Exact deletion dates, who sees the files, what we strip on arrival, and the three things we honestly cannot promise you. No marketing language.
Your photos are deleted two days after your book ships, or 14 days after upload if you never order. Metadata and GPS are stripped on arrival. Every company that sees the files is named further down this page. No faceprint is created, no face matching is run, and no customer photo appears anywhere on this website.
Ask Google whether it is safe to upload your child's photo to an AI app and it answers, in its own voice, before any search result: generally, no.
That is a fair answer to a badly-behaved industry, and we are not going to argue with it in the abstract. What we can do is tell you exactly what happens to your files here — the dates, the companies, the deletions — so you can judge this one case on facts rather than on a reassuring tone.
Everyone in this category leads with reassurance. Here is the other half first, because a promise is only worth as much as the things its author is willing to rule out.
We cannot un-send a file. Uploading a photo of your child to any company, ours included, is a real decision. If you are not comfortable making it, the honest answer is not to — and we would rather write that sentence than have you talked out of an instinct that is basically sound.
We cannot audit our suppliers' servers. Two outside companies see your photos, and we name both of them below. We can tell you who they are and what their terms commit them to. We cannot stand inside their data centers, and neither can any company that implies otherwise.
We cannot promise that no human ever sees them. A person does, on purpose. That is the quality check described in how a book gets made, and it is the reason blurry photos come back to you as an email instead of as page fourteen. A company promising that no human ever looks at your upload is also, quietly, promising that nobody is checking.
The deletions are not a policy someone remembers to follow. A job runs every day, removes the files, and writes a line recording that it did. We built it that way in August 2026 precisely because the previous version depended on somebody clicking a button, and a promise that depends on somebody remembering is not a promise.
What stays behind is the order record — names, email, what you bought — because tax law requires us to keep transaction records for years. Your children's faces are not a transaction record, and they do not stay.
Most privacy policies in this category say "trusted partners". Here are the actual names.
That is the complete list. If it ever changes, the Privacy Policy changes with it on the same day.
No advertising pixels. No retargeting. No Meta pixel, no Google Ads tag, no TikTok pixel, no Pinterest tag. We do not sell personal information and we do not share it for cross-context behavioral advertising — and because there is genuinely nothing to switch off, there is no "Do Not Sell" link here to click.
Analytics run only if you say yes to the cookie banner, and if your browser sends the Global Privacy Control signal we treat that as your answer and do not ask again. We never receive your IP address alongside an order.
This is the question worth asking any company that turns a photo into a picture, so we will answer it plainly.
What our pipeline produces from your photo is a drawing. We do not build, store or use a mathematical face template of the kind that could match your child against another photograph somewhere else, and we do not run face recognition or face matching on anything you send. The illustrated hero is a stylized likeness — recognizably your child in a storybook, not a measurement of your child's face.
Email [email protected] and we will delete the photos. No form, no retention team, no three-step flow designed to change your mind. A person reads it and it gets done.
The full timetable, including how long the order record itself lives, is written out in our Retention Schedule.
Two days after your book ships, or two days after we email your PDF for a digital order. A job runs every day and deletes them, and it writes a line recording that it did. If you never pay, the photos are deleted 14 days after upload without anyone having to remember.
No. We never train a model on them, and we never license them to anyone else to do so. Every company that touches them receives them under instructions covering your book and nothing further.
Yes, deliberately. Before any illustration starts, a person checks that each face is sharp, large enough, and identifiable. Companies that promise no human ever sees your files are usually promising that nobody is checking the quality either.
No. What our pipeline produces is a drawing — a character reference in our illustration style. We do not build, store or use a mathematical face template of the kind that could match your child against another photograph, and we do not run face recognition on anything you send.
Yes. Email [email protected] and we will delete them. If the book has not been made yet, that also means we cannot make it.
Stripped the moment the file arrives, before it is stored — GPS coordinates and all other embedded metadata. Phone photos usually carry the location where they were taken, and that has no business being on our server.
Was this article helpful?