Rimbai. Login Sign up

Privacy Policy

Last updated: 2 June 2026

This policy explains what Rimbai ("we", "us") collects and how we handle it. Rimbai is built privacy-first: your creations are stored on your own device, not on our servers. We process personal data in accordance with Indonesia's UU No. 27 Tahun 2022 tentang Pelindungan Data Pribadi (PDP).

1. What we store on our servers

  • Account: your email address and a hashed password.
  • Billing: credit balance, plan, and payment records (order id, amount, status) β€” card details are handled by our payment processor, never by us.
  • Usage metering (content-free): records of actions for billing and abuse prevention β€” e.g. (user, action, model, credits, timestamp). These contain no prompt or output content.

2. What stays on your device (not on our servers)

Your prompts, chat history, and generated images, video, and audio are stored locally in your browser (IndexedDB). We do not keep copies, cannot browse them, and they are not backed up by us. Clearing your browser data deletes them permanently. You are responsible for your own backups.

3. How generation works

To generate content, your prompt and any uploads are sent through our server to a third-party AI inference provider, processed to produce a result, and streamed back to your device. We pass the bytes through without persisting them. Generated video/audio held temporarily by the provider is deleted after retrieval. End-to-end encrypted (E2EE) models are available where the GPU never sees plaintext.

4. Processors we use

  • Payments: Midtrans β€” processes your transaction and payment method.
  • Email: Resend β€” sends transactional email (verification, password reset, receipts).
  • AI inference: our model provider β€” processes prompts at generation time to return output.
  • Hosting: our VPS provider β€” runs the application and database.

5. Cookies & local storage

We use a session cookie to keep you logged in, and browser local storage / IndexedDB for your settings, language preference, and your generated content. We do not use third-party advertising cookies unless explicitly stated on the site.

6. Your rights (PDP)

Under UU No. 27 Tahun 2022 you may request to access, correct, or delete your personal data, and withdraw consent. Because content lives in your browser, you control most of it directly (clear it anytime via the Library β†’ Clear button). For account and billing records, contact us to exercise these rights.

7. Data retention

Account and billing records are kept while your account is active and as required by tax/accounting law. Content-free usage logs are kept for billing and abuse prevention. Deleting your account removes your account record and associated server-side data.

8. Security

Passwords are hashed, traffic is served over HTTPS, and access to systems is restricted. No system is perfectly secure, but storing minimal data is our strongest safeguard β€” we cannot leak what we do not hold.

9. Children

Rimbai is strictly for adults (18+). We do not knowingly collect data from minors.

10. Changes & contact

We may update this policy; material changes will be posted here. Governed by the laws of the Republic of Indonesia. See also our Terms of Service.

← Back