Last updated
The short version
- There is no analytics, no tracking pixel and no third-party script on this site. We do not know which pages you visited.
- The only cookie we set is the one that keeps you signed in.
- We do not sell your data, and we do not use anything you make to train AI models.
- Photos you upload to the thumbnail tool are resized in your browser and never stored on our servers.
- Text you type into the free tools becomes part of a shareable image URL, so do not put anything private in one.
- We cannot yet delete your account from inside the app. Email us and we will do it by hand.
Who we are
MemeMint Studio is a product of Blue Mint Studios, [company registration — to be confirmed], [registered address — to be confirmed]. We are the data controller for the information described here.
Questions, requests or complaints: hey@mememintstudios.com. A real person reads that inbox.
What we collect, and when
Nothing on this list is collected passively. Each item arrives because you did something specific.
- Creating an account
- Your name and email address. If you sign up with a password we store a bcrypt hash of it, never the password itself.
- Signing in with Google
- Google sends us your email address, name, profile picture URL and your Google account ID. Our sign-in library also stores the access, refresh and ID tokens Google issues. We do not receive your Google password.
- Your workspace
- A workspace is created for you automatically, and its name and URL handle are derived from the part of your email address before the @ — so an account on jane.doe@example.com produces a workspace called "jane.doe". Worth knowing if you plan to share a workspace link.
- Memes you save
- The title and caption text of anything you explicitly save to your workspace, plus the rendered image files. Nothing you type is saved unless you save it.
- Usage history
- An append-only ledger of credit activity — when a generation ran, what it was for, and any credits bought. We keep it so a billing dispute can be settled from a record rather than a memory.
- Paying us
- Stripe handles the payment. We never see or store your card number. We keep the Stripe customer and subscription IDs so we know what plan you are on.
- The newsletter
- Your email address, the page you subscribed from, and — if you were signed in at the time — a link to your account. See the newsletter section below.
What we do not collect
This section exists because most privacy policies are vague here, and the honest answer is unusually short.
- No analytics. There is no Google Analytics, Plausible, Segment, or any other measurement tool on this site.
- No advertising or tracking pixels, and no third-party scripts of any kind.
- No cookie banner, because there is nothing to consent to beyond the sign-in cookie.
- No IP address logging. Your IP is used momentarily in memory to rate-limit abusive requests and is never written down.
- No location, device fingerprinting or cross-site tracking.
AI, and what happens to your prompts
When you use the AI generator or the composer, the brief you type is sent to Anthropic to produce captions. When you use the thumbnail generator, only your idea text and chosen style are sent — never your uploaded image.
We do not use your content to train AI models. Not your prompts, not your memes, not your uploads — and not on an opt-in basis either, because no such training happens at all. Anthropic does not train on data submitted through its API.
Photos you upload
The thumbnail generator is the only place you can upload an image. It is resized in your browser before it ever leaves your device, which also strips the EXIF metadata — including any GPS coordinates your camera recorded.
The resized copy is sent to our renderer purely to draw your PNG. That response is marked private and never cached, the image is never written to storage or a database, and it is not logged. When the request finishes, it is gone.
The free tools work differently — read this one
The free meme tools need no account and store nothing about you. But the way they render is worth understanding: the text you type is placed in the image URL itself, and that URL is cached publicly so the image loads instantly and can be shared.
The practical consequence: anyone with the URL can see the text, and it may sit in a cache or a server log. Do not put passwords, tokens, customer names or anything confidential into a meme.
How long we keep things
Plainly: at the moment, indefinitely. There is no automatic expiry on accounts, saved memes or the credit ledger, and no self-service way to delete your account from inside the app. We would rather say so than imply a retention schedule we do not run.
What that means in practice is that deletion is a manual process today. Email us and we will erase your account, your workspace and everything in it, and confirm when it is done. We are building the self-service version; until it exists, the inbox is the route.
Your rights
Depending on where you live you may have the right to access a copy of your data, correct it, delete it, take it elsewhere, or object to how we use it. We honour these requests wherever you are, rather than checking your jurisdiction first.
Email hey@mememintstudios.com and we will respond within 30 days. We will not charge you and we will not ask you to justify the request.
Our lawful bases, where that framing applies: performing our contract with you (running your account and billing you), legitimate interests (keeping the service secure and working), and consent (the newsletter, which you can withdraw at any time by unsubscribing).
If you are in the UK or EU and you think we have handled this badly, you can complain to your national data protection authority. We would appreciate the chance to fix it first.
Security
Passwords are stored as bcrypt hashes. Traffic is encrypted in transit. The database sits behind credentials held only by the deployment, and access is limited to the people who operate the product.
We should be straightforward about one thing: the tokens issued by Google when you sign in with it are stored in our database in plain form, as our authentication library writes them. They let the application act as you against Google only for the basic profile scopes you granted at sign-in. If that is not a trade you want, sign up with an email and password instead.
Children
MemeMint is not intended for children under 13, and we do not knowingly collect their data. If you believe a child has created an account, email us and we will remove it.
Changes to this policy
If we change how we handle your data we will update this page and move the date at the top. For anything significant — a new processor, a new category of data — we will say so in the newsletter rather than relying on you to re-read a page.