PixelPals Haven
Opening the next view…
Preparing the page without changing your saved work.
PixelPals Haven
Preparing the page without changing your saved work.
Privacy
This notice explains the information involved when you browse PixelPals Haven, use local Haven Studio, subscribe to email, follow an affiliate link or access an activated private Builder preview.
Last updated: July 21, 2026
Hosting and security providers may process standard request information such as IP address, browser type, requested pages, timestamps and security events to deliver and protect the website. Operational application events are designed to record bounded outcomes rather than request bodies, session values, email addresses or Builder-authored setup content.
Haven Studio can work without an account. Local drafts are stored in the browser on the device, and exported draft files are saved only where the user chooses. A local draft is not silently uploaded, converted into a cloud record or made public. Clearing browser storage or losing an unexported device may remove a local draft.
Builder accounts are available only in an environment where the complete private preview has been activated. GitHub provides the verified identity information needed to create and protect the account. PixelPals may store the provider subject, verified account attributes, secure session records and the minimum Builder profile needed for authorization, display and recovery. Provider tokens are encrypted at rest, and ordinary browser code cannot read the secure session cookie.
The protected workspace can store private Haven details, components, connections, constraints, version history, sharing choices, Blueprints, Signals, reports, blocks and uploaded-media state. New Havens, Blueprints, Signals and media begin private. A Builder must deliberately change an eligible item’s visibility before another person can access it.
Information explicitly made public or shared by direct link can be viewed by other people and may be copied outside PixelPals Haven. Disclosure responses remove private ownership and component fields that are not eligible for the selected visibility. Public Blueprint discovery additionally requires an eligible public source Haven, an approved Blueprint and a public Builder profile.
Reports, moderation decisions, enforcement state, role assignments and Builder blocks may be retained to operate community safety and prevent suppressed content from being republished. Moderator identity and internal notes are not included in another Builder’s ordinary account export.
When the private preview is active, an authenticated Builder can review their profile, revoke other sessions and export their owned account data. Sensitive export and deletion actions require a recently validated session. A confirmed deletion request immediately restricts ordinary access and starts a 30-day recovery period. The Builder can cancel an eligible request before the deadline through the verified identity provider. After the recovery period, an approved erasure processor removes owned data in dependency order unless a documented legal or safety hold applies.
These controls do not claim to be active on an environment where Builder access itself is unavailable. See account recovery or contact PixelPals for help.
When newsletter signup is enabled, PixelPals Haven sends the normalized email address, signup source and consent record to its configured email provider. Cloudflare Turnstile processes limited request information to prevent automated abuse. A confirmation email must be accepted before regular messages begin. Every newsletter includes a provider-managed unsubscribe link, and the address is not used for unrelated purposes.
Affiliate networks and retailers may use cookies or similar tracking after a visitor follows an affiliate link. Their privacy policies govern that activity. PixelPals Haven does not process checkout or payment details; purchases are completed on the retailer’s website.
PixelPals uses service providers only for defined functions such as hosting and security, identity, email delivery, abuse prevention and affiliate attribution. Each provider processes information under its own terms and privacy commitments. Preview and production credentials and databases remain separate.
Privacy, access, correction and deletion questions can be sent to contact@pixelpalshaven.com. Include only the information needed to understand the request; do not email passwords, session values or sensitive setup files.