The short version
- No photos are ever uploaded. The camera frame is processed on the guest’s phone; only the flat, de-skewed drawing cutout leaves the device. There is no raw-photo storage to breach.
- Guests have no accounts. Scanning is anonymous — no sign-in, no email, no name beyond an optional first name shown as a label.
- Everything expires. Rooms expire, and cutouts and creature records are purged about a week after a room ends. Hosts can purge a room instantly.
- We use a third-party analytics script, site-wide, to understand traffic and usage. We do not run advertising SDKs or sell personal information.
No raw photos leave the phone
When a guest scans a drawing, the camera image is read and processed entirely in their phone’s browser. The app finds the printed corner markers, straightens the page, and cuts out just the colored artwork. Only that flat cutout image is sent to us — never a photo of the child, the room, or anything else in frame. We operate no raw-photo bucket, because the raw camera frame never leaves the device.
Guests are anonymous
Guests never create an account. When someone opens a room link to scan, a silent anonymous session is created so we can apply room permissions and rate limits — it carries no email and no personal profile. The only optional information a guest may add is a first name, shown as a label next to their creature. It is optional, is not linked to any account or other identifier, and a name that fails a profanity filter is rejected. Hosts running rooms for schools can leave the name field off entirely.
What we collect from hosts
To run host accounts and billing, we hold a small amount of data:
- Account email — so you can log in and we can contact you about your rooms.
- A Stripe customer identifier — so we can associate your purchases and subscription with your account. Stripe processes payments; we do not store your card details. Stripe handles your payment information under its own privacy policy.
- Room and event data you create — room settings, plan and credit balances, moderation choices, and the drawings submitted to your rooms.
Drawings and the live display
To make the shared scene update in real time, each submitted drawing becomes a creature record and a cutout image stored with public read access under a random identifier. These are kids’ drawings of fish referenced by unguessable IDs, with no names attached to any account. This public-read design is what lets a display receive new creatures instantly over a live connection.
Everything expires
Data does not stick around. Every room has a lifetime; once it ends, its cutouts and creature records are automatically purged by our housekeeping process about seven days after the room expires. A host can also purge a room’s content instantly at any time. We keep host account and billing records only as long as needed to operate your account and meet legal and tax obligations.
Analytics, tracking, and advertising
We use a third-party analytics script (currently provided by navcache.com) that loads on every page of the site, including the guest-facing scan and display experiences, to measure traffic and usage. This script does not run advertising, and we do not sell personal information. We do not show ads.
Children’s privacy
Draw2Life is designed so that we collect no personal information from children. Children participate only as anonymous guests: their phone processes the image locally, no account is created, and no email or contact details are collected. The single edge case is the optional first-name label, which is attached to no identifier; we keep it optional and recommend hosts turn it off for school rooms.
Hosts — parents, teachers, librarians, and venue staff — are the adults responsible for the events where children participate, as described in our Terms of Service. We intend this approach to align with children’s-privacy rules such as COPPA, and we will obtain a formal legal review before charging schools or marketing specifically to children.
Service providers
We rely on a small number of providers to run the service, including a backend platform for authentication, database, storage, and real-time messaging, and Stripe for payments. These providers process data on our behalf to deliver the service and are bound by their own terms and privacy policies.
Your choices and requests
Hosts can purge a room’s content at any time, and all room content expires automatically. If you want to access, correct, or delete host account information, or have any other privacy request or question, email support@draw2life.com and we will respond. Because guests are anonymous and their content expires quickly, we generally cannot identify an individual guest’s submission, but a host can remove any drawing from their room at any time.
Changes to this policy
We may update this policy as the product evolves. Material changes will be reflected in the “Last updated” date below.
Contact
Privacy questions or requests: support@draw2life.com.