DRAFT — PROFESSIONAL LEGAL REVIEW REQUIRED
This page contains unresolved placeholders and is not ready for publication or legal reliance.
FixLens legal draft · Version draft-2026-09-07
Privacy Policy
This draft explains how [INSERT LEGAL BUSINESS NAME] would handle personal information through FixLens.
Draft status
DRAFT — PROFESSIONAL LEGAL REVIEW REQUIRED. Complete the placeholders and confirm actual data flows, vendors, locations, lawful bases, security practices, deletion procedures, and user rights before publication.
Information collected
- Account information: email address, password hash, account timestamps, and acceptance records.
- User content: submitted photographs, descriptions, and generated repair reports.
- Usage and technical data: analysis counts, security logs, session identifiers, device/browser information, and approximate network information where logged.
- Billing metadata: Stripe customer, subscription, invoice, and status identifiers. FixLens does not receive or store complete card numbers.
Why information is used
- Provide, secure, and troubleshoot FixLens.
- Authenticate users, enforce allowances, save reports, and administer subscriptions.
- Respond to support, legal, safety, or fraud concerns.
- Meet legal obligations and enforce agreements.
AI processing
Photos and descriptions are sent to OpenAI to generate the requested report. Identify the applicable OpenAI service terms, processing region, retention controls, and data-processing agreement before launch. Do not state that content is never retained unless the configured service and contracts support that statement.
Service providers and disclosures
Expected providers include OpenAI for AI processing, Stripe for billing, and [INSERT HOSTING, EMAIL, ANALYTICS, LOGGING, AND SUPPORT PROVIDERS]. Information may also be disclosed where legally required, to protect safety and rights, or during a properly structured business transaction.
Retention
Account, report, consent, billing, backup, and security data are retained for 30 days after account deletion, unless a longer period is required by Australian law, subject to legal, fraud-prevention, dispute, and backup requirements. Define separate periods if they differ.
Security
FixLens uses measures such as password hashing, HttpOnly session cookies, access controls, and verified payment webhooks. No system can guarantee absolute security. Document incident response, access review, encryption, backup, and vendor-management controls before launch.
Rights and choices
Depending on location, users may have rights to access, correct, delete, restrict, object, withdraw consent, or obtain a portable copy of information. Dashboard export and deletion tools are provided. Requests and appeals: fixlenshelp@gmail.com. Identity may need to be verified.
International users, children and changes
Specify processing locations and transfer safeguards: [INSERT DETAILS]. FixLens is not intended for children under [INSERT AGE]. Material policy changes should be notified and, where required, consent obtained again.
Contact
Controller/business: [INSERT LEGAL BUSINESS NAME]. Address: [INSERT BUSINESS ADDRESS]. Privacy contact: fixlenshelp@gmail.com. Regulator or representative details: [INSERT IF REQUIRED].
End of draft. Resolve every bracketed placeholder and obtain professional legal review before launch.