This policy explains how doforai.tools collects, uses, stores, and shares information when you use our site and related services.
Last Updated: March 10, 2026
Introduction
This Privacy Policy applies to doforai.tools and related services we operate. By using the service, you acknowledge the data practices described in this policy.
Information We Collect
We collect information you provide directly, technical data generated during use, and records needed to operate accounts, submissions, payments, and support.
Automatically Collected Information
When you visit or use features on doforai.tools, we collect technical and event data to run the service, prevent abuse, and monitor performance.
Device and browser data (browser type, OS, language, and basic client metadata)
IP address, request headers, and anti-abuse signals (including user agent in submission workflows)
Usage and event data (pages visited, features used, generation activity, and timestamps)
Anonymous usage identifiers (such as anon_id) and related usage counters
Operational logs and error diagnostics
Note: We collect approximate technical location signals from network data (for example IP-based region), not precise GPS location.
Cookies and Tracking Technologies
We use first-party cookies for session and product functionality, and we use third-party scripts/cookies for analytics, advertising, and product improvement.
Types of Cookies We Use
Essential Cookies: Maintain login sessions and core site functions
Functionality Cookies: Support product features such as anonymous usage limits
Analytics Cookies: Measure traffic and behavior (for example Google Analytics and Microsoft Clarity)
Advertising Cookies: Support ad delivery and measurement (for example Google Ads scripts, where enabled)
Note: You can control cookies through browser settings and available consent controls. Some features may not work correctly if essential cookies are blocked.
How We Use Your Information
We process information only for legitimate operational, contractual, security, and legal purposes.
Service Delivery: Provide directory browsing, account features, submissions, generation workflows, and support
Authentication and Account Security: Operate sign-in, session management, password reset, and fraud prevention
Billing and Credits: Process purchases, track credits/subscriptions, and handle payment-related events
Model and Workflow Processing: Send prompts, input references, and task metadata to configured AI processing providers
Support and Communications: Respond to contact requests and send transactional service notices
Safety and Abuse Prevention: Enforce limits, investigate misuse, and maintain platform integrity
Compliance: Meet legal, accounting, tax, and regulatory obligations
Note: We do not sell personal information for money.
Information Sharing and Disclosure
We share information only when necessary to operate the service, fulfill your request, comply with law, or protect rights and safety.
When We Share Information
Infrastructure and Storage Providers: Hosting, database, and object storage services needed to run the platform
Authentication Providers: Social login providers you choose (for example Google or GitHub)
Payment Processor: Creem and related payment infrastructure for checkout and subscription events
Communications and Ops Tools: Email delivery and internal support/notification channels (for example Resend, SMTP, and DingTalk)
Analytics and Advertising Providers: Measurement and ad scripts used to understand and fund service operations
AI Processing Providers: External APIs used to generate or process user-requested content
Legal and Corporate Events: Required disclosures for law enforcement, legal process, or corporate restructuring
Note: We require vendors to handle data under applicable contractual, technical, and legal safeguards.
Third-Party Services
doforai.tools integrates or links to third-party services that have independent terms and privacy practices.
Cloud Infrastructure: Cloudflare services for hosting, traffic handling, database/API operations, and object storage
Identity Providers: Google and GitHub OAuth / One Tap sign-in flows
Payment Services: Creem checkout, subscription lifecycle, and transaction event processing
Analytics and Product Signals: Google Analytics and Microsoft Clarity for usage measurement
Advertising Scripts: Google ad scripts where monetization is enabled
Email and Messaging: Resend/SMTP delivery and DingTalk-based internal alerting
AI Inference Services: External model endpoints for text/image processing tasks
Note: When you visit external links from our directory, those destinations control their own data practices.
Data Security
We apply administrative, technical, and organizational safeguards appropriate to the nature of the data and the service.
Encryption in transit using HTTPS/TLS
Access controls for operational systems and data stores
Credential and token handling designed to reduce unauthorized access risk
Monitoring and logging for reliability, abuse detection, and incident analysis
Controlled use of third-party providers with security responsibilities
Note: No online service can guarantee absolute security.
Your Privacy Rights
Depending on your location and applicable law, you may have rights regarding personal data we process.
Access: Request confirmation of whether we process your personal data
Correction: Request correction of inaccurate or incomplete personal data
Deletion: Request deletion of your account data, subject to required retention and legitimate interests
Portability: Request a copy of data you provided in a structured format where legally required
Restriction or Objection: Request limits on certain processing activities where law permits
Withdraw Consent: Withdraw consent for processing that relies on consent
Complaint: Contact a supervisory authority if you believe your rights were violated
Cookie Control
Browser Controls: Block or clear cookies from your browser settings
Device Settings: Use OS or browser privacy features on mobile and desktop
Ad and Tracking Controls: Use provider controls where available
Session Management: Sign out to clear active authenticated sessions on this device
Children's Privacy
Our service is not intended for children under 13. We do not knowingly collect personal data from children under 13. If you believe such data was provided, contact us so we can review and take appropriate action.
International Use
Your data may be processed in countries different from your own. Where required, we rely on appropriate safeguards for cross-border data transfers.
California & European Privacy Laws
California Privacy Rights (CCPA/CPRA)
California residents may have rights to know, access, delete, and correct personal information, and to limit certain uses of sensitive information where applicable. We do not sell personal information for money.
European Privacy Rights (GDPR)
For users in the EEA/UK, we process data under lawful bases such as contract performance, legitimate interests, legal obligations, and consent where required. You may exercise applicable rights by contacting us.
Changes to Privacy Policy
We may update this policy as our product, providers, or legal obligations change. We will publish the revised policy with an updated "Last Updated" date.
Contact Us
If you have privacy questions, requests, or complaints, please contact us at support@doforai.tools
Summary of Key Points
Key points at a glance:
What We Collect - Account data, usage data, submission data, generation task data, and support messages
Why We Use It - Service operation, security, billing, analytics, and legal compliance
Who Receives Data - Necessary service providers for hosting, auth, payments, analytics, messaging, and AI processing
Your Controls - You can request access, correction, deletion, and manage cookies via browser/device settings
No Sale for Money - We do not sell personal information for money
Policy Updates - Material changes are reflected by an updated policy date
Note: This summary is for convenience only. The full policy text controls in case of inconsistency.