Controller and UK company details
Linocut AI is operated by SNAPCRAFT DIGITAL SOLUTIONS LTD, a company registered in England and Wales, for the Linocut AI website, app, workspace, and related services. For UK GDPR purposes, SNAPCRAFT DIGITAL SOLUTIONS LTD is the controller of personal data processed for account administration, billing, security, analytics, product operation, and customer support.
Where a business customer uses Linocut AI to process personal data inside its own workspace, that customer may be the controller and Linocut AI may act as processor under the applicable workspace agreement or data processing addendum.
Scope of this policy
This policy applies when you visit Linocut AI, create an account, join a workspace, upload media, enter prompts, generate or edit outputs, save workflows, use beta features, contact support, subscribe to emails, or purchase a plan.
This policy does not cover third-party websites, model providers, social platforms, payment providers, or integrations that publish their own privacy notices, except where they process personal data on our behalf.
Personal data we collect
The exact data we collect depends on how you use the product. Linocut AI is a creative workspace, so some uploads or outputs may include personal data if they contain identifiable people, voices, names, addresses, handles, or other personal information.
Sources of data
We collect data directly from you, from workspace administrators or collaborators, from your device and browser, from service providers, and from third-party integrations you choose to connect.
If another user uploads personal data about you into a workspace, we process that data to provide the requested creative workflow and to operate the service, subject to the controls in this policy and the applicable workspace terms.
Purposes and lawful bases
Under UK GDPR, we need a lawful basis to process personal data. The table below summarises the main purposes and lawful bases we expect to rely on.
Creative uploads and AI outputs
Private workspace content is used to provide, maintain, secure, and improve the features you ask us to run. We do not publish your private uploads or private outputs as public marketing material without permission.
We do not use private workspace content to train public foundation models unless you opt in, the relevant workspace agreement allows it, or the content has been made public by you. Aggregated and de-identified product signals may be used to improve reliability, interface design, routing, and abuse prevention.
Some workflows involve people, faces, voices, likenesses, or other identifiers. You are responsible for having the rights and permissions needed to upload, edit, generate, publish, or share that content.
Sensitive data and biometric-like content
Linocut AI is not designed for medical, legal, financial, employment, immigration, or other high-impact decision-making. Do not upload sensitive personal data unless it is necessary for the workflow and you have a lawful basis to do so.
Images, video, voice, and face-related workflows can reveal sensitive traits or biometric-like information. We process such content only as needed to provide the requested creative tool, maintain security, comply with law, or enforce our terms.
AI model and infrastructure providers
To run image, video, audio, and text workflows, we may send relevant inputs and settings to infrastructure providers, model providers, storage providers, and other processors. We limit what is shared to what is necessary for the workflow.
Providers may process data in the UK, EEA, United States, or other locations. We use contractual, technical, and organisational controls to protect transfers and processing by those providers.
International transfers
Some providers, team members, or infrastructure may be located outside the UK. Where UK GDPR transfer rules apply, we rely on UK adequacy regulations, the UK International Data Transfer Agreement, the UK Addendum to EU Standard Contractual Clauses, or another lawful transfer mechanism.
Where appropriate, we assess transfer risks and apply additional safeguards such as access controls, encryption in transit, provider due diligence, contractual security obligations, and limited retention.
Retention
We keep personal data only for as long as needed for the purposes described in this policy, unless a longer period is required for legal, accounting, security, dispute, or enforcement reasons.
Security
We use technical and organisational measures designed for a media-heavy AI workspace, including access controls, encrypted transport, logging, operational monitoring, least-privilege permissions, provider due diligence, and internal controls for production systems.
No online service can guarantee perfect security. You are responsible for protecting your account credentials, managing workspace access, and using secure export and sharing practices.
Your UK GDPR rights
Depending on the context, you may have the right to request access, correction, deletion, restriction, portability, objection to processing based on legitimate interests, and withdrawal of consent where processing is based on consent.
To exercise rights, contact [email protected]. We may need to verify your identity, understand the relevant workspace, and account for rights of other people whose data appears in shared projects or generated media.
If you are unhappy with how we handle personal data, you can complain to the UK Information Commissioner's Office at ico.org.uk, or contact the ICO at Wycliffe House, Water Lane, Wilmslow, Cheshire SK9 5AF, United Kingdom.
Automated decisions
Linocut AI uses automated systems to generate, transform, classify, moderate, route, and improve creative workflows. These systems are intended to assist creative production, not to make decisions with legal or similarly significant effects about individuals.
If we introduce features that make automated decisions with legal or similarly significant effects, we will provide additional notice and controls required by law.
Children
Linocut AI is not intended for children under 16 unless a parent, guardian, school, or authorised organisation has approved the use and the relevant plan allows it.
We do not knowingly collect personal data from children in a way that is inconsistent with applicable law. If you believe a child has provided personal data without appropriate permission, contact [email protected].
Changes to this policy
We may update this policy as Linocut AI develops, as we add new tools or workflows, or as legal requirements change. Material changes will be posted on this page with an updated date and, where appropriate, communicated in-product or by email.