Who is responsible
DSP PRINT AND DESIGN LIMITED, trading online as Printwell, is the data controller for information collected through this service. Our contact details appear at the end of this policy.
Printwell is an online-only design-generation service. We do not provide physical printing, delivery, professional legal clearance or trademark advice.
What we collect
We collect account and subscription details; name, email, billing contact and support messages; design prompts, business details, uploaded files, saved brand colours and generated outputs; technical data such as IP address, device, browser, security events and cookie choices; and transaction references, plan, amount, currency and payment status.
We receive this data directly from you, from your use of the workspace, from payment and hosting providers, and from support communications. Payment providers process complete card details in their own hosted forms; Printwell does not receive or store complete card numbers or security codes.
Collection sources
Collection sources include information you enter in account, checkout, contact and design-workspace forms; user input and files you upload; AI output created in response to your requests; technical data produced when your browser communicates with the service; transaction status received from payment processors; and messages you send to support.
We may also receive limited operational data from hosting, database, email, fraud-prevention and AI providers when they deliver or secure the service. We do not obtain marketing lists from data brokers.
User input, AI output and provider processing
User input includes prompts, business details, brand information and uploaded files. It is sent to the configured AI provider only to create the requested brief, image or video, perform safety screening and support reliable delivery. AI output is returned to your workspace for review, revision and export.
We do not claim to train models on your customer content. We keep workspace records while your account is active so that you can retrieve and revise them, unless you delete them or request deletion. Temporary AI provider copies, processing logs and generation URLs may have shorter technical retention periods. Exported files are your responsibility after download.
Do not upload confidential, biometric, payment-card, special-category or third-party material that you are not authorised to use. You may contact support to request deletion subject to security, transaction and legal retention duties.
Why we use it and legal bases
| Purpose | Data | UK/EU legal basis |
|---|---|---|
| Provide generation, exports and subscriptions | Account, prompts, files, outputs, transaction status | Performance of contract |
| Security, abuse prevention and service reliability | Technical logs, usage and safety signals | Legitimate interests and legal obligations |
| Support and service messages | Contact and support records | Contract and legitimate interests |
| Optional analytics or marketing | Cookie identifiers and preferences | Consent where required |
International transfers
Our processors may handle data outside the United Kingdom or European Economic Area. Where required, we use an adequacy decision, the UK International Data Transfer Agreement or Addendum, EU Standard Contractual Clauses, and supplementary safeguards appropriate to the transfer.
How long we keep it
- Account and workspace data: while the account is active and normally up to 30 days after deletion requests are completed.
- Generated outputs and uploaded files: while retained in the workspace, subject to deletion controls and processor cache expiry.
- Transaction and tax records: up to 7 years where needed for accounting, disputes and legal duties.
- Support records: up to 24 months after resolution.
- Security logs: normally up to 12 months, longer where an incident requires investigation.
Backups may persist for a limited rolling period before being overwritten.
GDPR and CCPA rights
Depending on your location, you may request access, correction, deletion, restriction, portability or objection; withdraw consent; and complain to a supervisory authority. UK users may complain to the Information Commissioner’s Office. EU users may contact their local authority.
California residents may request to know, correct or delete covered personal information and receive equal service when exercising rights. We will verify requests and may retain information where an exemption applies.
Do Not Sell or Share
Printwell does not sell personal information and does not share it for cross-context behavioural advertising as those terms are defined by California law. You may still contact us with a rights request or adjust optional cookies through the cookie controls.
Security
We use access controls, encrypted transport, server-side secret handling, least-privilege service accounts, hosted payment forms, logging and incident procedures. No method is risk-free; contact support immediately if you suspect unauthorised access.
Automated decisions and children
AI generation and abuse screening may make automated content decisions, but Printwell does not make decisions producing legal or similarly significant effects about you. You may ask support to review a safety refusal.
The service is not for children under 13. Users aged 13–17 require permission and supervision from a parent or legal guardian.
Complaints and contact
Email support@dspprintdesignk.shop for privacy questions or rights requests. We aim to acknowledge requests promptly and respond within the period required by applicable law. You also have the right to complain to the relevant data protection authority.
Contact the responsible company
DSP PRINT AND DESIGN LIMITED
8 Darton Hall Drive, Darton, Barnsley, England, S75 5AG, United Kingdom
support@dspprintdesignk.shop
+44 7738565032