Last updated: August 14, 2026
VibeReskin ("Service") is operated by Oleksandr Sitnikov ("we", "us", "our"). This Privacy Policy describes the data flows in the current public website and private reskin tool. It does not replace rights or obligations that may apply under local law.
| Data Type | What | Why |
|---|---|---|
| Waitlist data | Email address submitted through the public waitlist form, plus the submission time recorded by the server | Manage the waitlist and contact you about access |
| Tool content | Uploaded assets, optional reference images, filenames, prompts, style briefs, and generated outputs | Run the processing operations you request |
| Operation records | Job status and history, selected mode and provider, timestamps, estimated provider cost, and error information | Operate the tool, show results, diagnose failures, and track provider spend |
| Private access data | HTTP Basic Auth credentials presented to the reverse proxy and authentication-related request metadata | Restrict access to the private tool |
| Technical and analytics data | Page views and request metadata that may include IP address, requested URL, timestamp, referrer, browser, and device information | Operate, secure, and understand use of the Service |
The public waitlist form submits an email address only. VibeReskin does not currently offer Google Sign-In or an application account, profile, or session. The private tool uses an HTTP Basic Auth gate at the reverse proxy.
Where GDPR or similar law applies, the legal basis depends on the activity and context. It may include:
The exact services used depend on the operation and provider configuration. Data sent may include images, prompts, style instructions, filenames, and technical request metadata.
| Service | Current Use | Data That May Be Sent |
|---|---|---|
| Google Gemini | Image generation, including the ImageGen tool | Prompts, reference images, generation settings, and request metadata |
| OpenAI | Configured image-generation option | Source images, prompts, generation settings, and request metadata |
| Anthropic Claude | Asset analysis, prompt generation, style wizard, and optional style critique | Uploaded images where analysis requires them, text prompts, style briefs, and request metadata |
| fal.ai | Background removal, upscaling, file transfer, and ByteDance Seedream processing when selected | Images, prompts, operation settings, and request metadata |
| Alibaba Cloud DashScope / Qwen | Optional fallback for analysis and prompt generation when configured | Images, prompts, and request metadata |
| analytics.vibereskin.com | Website analytics script loaded by the landing, application, and legal pages | Page-view and related browser or request metadata |
| Google Fonts | Font delivery on the main website and application | Font requests and associated network metadata |
| Hetzner | Current application-server hosting | Files and server records stored or transmitted through the hosted server |
Each external provider handles data under its own terms, privacy policy, settings, and retention practices. Provider configuration can change, so contact us if you need the current provider used for a specific operation.
The current application server is hosted with Hetzner in Finland. Uploaded assets, generated outputs, waitlist entries, job records, style data, and provider-cost records are stored in server files.
Current technical controls include:
No storage or transmission method can eliminate every security risk.
Depending on where you live and the law that applies, you may have rights to:
To make a request, email alexan.sitnikov@gmail.com. Include enough information to locate the relevant waitlist entry, file, or run. We may need to verify the request before acting on it. Rights and response periods vary by jurisdiction.
The current VibeReskin frontend does not create an application account or set an application authentication/session cookie. Access to the private tool uses HTTP Basic Auth: your browser sends an Authorization header to the reverse proxy and may remember the credential according to browser behavior.
The frontend uses browser local storage for:
The frontend also uses session storage to remember an active generation job within the current browser tab.
The current frontend does not write uploaded image bytes to local storage. The Service also loads the analytics script described in Section 3. Its network requests and any browser storage it uses depend on the current analytics configuration and browser controls.
The Service is designed for professional game-asset workflows, not for children. Do not submit a child's personal data without any consent required by applicable law. If you believe a child has submitted personal data, contact us so we can review the request.
The services listed in Section 3 may process data in countries outside your own. The location and transfer mechanism depend on the selected provider, its current infrastructure, and the law that applies. Review the relevant provider's privacy information before using an operation if cross-border processing is a concern.
We may update this page when the Service, providers, or data flows change. The "Last updated" date at the top shows the date of this version. Material changes may also be posted on the Service.
For any privacy-related questions or to exercise your rights:
Oleksandr Sitnikov
Email: alexan.sitnikov@gmail.com
Location: Kyiv region, Ukraine
Where applicable, you may also be able to contact the data-protection or privacy authority in your jurisdiction.