Legal
Privacy Policy
This page explains the current Austria / EU privacy baseline for 3Allusion, including account access, creator workflows, private media handling, billing-related operations, analytics, and support.
Operator
Lukas Dreiher
Sole proprietorship / Einzelunternehmen
Controller and scope
3Allusion is operated by Lukas Dreiher. The service is Austria / EU-oriented and processes personal data in connection with account access, uploads, waitlist activity, creator workflows, support, trust-and-safety handling, and billing-related operations.
Categories of data
Depending on your use of the product, this can include account details, sign-in metadata, Google account sign-in details when you choose Google login, uploaded source images, reference images, prompts, generated outputs, waitlist submissions, payment records, support messages, abuse reports, analytics events, and basic device or usage logs needed to operate the service securely.
Why data is processed
Data is processed to authenticate users, deliver requested AI generations, manage credits and billing, respond to support requests, protect the platform against abuse, improve product quality, and meet legal bookkeeping or security obligations. Legal bases may include contract performance, pre-contractual steps, consent, legitimate interests, and legal obligations under applicable Austria / EU rules.
Processors and infrastructure partners
3Allusion uses infrastructure and processor services for hosting, DNS, authentication, databases, storage, payments, analytics, email delivery, and AI generation. Depending on the active feature and payment flow, this may include providers such as Vercel, Cloudflare, Supabase-compatible or S3-compatible object storage, Resend, Google sign-in, PostHog analytics, Stripe sandbox, future CCBill checkout, OpenAI, Runware, Replicate, FAL, WaveSpeed, and other configured model providers.
International transfers and model processing
Some infrastructure, analytics, payment, and model providers may process data outside Austria or the EEA. Where required, 3Allusion relies on the provider terms, contractual safeguards, technical controls, and feature-level data-minimization choices available for the relevant service.
Storage visibility and media access
3Allusion uses a private-by-default media baseline for user-linked files. Chat documents, chat attachments, avatars, audio recordings, Photoshoot media, Image Editor source/reference images, Face Swap media, video inputs, and account-linked generated outputs are served through authenticated app routes or short-lived signed access instead of long-lived raw public object URLs. Approved marketing, demo, or showcase assets may remain public. Legacy pre-migration records may still be cleaned up or backfilled over time, so highly confidential material should still be handled with care.
Retention and deletion
Account, billing, abuse, and operational records are kept for as long as necessary to run the service, resolve disputes, comply with legal retention duties, and maintain security. User-owned private media is generally retained while the related account, generation, or history record exists. Replaced avatars should be deleted after replacement, stale failed jobs and unreferenced private objects may be removed by cleanup routines, and deletion requests can be reviewed where legally possible.
Automated processing and safety checks
3Allusion may use automated checks, provider responses, manual review, and compliance events to enforce account security, adult-only access, payment integrity, abuse prevention, and content-policy boundaries. Safety checks are not a guarantee that every upload or output is manually reviewed.
Your rights
Under the GDPR / DSGVO and the Austrian DSG, you may have rights to access, rectification, erasure, restriction, objection, and data portability where applicable. You may also have the right to withdraw consent where processing is based on consent and to lodge a complaint with the Austrian data protection authority.
Contact and legal notice
Privacy-related requests can be sent to support@3allusion.pro. The current operator and disclosure baseline is published in the Impressum / Offenlegung.