Privacy Policy

Last updated October 3, 2026

What we process

HumanizeFlow edits English drafts. Your draft, writing sample, protected phrases and output are sent to Cloudflare Workers AI to perform the rewrite and preservation checks. We do not put that content in application logs, product analytics, or our D1 database. Your own edits remain in the browser unless you submit another rewrite.

Cloudflare provides our hosting, database and inference. Requests can be processed on its global network; we do not offer a US-only or EU-only processing guarantee. Cloudflare states that Workers AI customer content is not used to train models or improve services without explicit consent. See Cloudflare’s data usage policy.

Browser recovery and cookies

We store your current draft in this tab’s session storage to recover it after a page reload or a sign-in redirect. We do not persist your writing sample or generated result in browser storage. Closing the tab normally clears session storage; browser session restoration may restore it. Use Clear in the editor to remove the draft. Sign-in uses necessary, secure session cookies. We have no advertising cookies or third-party analytics SDK.

Accounts and optional saved voices

If you create an account, we store your name, email, verification status and authentication records. Passwords are hashed by Better Auth. Google sign-in uses your Google account identity. We do not automatically merge accounts by matching email addresses. Verification and reset emails are delivered through Resend when enabled.

Pro users may explicitly save up to three writing samples in voice profiles. Those samples are stored in D1 until you delete the profile or account. This is separate from a temporary sample used for a single rewrite. We do not use drafts or saved samples to train models.

Operational records and retention

RecordRetention
Run IDs, content hashes, counts, timings, status and model version30 days
Minimal product events and feedback choices30 days
Hashed network identifiers and quotasUp to 90 days; no raw IP in app tables
Contact requests30 days
Account and saved voice recordsUntil account/profile deletion
Payment event IDs and subscription statusAs needed to reconcile subscriptions and protect transaction integrity

Our events record a run ID, event name and an allowed feedback choice. They do not include draft text, voice samples, output or protected phrase values. We use salted hashes of IP addresses to enforce free limits. Hosting and payment providers maintain their own security, billing and legal records under their policies.

Payments

When the Pro Pilot opens, Pancake processes checkout, recurring billing, taxes and payment details. We send a stable account identifier and your email to link the purchase to your account. Card numbers are not stored or processed by our app. We receive verified payment events and subscription status. Visit Pancake for its customer and privacy information.

Your choices

Use the editor without an account. Delete a saved voice from your account, clear the local draft, and cancel renewal before deleting an account with an active subscription. Account deletion removes authentication data, saved voices and account-linked application data. Providers may retain payment or security records independently. Contact us for access, correction, deletion or privacy questions. We do not sell personal information.

Avoid entering secrets, health records, payment-card details or other information you do not have permission to share with a hosted AI service. This service is not designed for children under 18.

Contact and changes

Send questions through the contact form. It saves your email and message so the service operator can respond. We will update this page when processing practices change.