Privacy Policy
Effective September 10, 2026
This policy covers the AniPins website and the AniPins Android application. AniPins is an independent anime-art curation service and is not affiliated with anime publishers or rights holders.
Data we process
If you create an account, we store your email address, a one-way password hash, profile name or nickname, optional avatar, cover image and bio, account visibility, notification preferences, and account creation time. We store the collections, saves, likes and anime or character follows you choose. We also process session identifiers so you remain signed in.
For service operation, safety and recommendations, AniPins records artwork views, downloads and interaction strength, basic page/app events, content reports, takedown requests, and limited technical information such as platform and request timing. Uploaded profile images and administrator-published artwork are stored with the service. Ordinary users cannot publish artwork.
Why and where data is used
We use this information to provide accounts, synchronized saves and collections, personalized discovery, follows, download counts, trending pages, abuse prevention, support and legal takedown handling. The Android app stores a protected session token and limited cached thumbnails/recent content on the device. You can clear app storage or the in-app cache.
Processors and sharing
AniPins uses Vercel for website and API hosting and Supabase infrastructure for the production database and image storage. These providers process data on our behalf to operate the service. The current Android release does not include advertising, analytics or push-notification SDKs. We do not sell personal information or rent user lists.
Security, retention and choices
Traffic is encrypted in transit with HTTPS. Passwords are stored only as secure hashes, and privileged service credentials are kept on the server rather than in the website or app. Account data is retained while your account exists. Operational logs may remain for a limited period under infrastructure-provider retention. Submitted copyright/takedown records may be retained when necessary to document legal compliance.
You can edit your profile and notification choices in Settings. You can permanently delete your non-administrator account from website or Android settings, or use the public account deletion page. Deletion removes the account, sessions, push tokens, profile, follows, interactions, likes, saves and collections. Legal takedown records submitted separately are not linked to the deleted account and may be retained where required.
Contact
Questions or privacy requests can be sent to anipins01@gmail.com.