Privacy Policy
Last updated: August 2026
1. Information We Collect
When you use WorkShot, we may collect:
- Uploaded Photos: Photos you upload for headshot generation are processed by our AI service and stored temporarily in secure cloud storage (Cloudflare R2).
- Generated Images: AI-generated headshots are stored for download and deleted after a defined retention period.
- Usage Data: We collect anonymous usage analytics (via Google Analytics 4) to improve our service. Analytics data is aggregated and not linked to your uploaded photos.
- Session Data: Anonymous browser identifiers used for fair-use limits, generation jobs, and optional extra-generation credits. The identifier is stored in your browser so the same browser can access its results and paid credits.
- Payment and Order Data: If you purchase extra generations, Creem processes the payment as Merchant of Record. WorkShot may receive and store payment-related identifiers and status information needed to deliver and support the purchase, such as checkout/order IDs, product/plan, payment status, purchase timestamps, customer email supplied through checkout, and credit entitlement records. WorkShot does not receive or store your full payment-card number.
2. How We Use Your Information
- To generate professional headshots from your uploaded photo.
- To provide and improve our service.
- To enforce free fair-use limits and optional paid extra-generation credits.
- To confirm purchases, deliver purchased credits, investigate payment problems, prevent duplicate credit grants, and handle refunds or chargebacks.
3. Photo Processing, Service Providers, and Storage
WorkShot does not send your photo to a separate AI classifier for a portrait-suitability approval step before generation. The upload flow uses local/browser and server file checks for supported formats, readable image data, file size, and minimum dimensions; photo-quality guidance is advisory.
When generation starts, WorkShot stores the uploaded photo temporarily in Cloudflare R2 and sends a short-lived signed image URL, together with a server-constructed generation prompt, to our third-party AI inference provider so the requested professional headshot can be generated.
These service providers process data only as needed to operate the generation request. We do not sell your uploaded photos or generated images, and we do not share facial images with advertising networks.
If you buy extra generations, payment checkout is hosted and processed by Creem, which acts as Merchant of Record. Creem processes payment credentials and applicable transaction taxes; WorkShot receives only the payment/order data needed to confirm the purchase and deliver credits. We do not receive or store your full card number.
Uploaded photos and generated headshots remain in Cloudflare R2 for the limited retention period described below. Access to stored images is controlled by session-based authentication and short-lived signed URLs.
4. Sensitive Data Notice (Facial and Biometric Images)
Facial images are considered sensitive personal data under many privacy laws (including GDPR Art. 9 and state biometric privacy laws). We take extra care to protect your privacy:
- Uploaded photos are stored under a Cloudflare R2 lifecycle rule configured to expire objects after 30 days.
- Generated headshots are available during the retention window and are likewise scheduled to expire after 30 days; storage removal is handled automatically by Cloudflare R2 lifecycle processing.
- We never use your uploaded photos or generated images for AI model training, machine learning datasets, or algorithmic improvement.
- We disclose images only to service providers that are necessary to operate the generation request; we do not sell facial images or share them for advertising.
- We do not use facial recognition to identify who you are, compare your identity against another person, or create a biometric template.
5. AI Disclosure
All headshots generated by WorkShot are created using artificial intelligence. The results are AI-generated images based on your uploaded photo and should not be represented as actual photographs taken by a photographer. See our Disclaimer for details on limitations and prohibited uses.
6. Data Retention and Deletion
- Uploaded photos: Cloudflare R2 is configured to expire stored objects after 30 days; lifecycle processing then removes expired objects automatically.
- Generated headshots: Stored under the same 30-day R2 lifecycle rule. Availability can end when the stored object expires and is removed.
- Browser/session identifiers: The anonymous identifier may remain in your browser storage until you clear site data or the identifier is replaced. Server-side records using that identifier are retained as needed for fair-use enforcement, generation history, purchase delivery, fraud prevention, and support.
- Payment/order records: Purchase, entitlement, refund, and dispute records may be retained as needed for transaction support, accounting, fraud prevention, chargeback handling, and legal obligations even after the associated image files are deleted.
- Analytics data: Retained by Google Analytics under their standard data retention policy.
You may request immediate deletion of your photos and generated images at any time, even before the 30-day retention period ends. See Section 7 below.
7. Your Rights and Deletion Requests
You have the right to:
- Request deletion of your uploaded photos and generated images at any time by contacting support@workshot.work with "Deletion Request" in the subject line.
- Request a copy of your stored data.
- Opt out of analytics tracking by using browser-based opt-out tools or ad-blockers.
We review deletion requests sent to the support address and process them as soon as reasonably possible. We do not publish a guaranteed manual-deletion response time. Once deleted, photos and images cannot be recovered.
8. Advertising
WorkShot currently does not load Google AdSense advertising on the site. If advertising is enabled in the future, we will update this policy to describe the advertising provider, cookies, and available privacy controls before relying on that advertising configuration. We do not share your photos or facial images with advertising networks.
9. Contact
For privacy-related inquiries or deletion requests, contact support@workshot.work or visit our Contact page.