CoverForge Privacy Policy
Effective: July 15, 2026
CoverForge is an iOS book-cover creation service operated by its independent developer ("CoverForge," "we," "us," or "our"). This Privacy Policy explains what information CoverForge processes, why it is processed, who receives it, how long it is retained, and your choices.
1. Information processed on your device
CoverForge stores your language preference, local project library, generated covers downloaded to the app, and related project metadata on your device. Local projects remain there until you delete them, delete your CoverForge account through the app, or remove the app and its data.
2. Information sent to or retained by the service
- Cover inputs and output: book title, author name, genre, selected style, aspect ratio, creative or mood brief, and generated cover image.
- Account information: a pseudonymous Sign in with Apple user identifier and, if Apple provides them, your name or private relay email.
- Authentication information: an Apple identity token, authorization code, one-time nonce, CoverForge session token, and a server-side Apple refresh token when available. These support authentication, replay prevention, sign-out, and authorization revocation during account deletion.
- Purchase information: App Store product and transaction identifiers, signed transaction information, subscription state, credit balances, entitlement history, and refund or revocation status. CoverForge does not receive your payment-card number.
- Service, security, and diagnostics: request time and status, generation model and size metadata, prompt hash and length, rate-limit information, errors, and IP address or comparable infrastructure logs used for security and troubleshooting.
- Communications: support messages, privacy requests, and content or rights reports you choose to email.
3. How we use information
- Generate and deliver the cover you request.
- Authenticate accounts and synchronize credits and subscriptions.
- Verify App Store purchases, refunds, and entitlement changes.
- Prevent credential replay, duplicate transaction redemption, fraud, abuse, and service attacks.
- Operate backups, troubleshoot failures, answer support requests, and maintain reliability.
- Comply with law and enforce the CoverForge Terms of Use.
4. AI generation and service providers
When you choose Generate and have granted the in-app AI data permission, CoverForge sends the inputs needed for your request to the CoverForge backend. The backend forwards them through its configured API gateway to OpenAI's image model. The returned image is delivered to the app and temporarily stored for delivery, retry, security, and support.
Information may also be processed by:
- Apple for Sign in with Apple, StoreKit, subscriptions, purchases, refunds, and account services.
- OpenAI's image model for the requested image generation.
- API gateway, hosting, storage, backup, network-security, and email providers needed to operate CoverForge.
We limit transfers to information reasonably needed for the service and select providers and safeguards intended to protect it consistently with this policy. We do not authorize providers to sell your information or use it for third-party advertising on our behalf. Providers may process data in countries other than your own, so international data-protection rules may apply.
5. Retention and deletion
- Generated cover-image files on the CoverForge server expire within 24 hours.
- Active account, entitlement, purchase, and generation metadata is retained while needed to provide and secure the service or meet legal obligations.
- Daily backups contain account and generation ledgers but not generated-image files. Local backup archives are scheduled for deletion after 30 days and may remain until the next daily cleanup.
- After account deletion, deleted live data may remain in restricted backups until the applicable backup expires and is not restored except for disaster recovery or legal necessity.
- CoverForge may retain a limited pseudonymous transaction-claim record, such as a hashed transaction key, hashed account identifier, product identifier, and claim date, to prevent duplicate credit redemption, fraud, or refund abuse and meet legal obligations. It does not retain the deleted prompt or cover image for this purpose.
- After deletion, CoverForge may also retain a one-way pseudonymous account hash and minimal timestamps showing that free-preview eligibility was already claimed. This record is used only to prevent repeated introductory-credit abuse. It does not retain the deleted prompt or cover image.
- Support and legal communications are retained only as reasonably necessary to resolve the matter, maintain appropriate records, or meet legal obligations.
6. Sale, advertising, and tracking
We do not sell your personal information. CoverForge does not use it for cross-context behavioral advertising and does not track you across unrelated apps or websites. The app has no third-party advertising system.
7. Security
CoverForge uses encrypted transport, device Keychain storage, restricted server files, authenticated endpoints, and access-controlled backups. No transmission or storage method is completely secure, and absolute security cannot be guaranteed.
8. Your choices and privacy rights
- You can decline or withdraw third-party AI permission in CoverForge Settings.
- You can delete individual local projects inside the app.
- You can permanently delete your CoverForge account from Settings → Account & Security → Delete Account.
- You can manage or cancel an App Store subscription separately in your Apple account. Deleting your CoverForge account does not cancel that subscription.
- You may email us to request access, correction, deletion, or a copy of applicable personal information.
Privacy rights vary by jurisdiction. We honor rights that apply to your request and may verify the request to protect the account from unauthorized access.
9. Children
CoverForge is intended for authors and creators and is not directed to children under 13. Contact us if you believe a child provided personal information improperly.
10. Changes to this policy
We may update this policy when the product, providers, or law changes. We will post the new effective date and give additional notice when required.
11. Contact
For privacy questions or data-rights requests, email wuyuxai@gmail.com with the subject "CoverForge Privacy Request."
Read the Terms of Use or visit CoverForge Support.