Privacy Policy
Last updated August 17, 2026
BrandGuard is built by IpsoLux (“we”, “us”). This page explains what we collect when you join the waitlist or use the product, why, and who we share it with. It applies to brandguard.ipsolux.com and the BrandGuard app.
What we collect
- Waitlist signups — just the email address you give us.
- Account info — name and email, and either a password (stored as a salted hash, never in plain text) or your Google profile if you sign in with Google.
- Brand profile data — whatever you enter or upload to describe a brand: colors, fonts, logos, tone-of-voice guidelines, and PDF brand guideline documents.
- Content you connect or submit for analysis — if you connect Instagram or Facebook, the posts, captions, and images those platforms return to us via their official APIs; screenshots we capture of your website; images and captions you upload or paste into Compose or a manual check.
- Usage data — product analytics (pages viewed, features used) and error/crash reports, to understand what’s broken or confusing.
- Payment info — handled entirely by Stripe. We never see or store your card details ourselves.
How we use it
To run the brand-consistency checks you ask for, send you account and product emails (verification, scan alerts, a weekly digest — each with its own on/off setting), keep the product working and secure, and improve it over time. We don’t sell your data, and we don’t use your brand assets or scanned content to train any AI model.
AI analysis
Checking a post or scan against your brand guidelines works by sending the relevant image and/or text to Anthropic’s Claude API for analysis. That content is subject to Anthropic’s own API data handling terms; Anthropic does not use API inputs to train its models.
Who we share data with
We use the following services to run BrandGuard. Each only sees what it needs to do its job:
- Anthropic (Claude API) — AI analysis of your content against your brand guidelines
- Vercel — application hosting
- Neon — database hosting
- Cloudflare (R2) — file storage for uploaded/scanned assets
- Resend — sending account and notification emails
- Stripe — payment processing
- PostHog (EU-hosted) — product analytics
- Sentry — error monitoring
- ScreenshotOne — website screenshot capture
- Meta (Instagram, Facebook) — only if you connect those channels, via their official APIs
- Google — only if you sign in with Google
How long we keep it
For as long as your account is active. If you delete your account or ask us to, we delete your data within a reasonable time, except where we’re required to keep something (like billing records) for legal or accounting reasons.
Your rights
You can ask to see, correct, export, or delete your personal data, or object to how we use it, at any time — just email us (below). If you’re in the EU/EEA or UK, these are your rights under GDPR; we honor the same rights for everyone regardless of where you’re located.
Cookies
We use a session cookie to keep you signed in, and analytics cookies (PostHog) to understand product usage. We don’t use advertising or cross-site tracking cookies.
Children
BrandGuard is a business tool and isn’t directed at, or knowingly used by, children under 16.
Changes
If this policy changes in a meaningful way, we’ll update the date at the top of this page and, if you have an account, let you know.
Contact
Questions, requests, or concerns about your data: studio@ipsolux.com