Manifast AI – Privacy Policy

Effective Date: January 1, 2026

This Privacy Policy describes how Manifast AI LLC ("Manifast," "we," "us," or "our") collects, uses, discloses, and protects information when you use the Manifast AI platform (the "Service"), visit our website, or interact with us. This Policy applies to Authorized Users of our business customers and to visitors of our marketing site.

By using the Service, you acknowledge the practices described here. If you do not agree, do not use the Service.

Context: Manifast is a business-to-business SaaS platform. Our direct customers are organizations (e.g., apparel brands) that purchase subscriptions for their personnel. Those organizations ("Customers") act as the controller of the data their users submit; Manifast processes that data on the Customer's instructions and for the purposes described below.


1. Information We Collect

1.1 Information You Provide

1.2 Information Collected Automatically

1.3 Information from Third Parties


2. How We Use Information

We use the information we collect for the following purposes:

2.1 Service Delivery

2.2 Platform Operation and Security

2.3 Administrator Access for Support and Operations

Manifast personnel with administrator privileges may view and access Customer Content, Generated Output, prompts, session activity, and usage data for the following purposes:

Administrator access is logged and limited to personnel with a legitimate need. We do not read Customer Content for purposes unrelated to the operation, improvement, and security of the Service.

2.4 Service Improvement and Analytics

We use aggregated or de-identified data for these purposes where reasonably practicable.

2.5 Communications

2.6 Marketing and Promotional Use

We may use certain information to promote the Service as follows:


3. How We Share Information

We share information only as described below. We do not sell personal information for money.

3.1 Service Providers and Subprocessors

We share information with third-party vendors who help us operate the Service, including:

ProviderPurposeData Shared
Google (Gemini API)AI image generationPrompts, reference images, workflow parameters
Google (Veo API)AI video generationPrompts, reference media
Anthropic (Claude API)Text generation, reasoningPrompts, text inputs
OpenRouterAI model routingPrompts, model-routing metadata
Fal.aiAI model inferencePrompts, reference images
SupabaseDatabase, auth, storageAccount data, Customer Content, logs
n8nWorkflow orchestrationPrompts, workflow parameters
StripeBilling and paymentsBilling contact, tokenized payment info

These providers are contractually required to safeguard information and process it only for the purposes we specify.

Note on AI provider training: We configure third-party AI providers, where contractually available, to not use Customer Content or Generated Output to train their foundation models.

3.2 Customer and Authorized User Access

Information submitted within a Customer's workspace is accessible to that Customer's Administrators and to other Authorized Users as permitted by the Customer's configuration.

3.3 Business Transfers

In connection with a merger, acquisition, financing, reorganization, or sale of assets, information may be transferred to the successor entity, subject to confidentiality protections.

We may disclose information if required by law, regulation, legal process, or governmental request.

We share information for any other purpose disclosed to you with your consent.


4. Data Retention

We retain information for as long as necessary to provide the Service and for legitimate business purposes, including:


5. Security

We implement reasonable administrative, technical, and physical safeguards designed to protect information, including encryption in transit, access controls, authentication requirements, logging, and vendor security reviews. No system is perfectly secure; we cannot guarantee absolute security.


6. Your Rights and Choices

6.1 U.S. State Privacy Rights

If you are a resident of a U.S. state with applicable privacy laws, you may have the right to:

To exercise these rights, contact us at privacy@manifast.ai.

6.2 GDPR / UK GDPR

If EU/UK data protection law applies, you have the rights of access, rectification, erasure, restriction, portability, and objection, and the right to lodge a complaint with a supervisory authority.

6.3 Marketing Opt-Out

You may opt out of marketing emails by following the unsubscribe link in any message or contacting us.


7. International Data Transfers

Manifast is based in the United States. If you access the Service from outside the U.S., your information will be transferred to and processed in the U.S. and other countries that may have different data protection laws.


8. Children's Privacy

The Service is intended for business use by adults. We do not knowingly collect personal information from children under sixteen (16).


9. Cookies and Tracking Technologies

We use cookies and similar technologies to operate the Service, maintain sessions, remember preferences, and understand usage:


10. Changes to This Policy

We may update this Policy from time to time. When we make material changes, we will provide notice by posting the updated Policy and, where appropriate, by email or in-product notice.


11. Contact Us

Manifast AI LLC

Brooklyn, NY

Email: privacy@manifast.ai

Legal: legal@manifast.ai


Appendix A – Quick Reference: Administrator and Marketing Data Rights

RightScopeConsent Required?
View Customer Content, prompts, outputs, session activitySupport, debugging, abuse detection, quality reviewNo
Use aggregated/de-identified data for improvementInternal analyticsNo
Use Customer name & logo in customer listsMarketingNo (opt-out available)
Use identifiable Customer Content in case studies, social mediaExternal marketingYes – prior written consent
Share Customer Content with third-party AI providers for trainingN/ANot permitted