Privacy Policy
Last updated: June 22, 2026
1. Overview
Aided7 (the "Company") processes personal information as necessary to provide Autodesk add-in generation, assembly, build, installer delivery, license validation, and related services (the "Service"). The Company complies with applicable privacy laws and explains through this Privacy Policy how personal information is collected, used, retained, and protected.
2. Information We Collect
The Company may collect the following information. - Account information: email address, name or nickname, profile image, social login identifier - Profile information: company or organization, job role or title, phone number, and other optional profile fields - Service usage information: project names, unit configuration, feature descriptions, settings, categories, generation, build, download history, community posts, comments, and votes - AI generation information: prompts, feature requirements, workflows, generated structured specs, code, review and correction history, attached images or reference materials - Add-in and license information: add-in tokens, device identifiers, login sessions, plan information, license validation request and response history, offline grace state, runtime error logs - Payment and subscription information: plan, subscription status, payment status, payment dates, payment failure status, and refund status. Full payment method details such as full card numbers are processed by payment processors and are generally not stored by the Company. - Automatically collected information: IP address, User-Agent, browser and OS information, access times, page visit history, cookies or similar identifiers, error logs, and security events
3. Collection Methods
Personal information is collected during sign-up, login, profile input, project creation, unit generation or selection, AI generation requests, builds and downloads, add-in login and license validation, community use, customer support, payment, and subscription management. Certain access information, error logs, and security logs may be generated and collected automatically during Service use.
4. Purposes of Use
The Company uses personal information for the following purposes. - Member identification, login, account management, and authentication - Providing projects, units, builds, downloads, community features, and other Service functions - AI generation, scenario structuring, code generation, error correction, feature improvement, and quality improvement - Add-in license validation, device authentication, plan-based feature limits, and fraud prevention - Payment, subscription, refund, plan change, and usage management - Customer support, notices, incident response, and dispute handling - Service stability, security monitoring, error analysis, statistics, and Service improvement
5. Retention Period
The Company destroys personal information without delay when the purposes of collection and use are achieved. However, information may be retained as necessary for Service operation, contract performance, payment and settlement, security, dispute handling, or legal retention obligations. - Account and profile information: until account withdrawal - Projects, units, build artifacts, and AI generation history: until account withdrawal or user deletion request, subject to backup, incident recovery, and dispute handling needs - Payment and subscription records: for the period required by applicable law or dispute handling needs - Access logs, security logs, and license validation logs: for the period necessary for security and fraud prevention - Customer support and dispute records: for the period necessary after inquiry resolution
6. Legal Retention
The Company may retain certain information for periods required by e-commerce and other applicable laws. In such cases, the information is used only for the legally required retention purpose.
7. Processors
The Company may entrust personal information processing to external services for Service operation. - Supabase: authentication, database, file storage, account and Service data management - Vercel or hosting providers: website hosting, deployment, access logs, and incident logs - Stripe or payment processors: payment, subscriptions, refunds, and payment failure management - AI model providers: processing AI generation requests, analyzing feature descriptions, and assisting code or spec generation - Email or notification providers: service notices, authentication, payment, and customer support messages Processors process personal information only within the entrusted scope, and the Company manages and supervises them to process information securely.
8. International Transfers
Cloud, authentication, payment, AI, and hosting services used by the Company may process personal information through servers or operations located outside Korea. Internationally transferred information is limited to information necessary to provide the Service, such as account information, Service usage information, payment and subscription status, AI generation request information, access logs, and error logs. The purposes are authentication, data storage, payment processing, AI generation, hosting, security, and incident response. Retention follows this Privacy Policy or the applicable processor's policy. The Company will provide notices or obtain consent where required by applicable law.
9. AI Generation
Feature descriptions, workflows, drawing descriptions, attached images, error messages, generated code, and review history submitted to AI generation may include personal information or sensitive business information. Users should avoid entering unnecessary personal information, third-party personal information, confidential information, or sensitive information. The Company may process such information for AI generation, error correction, quality improvement, security review, and customer support. The Company will not use private materials as public units, examples, promotional materials, or third-party sales materials without explicit user consent.
10. Add-in License and Device Authentication
The Company may process account information, add-in tokens, device identifiers, login sessions, plan information, license validation requests and responses, offline grace states, and error logs to validate proper use of distributed add-ins. This information is used for fraud prevention, device limits, plan-based feature limits, security incident response, and Service quality improvement.
11. Third-Party Provision
As a rule, the Company does not provide users' personal information to third parties. However, information may be provided where the user has consented, where required by law, where requested by authorities through lawful procedures, or where necessary within the scope of Service provision and processing entrustment.
12. Your Rights
Users may request access, correction, deletion, suspension of processing, withdrawal of consent, or account withdrawal regarding their personal information. Rights may be exercised through in-service settings, customer support, or other contact methods announced by the Company. The Company will verify identity and take necessary action without delay in accordance with applicable law. Deletion or suspension may be restricted where legal retention obligations or other rights and obligations must be verified.
13. Destruction
When the processing purpose is achieved or the retention period expires, the Company destroys personal information without delay. Electronic files are deleted in a manner that makes recovery difficult, and paper documents, if any, are shredded or incinerated. Backup data may be retained for a limited period for recovery stability but is separated from normal operating environments and access is restricted.
14. Cookies and Access Records
The Company may use cookies or similar technologies for login persistence, language settings, security, and Service usage analysis. Users may reject or delete cookies through browser settings, but login persistence, personalization, or some Service features may be limited.
15. Security Measures
The Company implements reasonable technical and administrative safeguards, including encryption in transit, access control, separation of administrator privileges, protection of authentication information, signed critical responses, log monitoring, security event checks, and backup and recovery procedures. Access to personal information is limited to personnel with a business need.
16. Children Under 14
The Service is not intended for children under 14. If the Company needs to process personal information of a child under 14, it will take necessary measures such as obtaining consent from a legal representative in accordance with applicable law.
17. Privacy Contact
Questions, rights requests, complaints, and damage relief requests regarding personal information may be submitted through the customer support channels in the Service or other contact methods announced by the Company. The Company will respond or take action within a reasonable period. The privacy officer and detailed contact information will be reflected in this Policy or separately announced once the Company's operating information is finalized.
18. Changes to This Policy
The Company may amend this Privacy Policy due to changes in law, Service content, processing methods, or processors. For material changes, the Company will provide prior notice through the Service or other reasonable methods, specifying the effective date and changes.