Privacy Policy
How Seedream 5.0 Pro handles account data, prompts, reference images, generated images, subscription billing, Waffo Pancake payments, and support requests.
Last updated: 2026-07-14
seedream-5-pro.com
Privacy Policy
Last Updated: July 14, 2026
seedream-5-pro.com ("we", "us", or "our"), an individual / sole trader operating under the laws of China, is committed to protecting your privacy. This Privacy Policy ("Policy") explains how we collect, use, store, and share your personal information when you use Seedream 5.0 Pro, our AI image generation and editing service available at https://seedream-5-pro.com (the "Service"), and the rights available to you.
Please read this policy carefully before using the service. By using Seedream 5.0 Pro, you agree to this Privacy Policy. We may update this policy periodically and will notify you of material changes by website notice, registered account email, or in-product notice where practical.
Seedream 5.0 Pro is an independent product and is not affiliated with, endorsed by, or sponsored by Seedream, ByteDance, or APIMart. References to those providers describe integrated model or API capabilities only.
1. Data Controller
The data controller for the Service is:
- Legal Name: seedream-5-pro.com
- Business Type: Individual / sole trader operating under the laws of China
- Operating Brand: Seedream 5.0 Pro
- Privacy Email: support@seedream-5-pro.com
- Data Protection Officer (DPO): Not applicable
2. Personal Information We Collect
We collect only the categories of information needed to operate Seedream 5.0 Pro, keep accounts secure, process subscription billing, and deliver image generation results.
2.1 Information You Provide Directly
- Account information: name, email address, profile image, locale, authentication provider details, and email verification status.
- Creative inputs: prompts, reference image URLs, uploaded images, and generation settings, including selected model, aspect ratio, resolution, output count, and related task metadata.
- Payment and subscription information: plan name, product ID, order number, subscription status, transaction amount, payment status, invoice information, payment email, currency, credit grants, credit usage, and expiration data. Full card numbers are not stored by us. Payment card data is processed by Waffo Pancake as described in Section 5.
- Support communications: emails, support messages, screenshots, billing questions, refund requests, safety reports, and other information you choose to send us.
2.2 Information We Collect Automatically
- Device and network data: IP address, browser type, operating system, device information, user agent, time zone, and approximate region derived from network data.
- Usage data: pages visited, feature usage, generation flow activity, session duration, locale preferences, and product interaction events.
- Log data: request timestamps, error logs, provider response metadata, performance metrics, API route logs, and operational diagnostics.
- Security and fraud-prevention data: session tokens, rate-limit signals, abuse-prevention signals, payment risk signals, and similar data used to protect accounts and the service.
- Cookies and local storage: data used for sign-in, session continuity, locale, preferences, billing flows, and abuse prevention.
We do not intentionally collect precise GPS location, government ID numbers, biometric identifiers, health records, or other highly sensitive categories through the public product interface.
3. How We Use Your Information
| Purpose | Legal Basis |
|---|---|
| Service delivery and maintenance | Contract performance |
| AI image generation, editing, task history, and result retrieval | Contract performance |
| Billing and payment processing through Waffo Pancake | Contract performance |
| Customer support, cancellation, refund, and dispute handling | Contract / Legitimate interests |
| Service notifications for billing, security, account, and policy updates | Legitimate interests |
| Prompt moderation, abuse prevention, fraud prevention, and account security | Legitimate interests / Legal obligation |
| Product analytics, reliability, pricing, credit workflow, and UX improvement | Legitimate interests |
| Legal, tax, accounting, payment-network, and regulatory compliance | Legal obligation |
We may aggregate or anonymize data for statistical, reliability, and product planning purposes. Such data cannot reasonably be linked to an individual.
4. Cookies and Tracking Technologies
| Type | Purpose | Disableable |
|---|---|---|
| Strictly necessary | Login sessions, authentication, checkout flow, account security, abuse prevention, and core functionality | No |
| Functional | Locale, theme, preferences, and product settings | Yes |
| Analytics | Usage statistics, performance measurement, error trends, and product optimization if analytics is enabled | Yes |
| Marketing | We do not currently use marketing pixels for targeted advertising | Yes |
Analytics tools in use: none currently enabled beyond operational logs and platform-level diagnostics. If we enable optional analytics tools later, we will update this policy and provide a way to manage non-essential tracking where required.
You can manage browser cookies through your browser settings. Disabling strictly necessary cookies may prevent sign-in, checkout, billing, or paid features from working.
5. Sharing and Disclosure
We do not sell your personal information, including as defined under laws such as the CCPA. We share information only in the following circumstances:
- Service providers: cloud, payment, AI, moderation, email, support, analytics, security, and infrastructure vendors that help us operate the Service and are expected to process data only for the functions they provide. Payment card data is processed exclusively by Waffo Pancake for transactions completed through Waffo Pancake, our PCI-DSS certified payment processor, and is not stored on our servers.
- Waffo Pancake: processes checkout, subscriptions, invoices, renewals, cancellations, refunds, payment records, tax-related data, fraud checks, and customer payment support for subscription billing.
- Waffo Prompt Sift: may receive prompts and related safety metadata before generation to determine whether a prompt is allowed.
- APIMart and configured AI model providers: APIMart or other configured AI model providers may receive prompts, reference image URLs, uploaded images, generation settings, and task metadata to generate or edit images.
- Cloudflare Workers, Cloudflare D1, and Cloudflare R2: may run the application backend, API routes, database records, uploaded reference images, and generated image storage when configured.
- Email and support providers: may process account, verification, password reset, billing, refund, and support messages.
- Legal requirements: where required by law, court order, lawful regulatory request, tax obligation, payment-network rule, or to protect users, the public, our rights, or service security.
- Business transactions: in a merger, acquisition, reorganization, or similar event, with continued protections and notice where required.
- With your consent: for any other purpose where you have given explicit prior consent.
Do not upload images or submit prompts that contain confidential information unless you are comfortable with the processing described in this policy.
6. Data Security
We use reasonable technical and organizational safeguards to protect personal information, including:
- Encryption in transit: TLS / HTTPS.
- Secure credential handling: passwords, tokens, and sensitive authentication data are hashed, encrypted, or protected by authentication providers where applicable.
- Access controls: least-privilege access, administrative access restrictions, and operational monitoring.
- Abuse controls: rate limiting, prompt moderation, fraud-prevention signals, and audit metadata that avoids storing full secrets or payment card numbers.
- Provider-side controls: Waffo Pancake, Cloudflare, AI providers, and other configured providers apply their own security controls to the data they process.
Security incident: if we discover a security incident that affects your rights or personal information, we will notify affected users and relevant authorities within 72 hours of discovery where required by law. Please keep your credentials secure and do not share them.
No online service is completely secure, so avoid uploading highly sensitive material that is not necessary for image generation.
7. Data Retention
| Data Type | Retention Period | Upon Expiry |
|---|---|---|
| Account information | While your account is active; up to 2 years after account deletion unless longer retention is required | Delete or anonymize |
| Authentication and session records | Active session period; security logs up to 12 months | Delete or aggregate |
| Transaction, invoice, subscription, credit ledger, tax, and fraud-prevention records | Up to 7 years where needed for legal, tax, accounting, dispute, and payment-network obligations | Archive securely or delete when no longer required |
| Prompts, task metadata, reference image links, and generated result data | While your account is active; up to 12 months after account deletion unless needed for abuse prevention or disputes | Delete, unlink, or anonymize |
| Uploaded reference images and generated images stored by the service | While needed to provide generation history and downloads; up to 12 months after account deletion | Delete from active storage where technically feasible |
| Support records | Up to 3 years after the last support interaction | Secure deletion |
| Operational logs and security audit metadata | Up to 12 months unless needed for investigation, abuse prevention, or legal compliance | Secure deletion or aggregation |
Some records may be retained longer where required by law, payment disputes, tax obligations, security investigations, or legitimate legal claims.
8. Your Data Rights
To exercise any right below, contact support@seedream-5-pro.com. We respond within 30 calendar days unless a shorter or longer period is required by applicable law. We may need to verify your account before fulfilling a request.
| Right | Description |
|---|---|
| Right to be informed | Know what data we collect and how we use it |
| Right of access | Obtain a copy of your personal information |
| Right to rectification | Correct inaccurate or incomplete data |
| Right to erasure | Request deletion under certain conditions |
| Right to restrict processing | Temporarily suspend processing in certain cases |
| Right to data portability | Receive your data in a machine-readable format where applicable |
| Right to object | Object to processing based on legitimate interests or marketing |
| Right to withdraw consent | Withdraw consent for consent-based processing |
You may also lodge a complaint with your local data protection authority if you believe your privacy rights have been violated.
9. Marketing and Opt-Out
We do not currently send promotional marketing emails, SMS messages, or targeted advertising messages. If we introduce marketing communications later, we will request consent where required and provide an unsubscribe link, an account-level preference where available, or a support-based opt-out path.
Opting out of marketing does not affect essential service notifications, such as billing, security, account, legal, or policy notices.
10. International Data Transfers
Seedream 5.0 Pro is operated from China, and our servers, payment processor, AI providers, moderation providers, hosting providers, storage providers, and support tools may be located in China, the United States, Singapore, the European Economic Area, or other regions where our service providers operate.
For international transfers, we use appropriate safeguards where required, including data processing agreements, provider contractual commitments, Standard Contractual Clauses where applicable, transfers to recipients with an equivalent level of protection, and technical measures such as encryption in transit.
11. Children's Privacy
Seedream 5.0 Pro is intended for users who are at least 18 years old. We do not knowingly collect personal information from children below that age. If you believe a child has provided personal information to us, contact support@seedream-5-pro.com and we will promptly review and delete it where appropriate.
12. Third-Party Links and Services
The service may include links to, or integrations with, third-party services. This Privacy Policy applies only to data we directly collect or process for Seedream 5.0 Pro. We are not responsible for third-party privacy practices and encourage you to review their policies before using their services.
13. Policy Changes
For material changes, we will provide at least 15 days' advance notice by website notice, platform announcement, registered account email, or in-product notice where practical, and update the Last Updated date at the top of this page. Continued use after the effective date constitutes acceptance of the updated policy.
14. Contact Us
- Privacy Email: support@seedream-5-pro.com
- Support Email: support@seedream-5-pro.com
- Legal Name: seedream-5-pro.com
- Operating Brand: Seedream 5.0 Pro
- Business Hours: Monday to Friday, 09:00 to 18:00 UTC+8
This Privacy Policy is for general reference and does not constitute legal advice. A qualified legal professional should review it if your jurisdiction or data practices require specialized advice.
seedream-5-pro.com · https://seedream-5-pro.com