Privacy

Privacy
Policy.

Last updated: June 2026. Plain English, not legal advice - consult an attorney if you need it.

01

What we collect

When you use Puzzably, we collect the following categories of personal information:

Account and identity: Your name and email address, provided when you create an account or place an order.

Shipping address: Collected at checkout to fulfill and ship your order.

Payment information: Processed by Stripe. We receive a tokenized confirmation of payment; we do not store your full card number, CVV, or expiry date.

Prompt text: The text prompt you submit to generate your puzzle image. This is stored so we can reproduce or reference your design if needed.

Usage data: Anonymized analytics about how pages are used (e.g., page views, session length). See the Cookies section below.

02

How we use your data

We use the data we collect to:

Fulfill your order: Pass your shipping address and order details to our print and fulfillment partner (Prodigi) so your puzzle is made and delivered.

Process payment: Pass your payment details to Stripe for secure processing.

Communicate about your order: Send order confirmation, production updates, and tracking information to your email address via Resend.

Generate your image: Send your prompt text to Replicate to produce the AI-generated image for your puzzle.

Improve the product: Analyze aggregated, anonymized usage data to understand how the Studio and website are used.

Marketing (optional): If you have opted in, we may send occasional product updates. You can unsubscribe at any time via the link in any email.

03

Who we share data with

We only share your data with the service providers necessary to operate Puzzably. We do not sell your personal information to any third party.

ProviderRole and data shared
StripePayment processing. Handles card data on your behalf. We do not see or store full card numbers.
ProdigiPuzzle fulfillment and printing. Receives your name and shipping address to produce and ship your order.
ResendTransactional email delivery (order confirmation, tracking, account notifications). Receives your email address.
SupabaseDatabase and back-end hosting. Stores your account information, order records, and prompt history.
ReplicateAI image generation. Receives your prompt text to generate your puzzle image.
VercelWebsite hosting and edge delivery. Processes request logs that may include IP addresses.

Each sub-processor is bound by their own privacy policy and applicable data protection law. Links to their privacy policies are in the table above.

04

Retention

We retain your account and order information for as long as your account is active and for a reasonable period afterward to comply with legal obligations, resolve disputes, and enforce our agreements.

If you request deletion of your account, we will delete or anonymize your personal information within a reasonable time, except where we are required to retain it by law (for example, financial records for tax compliance).

Prompt text associated with a completed order may be retained in anonymized form for product improvement purposes.

05

Cookies and analytics

We use cookies and similar technologies to keep you logged in and to understand how visitors use the site. We use privacy-friendly analytics that do not profile individual users or share data with advertising networks.

You can disable cookies in your browser settings. Disabling session cookies will prevent you from staying logged in.

06

Your rights

Depending on where you live, you may have rights over your personal information. We aim to honor these rights for all customers, regardless of jurisdiction.

California residents (CCPA/CPRA): You have the right to know what personal information we collect, to request deletion of your data, to opt out of the sale of your personal information (we do not sell it), and to non-discrimination for exercising these rights.

EEA, UK, and Swiss residents (GDPR and equivalents): You have the right to access, correct, or delete your personal data; to restrict or object to processing; and to data portability. You also have the right to lodge a complaint with your local data protection authority.

To exercise any of these rights, email hello@puzzably.com. We will respond within 30 days. We may need to verify your identity before acting on a request.

07

Security

We use industry-standard security measures including HTTPS encryption in transit and access controls on our database. No method of transmission over the internet is completely secure. If you believe your account has been compromised, contact us immediately at hello@puzzably.com.

08

Changes and contact

We may update this Privacy Policy from time to time. When we do, we will update the "Last updated" date above. For material changes, we will notify you by email.

Questions, requests, or concerns? Email us at hello@puzzably.com. We read every email.

Questions?
Just ask.

hello@puzzably.com. We read every email.