RO THUMBNAIL / PRIVACY & SOURCES

Your draft stays in this browser until you choose a network action.

Effective October 7, 2026. This policy separates local project editing from Roblox lookup, AI generation, optional account connection, and share links so you can decide when data leaves the browser.

Project data stored in the browser

The brief, uploaded references, imported previews, composition settings, variants, generation history, and export state are stored in this browser using IndexedDB. They remain until you clear this site’s browser data or replace the project. Downloaded exports remain wherever you save them. Browser storage is not an online backup and does not follow you to another device.

Public Roblox lookups

When you explicitly look up a game or Avatar, the entered URL, ID, or username is sent to this application’s server, which requests public information and preview images from Roblox. A public preview provides source context; it does not grant reuse, AI-training, or redistribution rights.

Optional automatic generation

When you choose Generate, New Take, or Refine, the bounded brief, generation instruction, and enabled reference images are sent through the application server to a configured third-party AI processing service. Service credentials remain on the server. Do not include personal or confidential information in a prompt or reference.

Third-party AI processors handle submitted data under their own terms and privacy policies. Ro Thumbnail does not state one processor retention period because it can differ by service, account agreement, region, and deployment configuration. Contact support for the processors configured for a deployed service before submitting sensitive material.

Region and AI-credit eligibility

The service may receive a country code from its trusted hosting edge to decide whether a free AI trial is available and whether trial credits may be used. The standard policy does not issue or spend free AI credits in India; paid AI credits and features that do not call a third-party AI processing service remain available. The application does not accept a browser-supplied country value for this decision.

Optional checkout and billing

If a deployed service enables paid plans or credit packs and you choose checkout, the product selection, an application account identifier, optional checkout email, and order metadata are sent to Waffo Pancake, the hosted checkout and merchant-of-record provider. Waffo processes payment and billing details under its own terms and privacy policy. Ro Thumbnail uses signed payment notifications to grant or revoke credits; returning to the site after checkout does not itself grant paid access.

Generation files on the application server

The standard deployment stores generated images and AI job records temporarily so interrupted work can recover. The default retention is 24 hours, with automatic expiry and a storage cap; a deployment operator may configure a different period. Expiry removes the server copy, not an export you already downloaded or a copy retained by a third-party AI processor.

Share links

Creating a share link uploads a serialized project copy, which can include embedded references and generated results. Anyone with the link can open and copy it; the link is a bearer secret rather than an account permission. The standard share expiry is seven days, although a deployment may configure a different period. The share response includes its expiry and a separate deletion token. Keep that token private; it authorizes early deletion of the hosted share.

Optional Roblox account connection

If the deployment enables Roblox OAuth and you choose to connect, authorization tokens stay on the server and are not written into the project. The current source build uses an HTTP-only session cookie and limits the server session to one hour. Disconnecting or deleting the access session ends that application session; Roblox may provide separate controls for the authorization grant.

Deletion boundaries

Clear this site’s browser storage to remove the local project from that browser. Revoke a shared copy using its deletion token before expiry when the client exposes that control. Temporary generation files and AI job records expire under the server policy described above. Clearing browser data does not delete a hosted share, an already downloaded export, data already sent to Roblox, or data already processed by a configured third-party AI processor.

Operational data and security

The server may process ordinary request metadata needed to deliver and protect the service, such as time, route, response status, and network address in hosting logs. This source build does not include advertising trackers or claim a cross-site analytics profile. No online system is risk-free, so avoid uploading secrets and use share links only for material you are prepared to disclose to the recipient.

Source and rights policy

Upload only material you own or have permission to use. Public Roblox examples remain linked to their source and are used as attributed composition references, not bundled stock. You are responsible for reviewing the final Avatar, artwork, marks, and gameplay claim before publication.

Privacy and deletion questions

Contact support@thumbnail-maker.net about a privacy request, a hosted share you can no longer revoke, or a server-side deletion question. Include the share URL or request identifier when relevant, but never send a service credential or deletion token by email.

Read the terms → · How it works · Creator guide · Return home