PaperJacket Privacy Policy
1. About this policy
This policy describes what information PaperJacket actually collects, how we use it and the choices you have. It is written to reflect the service as it operates today — we have not listed categories of information we do not collect.
2. Who we are
PaperJacket is a book creation product (Book Creator by Ansault & Co) operated by Ansault & Co Pty Ltd, which is responsible for the personal information described in this policy.
We handle personal information in line with Australian privacy principles and good privacy practice. Whether the Privacy Act 1988 (Cth) formally applies to Ansault & Co Pty Ltd in a particular period (for example, based on annual turnover thresholds) is being confirmed as part of legal review — this policy describes our actual practices in any case.
3. Information we collect
We collect the following categories of information to operate your account and the service:
- Account identity data — your account email address, display name and account role.
- Age and identity verification data — where we verify that you are 18 or older, the information you provide for that verification, including your legal name and date of birth where collected.
- Contact information — details you provide when you contact us, such as through the enquiry form.
- Billing references — customer, subscription and payment references created by Stripe for your purchases. These are references only: we do not hold your full payment card details.
- Publication and project data — your books, manuscripts, page layouts, characters, settings and other project content you create or upload.
- User-uploaded content — photographs, artwork, scans, sketches and reference material you upload to the service.
- AI generation data — records of AI operations you request, including provenance and audit metadata such as which features you used, when, and linkage records for safety and disclosure.
- Audit and safety records — records created by our safety screening and audit processes. These records hold classifications, linkage hashes and status metadata rather than the full content of your requests.
- Usage records — how you use the service, such as features used, publications worked on and AI Creation Credit activity.
- Technical and log data — standard technical records such as access logs and diagnostic information needed to run and secure the service.
4. Payment information
Payment card processing is handled by Stripe. When you make a purchase, your card details are entered and processed within Stripe systems.
PaperJacket stores only the billing references Stripe returns to us (for example, a customer and subscription reference) — never your full card number or security code.
5. How we use your information
We use the information described above to:
- provide, maintain and improve the service, including processing your projects and generating the outputs you request;
- manage your account, membership, billing and AI Creation Credits;
- keep the service safe and lawful, including safety screening and audit processes;
- respond to your enquiries and support requests; and
- meet our legal and record-keeping obligations.
We do not sell your personal information. We do not use your publication content for direct marketing.
6. AI processing
When you use an AI feature, the content involved (such as text you write, images you upload or prompts you give) is processed by AI service providers so the feature can work.
The purpose is limited to delivering the feature you invoked — for example, generating an image from your prompt, analysing an uploaded image, or assisting with your writing. Instructions and, where relevant, reference images are transmitted to the provider for that purpose.
We use reputable providers, and their handling of your content is governed by their service terms as our subprocessors. Your uploaded material and publications are processed as needed to provide the service — they are not published or made public by us merely because you used an AI feature.
7. Your publication content
Your manuscripts, photographs, artwork and other publication content are private to your account. We process them only as needed to provide the service to you — storing, formatting, analysing and preparing the files and outputs you request.
We do not imply, expose or treat your private publication content as public. Sharing happens only where you deliberately publish or share something.
8. Security
We apply reasonable technical and organisational measures to protect the information we hold, including access controls that separate your records from other accounts.
No online service can guarantee absolute security. If a security incident affecting your information occurs, we will take reasonable steps to address it and to notify you where required.
9. Retention
We keep information only as long as needed for the purposes described in this policy and our governance rules:
- Account records — while your account is active, and for a baseline period after closure.
- Billing and transaction records — retained for the period needed for tax, accounting and dispute purposes.
- Audit and safety records — retained under our internal retention policy (a baseline of 7 years from the last relevant event, with longer retention where a legal or safety hold applies).
- Publication records — retained while your project exists; deleted projects are handled under our deletion processes, subject to any legal hold.
- Legal acceptance records — retained as evidence of the terms you accepted, for the life of the account and a baseline period after.
- Technical and usage logs — retained for the operational period needed to run and secure the service.
Specific retention periods are being confirmed as part of external legal review and will be updated here before commercial launch.
10. Access and correction
You can access and update much of your information directly in the service — for example, your account details and your projects.
If you want to access, correct or delete personal information you cannot reach yourself, contact us through the PaperJacket contact form on the Resources page. We will respond within a reasonable period and may need to verify your identity first.
11. Privacy enquiries and complaints
For any privacy question, access or correction request, or complaint about how we handle your personal information, contact us through the PaperJacket contact form on the Resources page of the website.
We take privacy complaints seriously, will investigate, and will do our best to resolve your concern and let you know the outcome.
12. Changes to this policy
We may update this policy from time to time. The current version, with its version number and date, is always available on this page, and material changes will be notified to account holders where appropriate.