Privacy
We store little, track nothing across the web, and delete on request.
My Life Canvas works without an account, so there is no profile to build and no identity to sell. Here is the complete list of what we hold and why.
What we store
- — Your card reactions and short written answers, used only to build your canvas.
- — The mirror, plan, and images created for your canvas, so your link keeps working.
- — An email address only if you choose to give one — at checkout, for canvas recovery, or on a waitlist. It is used for that purpose, not for marketing lists.
- — First-party analytics events (e.g. “landing viewed”, “pack downloaded”) with the canvas token and any campaign tags you arrived with. These go to our own server, nowhere else.
- — Standard server logs, including IP addresses, kept briefly for rate limiting and abuse prevention.
What we don’t do
No third-party trackers, no ad pixels, no analytics companies, no selling or sharing of data for advertising. No cookies beyond what is essential to serve the site — your browser keeps your latest canvas link in its own local storage, on your device, so you can find your way back.
One processor: OpenAI
To create your mirror, plan, and images, we send the relevant text prompts — derived from your reactions and answers — to OpenAI’s API. If you add a photo for an Identity Canvas, that photo is sent to the same API to place you in your scenes. OpenAI is the only third party that ever sees any of your content. Their handling of API data is described in the OpenAI privacy policy. In demo mode, nothing leaves our server at all.
Your photos (Identity Canvas)
The base canvas never uses your face — no upload appears anywhere in it. The optional Identity Canvas (and the beta Duo Canvas) is the one place you can add a photo, and only after you tap to agree on a plain consent screen. Here is exactly how a photo is handled.
- — What we store: the photo you upload, encrypted at rest on our server, plus the images we generate with you placed in your scenes. Both live only at your private canvas link — never public, never in any gallery.
- — Where it goes: to build those images we send your photo to OpenAI’s image API — the one processor named above, and the only outside party that ever sees it. In demo mode, nothing leaves our server.
- — When it’s deleted: we keep your photo for 30 days and then delete it automatically. When a photo is deleted, the images made from it go with it.
- — How to delete it now: use the delete control on your canvas, or email hello@mylifecanvas.ai your canvas link — either one wipes your photo and every image made from it right away, without waiting for the 30-day window.
Duo Canvas is beta and honest about it: likeness is strongest for the first photo. It follows the same storage, processor, and deletion rules as above.
Access and security
Your canvas lives at a private URL built from a long random token — unguessable and never listed anywhere. There is no password because there is no account; whoever holds the link holds the canvas, so share it deliberately.
Retention and deletion
We keep your canvas and its images so your link keeps working — indefinitely by default, because people return to these. Want it gone? Email hello@mylifecanvas.ai with your canvas link and we will delete the canvas, its images, and any email attached to it. Same address for a copy of what we hold about you.
Questions
This page is the whole policy — if something is unclear or seems missing, write to hello@mylifecanvas.ai and a human will answer.
Last updated: July 2026