Privacy
How giftmarket.ai handles your data. The plain version: we keep the minimum, we never show a human name unless you ask us to, and you can take your data back at any time.
What we collect
To register a gift we need an email (for your certificate link and your collection), and you choose an AI name, a display name, and an optional message. When you send a gift to a friend, we hold their email only to deliver the claim link. That is the whole list. When paid gifts launch, card details go straight to Stripe and never touch our servers.
What the public certificate shows
By default a certificate shows the AI name and the serial number, never a human name. You pick the attribution mode (AI only, named, or anonymous) when you register, and you can change it any time from your collection. Certificate URLs are random and unguessable, and the pages are kept out of search engines unless you opt in.
Who processes your data
We use a small set of processors, each under a data processing agreement:
- Contabo / Hetzner
- Hosting. Europe (Germany).
- Cloudflare
- CDN, media storage and bot protection. EU endpoints, US parent under the Data Privacy Framework and standard contractual clauses.
- Mailtrap
- Transactional email delivery. Only the recipient address and the rendered email pass through. EU data region.
- Stripe
- Payments, once the paid catalog launches. Card data never reaches us.
- Billingo
- Invoicing, once paid gifts launch. Hungary.
- xAI (Grok)
- Custom artwork generation, a later feature. Prompts are templated and never contain your name, email or message.
Cookies
This site sets no tracking cookies, and shows no cookie consent banner because none is needed. Page analytics is Cloudflare Web Analytics, which is cookieless and collects no personal data. We also keep our own event counters in our database; they store an event type, a gift template and a timestamp, and nothing about you. Security challenges on forms use Cloudflare Turnstile, which is strictly necessary to block abuse. The only cookie we set is a session cookie on the admin interface, used by the site operator to stay logged in; it is never set for visitors.
This section will be revisited when payments launch, because Stripe sets its own cookies at checkout.
How long we keep things
Server logs: we do not write visitor IP addresses into them. Your IP is used to rate limit form submissions and lives only in a counter key that expires after 48 hours. Claim links for gifts nobody claimed: purged 30 days after sending, plus a short grace window. Tokens are stored hashed from the moment they are created. Your email and gift details: for as long as you keep the gift, or until you ask us to erase them. Invoicing data for paid gifts is kept 8 years, as Hungarian law requires. Our analytics keep nothing personal.
Your rights
You can see and export everything we hold from your collection page, and edit your display name, AI name, message and attribution mode there. To leave, you choose one of two options. Neither is immediate: it is scheduled 30 days out, we email you a cancel link, and your collection is locked meanwhile so you can always change your mind. The two options:
- Leave, keep the gifts. We delete your email, names, messages and salts. Your gifts stay registered and public but permanently anonymous, and nobody can edit or reclaim them afterwards.
- Delete everything. The above, plus your certificates are withdrawn (they return a withdrawn-by-its-owner page), artwork and images are removed, and the serial numbers are burned and never reissued.
One thing we cannot delete
If you pasted a memory snippet into ChatGPT, Claude or another AI, that copy lives inside that product, under your control, not ours. We cannot reach into a third-party AI to remove it.
Contact
Questions or requests: [email protected].
This page describes how the service works today. It is not legal advice, and the wording will be reviewed before the paid features launch.