may also have rights related to data portability or objection to certain processing. To make a request, contact mike@redkube.io.
You can delete your TrixyAI account from inside the app under Profile, or review deletion options at Account Deletion.
Saving a recovery code is optional. Without one or another supported recovery method, reinstalling or changing phones may prevent you from accessing the original account. Store purchase restoration does not recover the full credit ledger or projects. You may skip the optional rewards survey and use the rest of the app.
7. International Data Transfers
TrixyAI may use providers and infrastructure in multiple countries. Your information may be processed or stored outside your place of residence, subject to appropriate legal and operational safeguards where required.
8. Security
We use reasonable administrative, technical, and organizational safeguards intended to protect information, but no method of storage or transmission is completely secure.
9. Children's Privacy
TrixyAI is not intended for children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child provided personal information to us, contact us so we can review and address the issue.
10. Changes to This Policy
We may update this Privacy Policy from time to time. The updated version will be posted here with a revised effective date.