Privacy Policy
Last updated: 9/18/2026
Who we are
SlAIdes is operated by SlAIdes (the "Seller"), who acts as the data controller for personal data processed through the Service.
What we collect
- Account info: email, display name, avatar (if you sign in with Google).
- Content: decks you create, documents you upload, presenter notes.
- Usage: API calls, generation events, plan tier, error logs.
- Technical: IP address, browser, device info for security and debugging.
- Support messages you send us.
How we use it & legal basis
- To provide the Service and your account — performance of a contract.
- To enforce quotas, prevent abuse, and secure the Service — legitimate interests.
- To send transactional emails (account, billing) — contract / legal obligation.
- To debug issues and improve the product — legitimate interests.
- For any optional marketing — only with your consent.
AI processing
When you generate slides, your prompt and uploaded source documents are sent to third party AI providers (for example, Google Gemini and OpenAI) via our gateway. Providers process the data to return results and may retain it transiently per their own policies. We do not use your content to train models.
Sharing
We do not sell your data. We share it only with the following recipients:
- Stripe — our payment processor. Stripe receives the data needed to process payments, manage subscriptions, calculate tax, issue receipts, and handle payment disputes. See Stripe's Privacy Policy.
- Infrastructure providers: hosting, database, file storage, AI gateways — all under contract.
- Professional advisers (legal, accounting) where strictly necessary.
- Authorities where required by law.
International transfers
Some recipients are located outside the EEA/UK. Where this is the case we rely on adequacy decisions or Standard Contractual Clauses to safeguard your data.
Retention
We keep your content as long as your account is active. You can delete decks at any time, and delete your account from your account settings — both actions are irreversible. Billing records retained by Stripe are kept as required by tax law (typically up to 10 years).
Security
We apply appropriate technical and organisational measures to protect your data, including encryption in transit (TLS), encryption at rest for stored data, role based access controls, audit logging, and regular review of our subprocessors. No system is perfectly secure; report suspected incidents via the contact page.
Your rights
Subject to applicable law (including the GDPR for users in the EEA/UK) you have the right to access, rectify, erase, restrict, port, and object to processing of your personal data, and to withdraw consent. You can manage data export and account deletion from the avatar menu → Account settings. You may also lodge a complaint with your local data protection authority. We respond to verified requests within one month.
Cookies
We use cookies and local storage strictly necessary for authentication and remembering your preferences. We do not use third party advertising cookies. The Stripe checkout sets cookies under its own domain to process your payment.
Children
The Service is not directed at children under 13.
Changes
Material changes to this policy will be posted here.
Contact
Privacy questions? Reach us via the contact page.
