Privacy policy
Effective and last updated: September 29, 2026
What stays on your device, what AI generation sends to our providers, and the choices you have.
1. Who is responsible
Signature Studio is operated by 李靖 (Li Jing), an individual developer based in China. Li Jing is responsible for this service and its processing of personal data. Contact for support, privacy, billing and abuse reports: support@ai-signature-generator.com.
2. Data we process
- Type and Draw: names, font settings and drawing strokes are edited on your device. When you request a download, signature outlines are sent to our server to produce the selected file. These outlines are processed in memory, are not sent to APIMart and are not saved to account history or image storage. Loading the website also involves hosting requests and usage measurement as described below.
- AI generation: the name you enter, chosen style and mode, model name, request and provider task identifiers, timestamps, status, error messages, processing cost and resulting signature image. These records are associated with a visitor identifier or your account.
- Google login: Google subject identifier, verified email address, profile name and avatar URL. We request basic OpenID, email and profile access, not Gmail, Drive or contacts. We use a hashed session token to maintain login.
- Purchases: account and order identifiers, email, product, price, currency, payment and refund status, purchased credits, use and expiry. We record the first clean-export access event for each paid pack, without its Type / Draw signature content, to handle entitlements and refund requests. Card numbers and card security codes are entered at Waffo Pancake and are not stored by Signature Studio.
- Support and reports: information you choose to send, including your reply address, order or generation reference, description and relevant evidence.
- Technical requests: Cloudflare processes network and security information, which may include IP addresses, request URLs and timestamps, to serve the website and limit abuse.
3. How AI processing works
When you select Generate in AI mode, our server combines the supplied name and selected style with a signature-design instruction and sends it to APIMart. The currently configured image model is Z-Image Turbo. APIMart and its model infrastructure process the request; our server retrieves the image, prepares its transparent background and stores the result in private Cloudflare R2 storage. Basic output processing checks image format and size; it is not an NSFW or identity check.
We do not include your Google email, account profile, payment details or analytics fingerprint in the AI request. We do not use your names or images to train or fine-tune our own AI models. We have not independently verified zero retention or exclusion from training across APIMart and its downstream providers, so we do not promise those protections. Review APIMart’s privacy policy before using AI mode. Do not enter confidential information or another person’s name without authority.
Generated results have no public gallery. Access to our stored images is checked against the current visitor session or account. You can download and share your own files; copies you share are outside our access controls. Signing in can associate existing visitor AI history with your account. Changing or losing a visitor cookie can remove your access to that history without deleting the stored records.
4. Why we use the data
Where data-protection law requires a legal basis, we process account, generation and purchase data to provide the service you request and fulfill our contract; use support, security and fraud-prevention records for service delivery and legitimate operational interests; and retain required payment records to meet legal obligations. Optional processing relies on consent where applicable. We do not sell personal data, use it for targeted advertising, or make automated decisions about employment, credit or other legally significant eligibility.
5. Cookies and browser storage
ss_visitor: identifies anonymous AI history and its allowance, up to 30 days.ss_session: maintains login, up to 30 days; logging out invalidates the session.ss_oauth: protects a Google login attempt, up to 10 minutes.__Host-signature_analytics: random analytics browser identifier, up to 90 days.ss_analytics_optout: remembers your first-party D1 measurement preference for one year; it does not control Google Analytics._gaand_ga_0CM6PP7QV6: Google Analytics cookies used to distinguish browsers and maintain session state. Google’s default expiry is two years, subject to browser limits and Analytics settings.- Tab session storage keeps the AI form draft and a measurement session identifier. Measurement sessions are renewed after 30 minutes without an update. Local fonts are served with the website.
Essential cookies support login, private history and allowance checks. Blocking them can prevent these features from working. A cookie’s expiry is not the deletion date for related database records.
6. Usage measurement and browser fingerprint
First-party D1 measurement
On published public pages we measure page paths, referrer hostname, visit times and cumulative time while a page is visible. We store keyed hashes of a random browser identifier, session identifier and an approximate browser fingerprint in our own Cloudflare D1 database. Your browser first hashes its user agent, platform, language, time zone, rounded screen dimensions and color depth; our server applies a secret-keyed hash before storage. We do not use canvas, audio or font enumeration.
These identifiers are pseudonymous, not guaranteed anonymous. Different browsers can share a fingerprint, and a browser’s fingerprint can change. Our D1 analytics records do not contain raw IP addresses, underlying fingerprint values, URL query strings, names entered in the editor, generated images, email addresses or Google IDs. We do not join analytics with accounts or track visits across unrelated websites. Cloudflare separately processes IP addresses for delivery and rate limiting.
Do Not Track and Global Privacy Control signals disable our first-party D1 collection. You can also turn off D1 measurement below; this stops future D1 fingerprint and visit collection on this browser. These controls do not disable Google Analytics. Clearing only the analytics identifier does not necessarily change the fingerprint. Existing detailed analytics records are removed by a daily cleanup after 90 days.
First-party D1 measurement on this browser
Checking your browser preference…
Your choice is saved for one year on this browser. It stops future first-party D1 analytics, including the browser fingerprint; it does not disable Google Analytics; it does not delete existing records or essential login cookies. Clearing cookies removes this preference.
Google Analytics 4
We load Google Analytics 4 (measurement ID G-0CM6PP7QV6) automatically on every page, without waiting for a consent prompt or sign-in. This integration is independent of our D1 measurement preference and does not check Do Not Track or Global Privacy Control before loading. Google processes page URLs and titles, referring pages, browser and device information, cookie identifiers, and usage events to provide traffic and engagement reports. Page URLs may include query strings. We do not add signature names, signature images, account email addresses or payment details as custom Analytics parameters.
Google Analytics uses its own cookies and retention settings; our D1 90-day cleanup does not delete Google Analytics data. Browser tracking protection or content blockers may prevent collection. Learn more about Google Analytics cookies and Google’s privacy practices.
7. Providers and international processing
- Cloudflare: website hosting, request security, D1 databases, private R2 images, first-party measurement storage and Email Routing for messages sent to our support address.
- Google: Google Analytics traffic and engagement measurement, optional account authentication and the basic profile you authorize; Gmail receives support messages forwarded from our public support address.
- APIMart: AI prompt and image processing through its model infrastructure.
- Waffo Pancake: hosted payment, receipt, tax, fraud-prevention and refund processing. We send the purchasing account ID, verified email, product and order reference.
Our operator is in China and providers operate internationally. Data may be processed outside your country, including in the United States and other provider locations. We have not established a country-specific storage guarantee. We use encrypted connections and restricted application access; we do not claim an unverified certification or transfer agreement. Providers’ independent processing follows their own policies. We may disclose relevant records when legally required or necessary to investigate fraud, protect rights or respond to a valid abuse report.
8. Retention and deletion
Detailed first-party D1 analytics records follow the 90-day cleanup described above. Google Analytics retention is managed separately in Google Analytics. Login sessions expire after 30 days and can be invalidated by logout; expired database records are not currently subject to a separate automatic purge. Account data, AI request records and stored images have no automatic deletion schedule at present. Credit expiry after 12 months does not delete images or order records.
You may request deletion of account, AI history and images. We review requests and remove data we no longer need, while retaining records necessary for accounting, disputes, security or applicable legal duties. Billing, support and abuse-report records do not currently have an automatic deletion schedule; they are reviewed when handling a deletion request. Provider-held records and backups may follow different retention rules. We cannot recall downloaded copies from other people.
9. Your rights and requests
Depending on applicable law, you can request access, correction, a portable copy, deletion or restriction of your data, object to processing, or withdraw consent without affecting earlier lawful processing. Contact support@ai-signature-generator.com and describe the request. We may ask for proportionate proof of account ownership; do not send passwords, card details or identity documents unless specifically necessary through an agreed secure method. We respond within applicable legal deadlines and explain any required extension. You may complain to your local data-protection authority.
10. Children, security and policy changes
The service is for adults aged 18 or older. We do not knowingly collect children’s data; report suspected collection through the privacy contact. We use HTTPS, server-side credentials, hashed login tokens and access-controlled storage. No system provides absolute security. We investigate incidents and notify affected people or authorities when required. Material policy changes will be announced on the site, with an updated effective date; we obtain fresh consent where required. We do not send marketing newsletters.