Legal
Privacy Policy
How CodexPetDB collects, uses, and protects personal information
Version: 1.1 · Effective date: 2026-07-15 · Last updated: 2026-07-21
1. About this Policy
This Privacy Policy explains how the CodexPetDB project maintainers ("we", "us", or "our") collect, use, share, and protect personal information when you use CodexPetDB (the "Service").
For privacy questions or requests, contact legal@codexpetdb.com. This Policy should be read together with our Terms of Service.
2. Information we collect
Depending on how you use the Service, we may collect:
- Account information, such as your email address, display name, profile image, authentication identifiers, and account status.
- Content and files you submit, including pet source files, metadata, descriptions, reference material, and derived preview assets.
- Public activity, such as creator profiles, published pets, requests, likes, downloads, installs, and other community interactions.
- Communications, including support emails, legal or privacy requests, and information you choose to place in a GitHub report.
- Technical and security data, such as IP address, browser and device information, request logs, timestamps, errors, security events, and rate-limit signals. If you allow analytics cookies, this also includes page interactions such as clicks, scrolling, navigation, and session playback data.
- Cookies and preferences, including authentication state, language, theme, and consent choices.
If you sign in with Google, we receive the profile information you authorize Google to share with us.
3. How we use information
We use information to:
- provide accounts, authentication, browsing, previews, uploads, downloads, installation links, and other Service features;
- review, publish, distribute, maintain, and remove community submissions;
- operate creator profiles, requests, likes, and other community features;
- secure the Service, prevent abuse, enforce rate limits, investigate incidents, and protect users;
- respond to support, privacy, legal, and takedown requests;
- diagnose reliability problems and improve the Service; and
- comply with valid legal obligations and defend legitimate claims.
We do not use submitted pet artwork or files to train AI models.
4. Public information
Published pets, pet metadata, creator profiles, and visible community activity are public and may be indexed, copied, downloaded, or shared by other people. Do not include personal information in a public submission unless you want it to be public.
Takedown requests and other reports filed in the CodexPetDB issue tracker are public GitHub Issues. This includes the contact email entered in the issue form. Do not submit identity documents, home addresses, private credentials, or other sensitive information through a public Issue.
5. Service providers
We use service providers to operate the Service. Depending on current configuration, these may include:
- Cloudflare for hosting, delivery, object storage, network security, and related infrastructure;
- Google when you choose Google sign-in and for Vertex AI safety review of private submitted pet metadata and spritesheets before publication;
- database and storage infrastructure used to keep account and pet data;
- Resend for transactional account email;
- Microsoft Clarity for optional, consent-based product analytics, heatmaps, and session playback; and
- GitHub when you choose to file a public content report.
These providers process information under their own terms and privacy policies. We share only the information reasonably needed for the relevant service.
Automated review suggestions may approve clearly safe submissions, reject deterministic violations, or send uncertain cases to a staff reviewer. This review is used for publication safety and does not change our commitment not to use submitted pet artwork or files to train AI models.
6. Cookies and local preferences
Essential cookies and similar storage are used for authentication, security, language, theme, and privacy choices. Optional analytics or marketing categories remain disabled unless they are configured and you provide any consent required by applicable law.
When you allow analytics, Microsoft Clarity may use _clck and _clsk
cookies to connect page activity into sessions. Clarity masks sensitive
content by default. You can withdraw analytics consent at any time through
the Cookie preferences control in the site footer; doing so clears these
first-party Clarity cookies and stops consent-based tracking on later page
views.
Blocking essential storage may prevent account or preference features from working correctly.
7. Retention
We keep information only for as long as reasonably needed to provide and secure the Service, maintain public submissions, resolve disputes, respond to requests, and meet legal obligations. Retention periods vary by data type and context.
Public pet content is generally retained while it remains published. Backups, security logs, and records needed for fraud prevention, disputes, or legal requests may remain for a limited period after other data is removed.
8. Your choices and rights
Depending on applicable law, you may ask to access, correct, export, restrict, object to, or delete personal information associated with you. Send requests to legal@codexpetdb.com. We may need to verify your identity before acting on a request.
You can request review of allegedly infringing public content through our takedown process. These requests are separate from account privacy requests.
9. Security
We use reasonable technical and organizational measures intended to protect information, including access controls, scoped credentials, transport security, and separation between public and privileged systems. No service can guarantee absolute security.
If you believe information or an account has been exposed, contact us promptly and do not publish sensitive details in a public Issue.
10. Children
The Service is not directed to children who cannot lawfully consent to the processing described in this Policy. Where parental or guardian consent is required, the Service may be used only with that consent. Contact us if you believe a child provided personal information without the required consent.
11. Changes and contact
We may update this Policy as the Service changes. The version and dates at the top of this page will be updated when changes take effect. Material changes may also be announced through the Service or another reasonable channel.
For privacy questions or requests, email legal@codexpetdb.com.