Privacy Policy
What we store, why we store it, and what we never see.
Last updated: September 24, 2026
Building without an account
You can use the manual builder and smash mode without signing up. Builds autosave to your own browser's local storage and stay on your device. Photo generation is an AI feature and requires an account.
What we store when you create an account
- Your email, optional name, and a salted password hash. We never store your password itself.
- Builds you save to your account, so they can be reopened, rendered, and turned into Design Packs.
- Your Design Pack orders — the order reference, the frozen build the files were generated from, and the files themselves.
- A session cookie (HttpOnly) that keeps you signed in. It is required for the service to work and isn't used for tracking.
AI features
When you ask Brick Bot to build something, your description — and your photo, if you attach one — is sent to a third-party AI provider to generate the build. Photos are used to generate the model and are not used to identify people. Don't upload photos you wouldn't want processed this way.
Payments
Payments happen on Stripe-hosted checkout pages. Brickoodle never sees or stores your card number; we receive only the payment confirmation and order details from Stripe (amount, currency, and payment status). Stripe's own privacy policy applies to the checkout page.
Traffic and performance analytics
We use Cloudflare Web Analytics on our public pages and the Studio to understand page views, visits, referring websites, country-level traffic, device types, and page performance. It does not use analytics cookies or persistent identifiers to track you across websites.
We do not send your email, photos, AI prompts, saved-build contents, or payment-card information to analytics, and we do not record your screen or form entries. Account, checkout, order, password-reset, and email-verification pages do not load this analytics script. We also skip analytics when your browser sends a Do Not Track or Global Privacy Control preference. Learn more about Cloudflare's analytics data collection.
What we don't do
- No advertising, no sale of personal data, no data brokers.
- No advertising trackers or session recordings.
- No marketing email unless you explicitly ask for it.
Contacting support
When you contact us, we use your email address, selected topic and message to answer your request. Form messages are delivered through Microsoft 365 to our support inbox. They are not added to your saved-build library. We keep temporary message receipts and hashed email/network identifiers to limit spam and duplicate submissions. Please don't include passwords or payment-card details in your message.
Deleting your data
Email us and we will delete your account, saved builds, and personal details. Records of completed payments are kept as long as tax and accounting rules require.
Contact
Privacy questions or deletion requests: Contact us or email support@brickoodle.com.