Effective July 23, 2026
Privacy and data use
Patsy is a business service for photographers. We use studio information to provide the service, not to build advertising profiles or sell personal information.
Who operates Patsy
Patsy and MeetPatsy.com are operated by PA Digital Studio in Pennsylvania. In this policy, “Patsy,” “we,” “us,” and “our” refer to PA Digital Studio when it provides the Patsy service.
Privacy questions and requests can be sent to andrew@padigitalstudio.com or discussed with human support at (724) 638-7754.
What we collect
Public conversations
Before signup, we collect the messages you send, the mode you choose, facts you provide about your photography business, any business listing you select, the draft directions Patsy creates, and a temporary session identifier. Do not put confidential client information, payment-card details, health information, or irreplaceable files in the public conversation.
Account and subscription information
We collect your name, studio name, email address, chosen subdomain, authentication records, plan, trial and billing status, Patsy Pass and referral records, consent records, account activity, and support history. Stripe handles your full card number. We receive Stripe customer, subscription, invoice, payment, and fraud-prevention identifiers rather than the complete card details.
Studio and client-workflow information
Depending on the tools you use, Patsy stores website copy and versions, uploaded photographs and logos, gallery and favorite records, leads, appointments, products, orders, review requests, blog drafts, SEO settings, local-search results, approvals, action history, and conversations with Patsy or human support.
Technical and safety information
We collect ordinary service logs such as browser and device information, IP address, request time, page and feature events, error details, authentication and security events, provider webhook records, and abuse-prevention signals. This helps us keep the service working, measure the public site and explainer video, prevent fraud, and investigate failures.
How we use information
- Provide, personalize, secure, and support the Patsy service.
- Keep useful context across Website, Business Coach, Marketing, and SEO modes.
- Create drafts, previews, revisions, galleries, products, research, and other work you request.
- Record approvals before consequential actions such as publishing or sending a review request.
- Activate trials, manage subscriptions, apply valid referral rewards, prevent abuse, and keep billing records.
- Deliver account emails, password-reset messages, service notices, and support replies.
- Measure performance, diagnose errors, improve features, and protect the service.
- Meet legal, accounting, tax, dispute, and security obligations.
We do not sell personal information. We do not use studio or client information for third-party targeted advertising. We do not publish a photographer's name, work, site, feedback, or results as marketing without separate permission.
AI and conversations
Patsy currently uses Anthropic's commercial API to generate conversational responses and assist with supported studio work. The messages and relevant workspace context needed for a request are sent to Anthropic. Tool results can include studio facts and, when relevant, names, metadata, or links associated with an uploaded asset. Do not assume a client fact is private merely because it was typed into an AI conversation.
Anthropic states that commercial API inputs and outputs are not used to train its generative models unless the customer opts into a separate development program or submits feedback. Its standard API retention is generally up to 30 days, subject to safety, legal, abuse-prevention, and product-specific exceptions. Anthropic's current terms control its processing. Read Anthropic's model-training explanation and retention explanation.
Patsy separately stores your conversation history and action records in your workspace so the service can retain context, show what happened, and support review or human assistance. Refreshing a public session can clear the local conversation view, but that should not be treated as a verified deletion request.
AI output can be incomplete or wrong. Review prices, policies, promises, client communications, and published work before approving them. Patsy is not a legal, accounting, tax, medical, or archival system.
Service providers and what they receive
We use providers to operate Patsy. Their own terms and privacy notices also apply to their processing.
Supabase
Hosts authentication, tenant-scoped database records, and uploaded media used by the platform. It receives account, studio, workflow, media, and security information needed to store and retrieve your workspace. Supabase privacy notice
Vercel, Cloudflare, and OpenAI Sites
Host and deliver application or marketing pages and process ordinary request, performance, and security logs. Customer sites may also be delivered through the managed site renderer and domain infrastructure. Vercel privacy notice and Cloudflare privacy policy
Stripe
Handles account payment methods, trials, subscriptions, invoices, connected-account onboarding, customer checkout, fraud checks, refunds, and referral credits. Stripe receives identity, contact, payment, transaction, and device information needed for those services. Stripe Privacy Center
Resend
Delivers verification, password-reset, notification, and support email. It receives recipient addresses, message content, delivery metadata, and related logs. Resend privacy policy
Prodigi
When you connect print fulfillment or submit an order, Prodigi receives the print asset, product selections, shipping recipient, order details, and any other information required to quote, produce, and deliver the order. Sandbox orders are test records and are not produced or charged by Prodigi. Prodigi privacy and cookie policy
DataForSEO and public business-data providers
When SEO research is requested, DataForSEO receives search phrases, target locations, language, device, and domain or competitor information needed to return rankings and local-search results. Google business-data endpoints can receive listing searches or identifiers when you choose a public business listing. DataForSEO privacy policy
PA Digital Studio human support
When you request a person, assigned PA Digital Studio support can view the relevant workspace, conversation, recent messages, action history, and problem summary so you do not have to repeat the issue. Access is for support, operations, safety, and authorized service work.
Retention, cancellation, and deletion
We retain account and studio information while the account is active and for a reasonable recovery period after cancellation. We can retain billing, consent, referral, fraud, approval, support, dispute, tax, and security records longer when needed for legal or operational obligations. Backups and provider logs can persist after a record disappears from the active application.
Plan limits can pause new uploads or new active products. They do not authorize Patsy to silently discard a real lead, confirmed appointment, order history, or existing product. Patsy is not a permanent archive. Keep independent originals of photographs, contracts, financial records, client releases, and anything difficult to recreate.
A cancellation is not automatically a verified deletion request. To request deletion, email andrew@padigitalstudio.com from the account address. We may need to verify identity, preserve records required by law, complete an active order, resolve a dispute, or keep de-identified security records. We will explain any information we cannot delete.
Your choices and rights
- Review and correct account and studio information.
- Ask for a copy or practical export of supported workspace records.
- Ask us to correct, restrict, or delete personal information, subject to legal and operational exceptions.
- Cancel the subscription through the billing portal.
- Decline marketing use of your work unless you separately agreed to it.
- Ask for human support or challenge an AI-generated recommendation.
Rights vary by location. We will not discriminate against someone for making a valid privacy request. An authorized agent may be required to provide proof of authority.
Security and shared responsibility
We use tenant-scoped access controls, authentication, provider webhook verification, approval records, encrypted transport, and operational logging to protect the service. No online system is perfectly secure. Use a unique password, protect account access, review collaborators, and contact us promptly if something appears wrong.
Photographers are responsible for having permission and a lawful reason to collect, upload, display, email, fulfill, or otherwise process client information and photographs. Use appropriate contracts, releases, consent, and privacy notices for your own clients.
Children
Patsy accounts are for adults operating or preparing a photography business. Do not create an account if you are under 18. Photographs can include children, but the photographer remains responsible for appropriate consent, access control, and delivery.
Changes to this policy
We can update this policy as the service, providers, or law changes. The date above identifies the current version. Material changes will be communicated through the service, email, or another reasonable notice.