← Back to Home

Security Policy

Effective Date: February 27, 2026

At Artizen, protecting your data and creative work is a top priority. We implement industry-standard security practices across every layer of our platform.

Infrastructure & Hosting

Encryption in Transit

All traffic to and from Artizen is encrypted using TLS (HTTPS). We enforce HTTPS across all pages, APIs, and services. Unencrypted HTTP connections are automatically redirected.

Encryption at Rest

Your data, including uploaded photos and design assets, is stored in encrypted databases. We use Supabase with PostgreSQL, which encrypts data at rest using AES-256 encryption.

Global Edge Network

Our website and APIs are served through Cloudflare's global edge network, which provides DDoS protection, Web Application Firewall (WAF), and bot mitigation out of the box.

Authentication & Access

Email Verification

All accounts require email verification before activation. Verification tokens are single-use and expire after use, preventing token reuse or replay attacks.

Secure Cookies

Session cookies are set with HttpOnly, Secure, and SameSite flags to prevent cross-site scripting (XSS) and cross-site request forgery (CSRF) attacks.

API Security

All API keys and secrets are stored as environment variables and are never exposed in client-side code. Server-side API routes run on edge runtimes with no direct database access from the browser.

Data Protection

Minimal Data Collection

We only collect the data necessary to provide our services. We do not sell, rent, or trade your personal information to third parties for marketing purposes.

No AI Training on Your Data

Your photos, prompts, and designs are never used to train our AI models or any third-party models. Your creative work remains yours.

Data Retention

We retain your data only as long as necessary to provide our services. You can request deletion of your account and all associated data at any time by contacting us.

Content Safety

AI Safety Filters

Our AI generation pipeline includes active safety filters that block violent, explicit, or otherwise harmful content. These filters cannot be bypassed or disabled by users.

Abuse Prevention

We monitor for fraudulent activity, bot abuse, and duplicate accounts in our waitlist and giveaway systems. Accounts found violating our terms are permanently banned and their entries removed.

Responsible Disclosure

Reporting Vulnerabilities

If you discover a security vulnerability in Artizen, we encourage you to report it responsibly. Please email us at hello@artizen9.com with details of the issue. We take all reports seriously and will respond promptly.