1. Introduction
TimrX ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal data when you use our website at timrx.live and the 3D Print Hub services.
We process your data in accordance with the UK General Data Protection Regulation (UK GDPR), the Data Protection Act 2018, and other applicable data protection laws.
Your privacy matters: We only collect data that is necessary to provide our services and never sell your personal information to third parties.
2. Data Controller
The data controller responsible for your personal data is:
- Name: Dima Vasiliu (TimrX)
- Email: admin@timrx.live
- Website: timrx.live
3. Data We Collect
3.1 Information You Provide
- Account Information: Email address, username, and password when you create an account
- Payment Information: Billing details processed through secure payment providers (we do not store full card details)
- Contact Information: Name and email when you contact us or submit forms
- User Content: Images, text prompts, and other content you upload or generate
- Communications: Messages sent through our chat or contact forms
3.2 Automatically Collected Information
- Device Information: Browser type, operating system, device type
- Usage Data: Pages visited, features used, time spent on site
- IP Address: Used for security, analytics, and approximate location
- Cookies and Tracking: See our Cookie Policy for details
3.3 Generated Content
- 3D Models: Models you generate using our AI services
- Generation History: Records of your generation requests and outputs
- Input Data: Images and prompts used for 3D generation
4. How We Collect Data
We collect data through:
- Direct Input: When you create an account, make purchases, or contact us
- Automated Technologies: Cookies, analytics tools, and server logs
- Third-Party Services: Payment processors and AI service providers
- Your Use of Services: When you generate 3D models or use platform features
5. Purpose of Processing
We use your personal data for the following purposes:
5.1 Service Delivery
- Providing and maintaining the 3D Print Hub services
- Processing 3D model generation requests
- Managing your account and credits
- Processing payments and transactions
5.2 Communication
- Responding to your inquiries and support requests
- Sending service-related notifications and updates
- Providing information about new features (with your consent)
5.3 Improvement and Analytics
- Analyzing usage patterns to improve our services
- Developing new features and functionality
- Troubleshooting technical issues
5.4 Security and Legal
- Protecting against fraud and unauthorized access
- Enforcing our Terms of Use
- Complying with legal obligations
6. Legal Basis for Processing
Under UK GDPR, we process your data based on:
- Contract Performance: Processing necessary to provide services you requested
- Legitimate Interests: Improving services, fraud prevention, analytics
- Consent: Marketing communications and optional cookies
- Legal Obligation: Compliance with laws and regulations
7. Data Sharing
We may share your data with:
7.1 Service Providers
- Meshy AI: Processes generation requests (receives prompts and images)
- Payment Processors: Handle secure payment transactions
- Cloud Hosting: Stores data and serves the platform
- Analytics Providers: Help us understand usage patterns
7.2 Legal Requirements
We may disclose data when required by law, court order, or to protect our rights and safety.
7.3 Business Transfers
In the event of a merger, acquisition, or sale of assets, your data may be transferred to the acquiring entity.
We never sell your data: We do not sell, rent, or trade your personal information to third parties for their marketing purposes.
8. International Data Transfers
Your data may be transferred to and processed in countries outside the UK, including:
- United States (cloud hosting, AI services)
- European Union (various service providers)
When transferring data internationally, we ensure appropriate safeguards are in place, such as:
- Standard Contractual Clauses (SCCs) approved by the ICO
- Adequacy decisions for countries with equivalent data protection
- Binding corporate rules where applicable
9. Data Retention
We retain your data for as long as necessary to:
- Active Accounts: As long as your account remains active
- Transaction Records: 7 years for financial and tax compliance
- Generated Content: Stored while account is active; may be deleted after prolonged inactivity
- Communications: 2 years from last interaction
- Analytics Data: Aggregated data retained indefinitely; individual data deleted after 26 months
You may request deletion of your data at any time, subject to legal retention requirements.
10. Your Rights
Under UK GDPR, you have the following rights:
10.1 Right of Access
Request a copy of your personal data and information about how we process it.
10.2 Right to Rectification
Request correction of inaccurate or incomplete personal data.
10.3 Right to Erasure
Request deletion of your personal data ("right to be forgotten") in certain circumstances.
10.4 Right to Restriction
Request that we limit processing of your data in certain situations.
10.5 Right to Data Portability
Receive your data in a structured, commonly used format and transfer it to another service.
10.6 Right to Object
Object to processing based on legitimate interests or for direct marketing.
10.7 Rights Related to Automated Decisions
Not be subject to decisions based solely on automated processing that significantly affect you.
10.8 Exercising Your Rights
To exercise these rights, contact us at admin@timrx.live. We will respond within one month. You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) at ico.org.uk.
12. Security
We implement appropriate technical and organizational measures to protect your data, including:
- Encryption of data in transit (HTTPS/TLS)
- Secure storage with access controls
- Regular security assessments
- Limited employee access on a need-to-know basis
- Secure payment processing through PCI-compliant providers
While we strive to protect your data, no system is completely secure. We cannot guarantee absolute security of your information.
13. Children's Privacy
Our Services are not intended for children under 16 years of age. We do not knowingly collect personal data from children under 16. If you believe we have collected data from a child, please contact us immediately.
14. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "Last updated" date. For significant changes, we will provide prominent notice or send you a notification.
We encourage you to review this policy periodically to stay informed about how we protect your data.
15. Contact Us
For questions about this Privacy Policy or to exercise your data protection rights: