1. Who we are
LorePages is operated from the United States. We turn three to five reference photographs of your child into a keepsake set of AI-generated portraits across twenty-two historical eras. This policy describes what data we collect, why, how we use it, who we share it with, and how long we keep it.
If anything here is unclear, write to privacy@lorepages.com. We respond within a reasonable time, generally under thirty days.
2. Who can use LorePages
LorePages is intended only for parents and legal guardians submitting photographs of children for whom they hold legal parental authority. It is not directed to children. Children do not create accounts; their photographs are submitted by a parent or legal guardian acting on their behalf.
LorePages is currently not available to residents of Illinois. See section 8 for why.
3. What we collect
From you (the parent or legal guardian): your email address; your legal name (typed signature on the consent form); your IP address and browser user-agent at the moments of account creation and consent; your billing address (if you purchase a printed product); the last four digits and brand of your payment card (full card details never touch our systems — see section 5).
About your child (submitted by you): the child's first name; the child's age; three to five reference photographs you upload; child attributes our AI infers from those photographs (hair colour, hair style, eye colour, skin tone, approximate age band) and any corrections you make to those attributes; the AI-generated portrait outputs derived from those photographs.
We do not ask for or store your child's last name, date of birth, address, school, or any other directly identifying information beyond first name and age.
4. Why we collect it, and how we use it
To verify your authority to consent. Your typed signature, IP address, and email round-trip together constitute our Verifiable Parental Consent record under COPPA.
To screen photographs for safety before any further processing. Every photograph is scanned automatically using Amazon Rekognition's moderation labels and additional internal heuristics. Photographs that trigger safety labels are quarantined and reviewed by trained personnel before any further action is taken. Photographs suspected of depicting child sexual abuse material are preserved on legal hold and reported to NCMEC as required by U.S. federal law.
To generate your child's portraits. Cleared photographs are passed to OpenAI's image models (see section 5) along with the child's attributes and the chosen historical era prompts. The model produces stylised portraits which we then assemble into the keepsake product you ordered.
To fulfil and ship your order. If you ordered a physical product (hardcover book, calendar, framed poster, greeting cards), we transmit the final assembled artwork plus your shipping address to our print-on-demand partner (see section 5).
To operate, secure, and improve the service. Standard server logs, error tracking, and analytics. We do not use your child's photographs or generated portraits for any other purpose, including no model training, no marketing, no sale.
5. Who we share it with (named sub-processors)
We use the following service providers. Each operates under a written data-processing agreement that limits them to processing data on our instructions.
- Amazon Web Services (AWS), region us-west-2 (Oregon). Hosts our application, database, file storage, and queues. Photographs are stored encrypted at rest in S3 with object lock for safety holds; database rows are encrypted at rest.
- Auth0 (an Okta company). Handles account creation and authentication. Receives your email address; does not receive photographs.
- OpenAI. Receives your child's cleared reference photographs and the attribute parameters in order to generate the historical-era portraits. Per our agreement, OpenAI does not use this data to train its models. Photographs are processed for the duration of generation only.
- Gelato. Our print-on-demand partner. If you order a physical product, Gelato receives the final assembled artwork and your shipping address.
- Stripe. Processes payments. Receives billing details directly from your browser; we receive only a token, the last four digits of your card, and the card brand.
- Amazon SES. Sends consent confirmation emails, magic-link sign-in emails, and order updates from
no-reply@lorepages.com.
We do not sell or rent your personal information to anyone, ever. We do not share it for advertising. We do not pass it to data brokers.
6. Children's privacy (COPPA)
LorePages knowingly collects personal information from children under thirteen only with prior Verifiable Parental Consent. Our consent flow consists of:
- A typed signature in the parent's legal name;
- An attestation that the signer is the child's parent or legal guardian;
- Acceptance of these terms and the photo-retention regime;
- An HMAC-signed one-time confirmation link sent to the parent's email and clicked back by the parent.
A consent record is written at the moment of signature, supplemented when the email link is confirmed, and retained for as long as the child's data is on our systems plus a reasonable audit period thereafter.
You may withdraw consent at any time by writing to privacy@lorepages.com or by using the withdraw option in your account. On withdrawal we delete all reference photographs and generated portraits within twenty-four hours, retaining only the audit records of the consent itself.
A parent may inspect what we hold about their child by writing to privacy@lorepages.com, including reading the consent record, the inferred attribute set, and the list of generated portraits. We do not require a fee for this.
7. Photographs: how long, how stored
Reference photographs are deleted automatically ninety days after upload, or sooner upon withdrawal of consent or upon your written request. Photographs are stored encrypted at rest in S3 with KMS-managed keys. The retention job runs continuously; deletion is logged.
Photographs that triggered a safety hold are stored in a separate object-locked bucket under legal hold for the duration required by U.S. federal reporting law, then deleted.
Generated portraits are kept for as long as your account is active so that you can re-download or reorder, and for at least sixty days after account closure to handle returns and disputes. After that they are deleted unless retained for a documented legal reason.
8. Illinois biometric law (BIPA)
The Illinois Biometric Information Privacy Act treats certain facial-geometry data as a regulated biometric identifier with strict notice-and-consent requirements and a private right of action. Although we believe our processing — stylised AI portrait generation, not biometric identification — falls outside BIPA's scope, the question is contested, and we have chosen to not serve Illinois residents until we have a consent flow purpose-built to BIPA's requirements.
If you reach LorePages from an Illinois IP address you will see a notice page directing you to privacy@lorepages.com. We will notify you if and when LorePages opens to Illinois.
9. Your rights
Regardless of where you live, you may:
- Ask what we hold about you or your child;
- Ask us to correct anything that is wrong;
- Ask us to delete photographs, portraits, your account, or any combination;
- Withdraw your parental consent (which triggers deletion of photographs and portraits within twenty-four hours);
- Receive a copy of the data we hold about you in a portable format.
Email privacy@lorepages.com. We do not require a specific form and we do not charge a fee.
10. Security
Photographs are encrypted at rest with AWS KMS-managed keys. Database rows are encrypted at rest. Connections to LorePages use TLS 1.2 or higher. Access to production systems is limited to a small number of administrators using multi-factor authentication. We log all access to photographs.
We do not promise that our security is unbreakable; no one truthfully can. We do promise to notify you without undue delay if a breach affects your or your child's data, as required by applicable law.
11. International transfers
All data is stored in AWS region us-west-2 (Oregon, United States). If you are accessing LorePages from outside the United States, your data is transferred to and processed in the United States. We do not currently offer services in the European Economic Area or the United Kingdom; if you are located in either, please do not submit data to us.
12. Updates to this policy
When we make material changes we will email anyone with an active account and post a notice on this page. The "last updated" date at the top of the page always reflects the current version.
13. Contact
Privacy questions, COPPA inquiries, data requests, and withdrawal requests:
privacy@lorepages.com