How we protect photos
Handing a stranger's service a photo of your child is a decision worth making with the facts. Below is what actually happens to the photo.
Why a photo is needed at all
So the hero looks like your child. The photo is used once to create an avatar — a drawn portrait. After that only the avatar is used: every book illustration and cartoon frame is drawn from it, not from the original photo.
The service works without a photo too, but then the hero is simply a boy or girl of the right age, with no resemblance.
What data is processed
The photo file itself, the child's first name, age in whole years, optional gender and interests.
We deliberately never ask for a surname, date of birth, address or school: we do not hold that data, so it cannot leak.
We also store the timestamp of the consent given for processing the photo.
Who has access to the photo
You and the service. Files sit outside public access: there is no direct link to them, and they are served only through a temporary signed link that stops working once it expires.
A staff member with administrator rights can technically open a file. Administrator access to user data is written to an audit log — that does not prevent access, but it makes it visible.
Search engines have no access: pages holding photos are closed to indexing, and the files themselves are not served without a signature.
Where the files physically live
On our own server at the Russian hosting provider Timeweb; by address registration that is Moscow. We use no external cloud storage — the photo never reaches S3 or any third-party file service.
Which third-party services are involved
OpenRouter (openrouter.ai) — text, illustration and video generation go through it. It forwards requests to Google Gemini and Kling models.
ElevenLabs — narration, music and sound effects for the cartoon. Only the story text goes there; no photo.
There are currently no third-party payment, mailing or analytics services: payments and email run on internal stubs, and the site carries no third-party advertising trackers.
Is the photo sent to an AI provider
Yes. To draw the avatar, the photo is sent once to OpenRouter, which routes it to Google's Gemini model. Without that step there is no resemblance.
After that the photo goes nowhere else: illustrations and cartoon frames are drawn from the avatar. The narration service, the video model and the payment service never receive it.
Technically the request travels through our own relay server in the US, which we need for access to OpenRouter; it passes the traffic on without decrypting or storing it — the connection is encrypted all the way to OpenRouter.
Is the photo used to train models
We train no models on your photos and pass them to no one beyond the generation service described above.
We cannot answer for OpenRouter and Google: these are outside companies with their own rules, and speaking on their behalf would be dishonest. Their data-processing terms are worth reading at the source.
How long the original photo is kept
7 days. After that the file is deleted automatically by a background task that walks through photos every hour and erases everything past its term.
You do not have to wait those days: a button in settings erases photos and avatars immediately.
How long the finished result is kept
As long as you need. Books, PDFs, audio and cartoons have no automatic expiry — otherwise a paid order would one day vanish on its own.
They are removed on your command: with the delete-media button or together with the account.
How to request deletion
Settings hold two buttons: “delete photos and avatars”, which erases photos immediately, and “delete account”, which removes child profiles, photos, avatars, projects and finished files.
Payment records survive account deletion in anonymized form: they are needed for accounting and carry none of your personal details.
You do not need to ask anyone — both buttons work on their own, without contacting support.
Can I opt out of publication
There is nothing to opt out of: we publish nothing. A finished book has no public link by default.
A share link appears only if you press the button yourself, and it is revoked the same way.
Will my result appear in the site's examples
Only with your separate permission. The “Examples” section currently holds our own builds: almost all from a synthetic portrait with no real child in it, and one from a real photo published with the parent's permission.
Your order will not become an example by default, and it will not appear in advertising.
Where to write about data questions
We are still setting up a dedicated address for data questions, and we will not print an email that does not exist.
Everything people usually write about is already available as buttons in settings: export all your data as one file, delete photos, delete the account. None of that needs a reply from us.