Privacy Policy – Fabrement

This Privacy Policy explains how Fabrement handles information in two situations: when you visit fabrement.com, and when you use the Fabrement plugin on your own WordPress website. Fabrement is built and operated by 7Fridays INC. (“we”), which is responsible for the information described here.

Cookies and tracking on this website

When you first visit fabrement.com you are asked whether to accept cookies. You can accept everything, reject everything, or choose per category — functional, analytics and marketing — and you can change your choice at any time from the cookie banner.

If you are in the European Union, the wider EEA, the United Kingdom or Switzerland, analytics and marketing cookies are blocked until you accept them. Elsewhere they are set by default and you can reject them at any time.

These are the services that may set cookies or receive data about your visit:

  • Google Analytics 4 — measures how the site is used: which pages are viewed, how visitors arrive, and which pages lead to a plugin download. Cookies: _ga, _ga_PTV5LZDCSW. Category: analytics.
  • Google Ads — measures whether an advertisement led to a download. Cookie: _gcl_au. Category: marketing.
  • Meta (Facebook and Instagram) pixel — measures whether an advertisement on Facebook or Instagram led to a download. Cookie: _fbp. Category: marketing.
  • Google Tag Manager — loads and controls the services above according to the choice you made. It sets no cookies of its own.
  • Google reCAPTCHA — protects our forms from automated abuse. Provided by Google, and it uses its own browser storage.
  • Cloudflare — serves and protects the website and collects anonymous performance measurements. Necessary for the site to run.
  • YouTube — our tutorial videos are embedded from YouTube, which may set cookies when you play one.

Rejecting cookies stops further data being collected. Cookies already stored on your device can be removed at any time through your browser settings.

Information we collect from visitors

  • If you write to us through the contact form, we receive your message and your contact details, and use them only to reply to you.
  • Analytics and advertising data is collected only in the categories you accepted, and is not used to identify you personally.
  • We do not sell or rent your information.

Information the plugin sends to Fabrement

The plugin works with the Fabrement service at api.fabrement.com. Until you sign in to a Fabrement account from your WordPress dashboard, the plugin sends us only the terms of the font searches you make on the Design System screen, and the update check described below. Once you sign in, it sends what the service needs to do what you ask:

  • your account details: the email address and password you sign in with, or your Google account if you sign in with Google. We also keep a normalised form of your email address so that one address cannot hold two accounts, and, if your account received free starting credit, the IP address you signed up from, so the credit is not claimed again from the same address;
  • the requests you make in the Fabrement chat or through a connected AI agent, together with what you attach to them, such as a Figma design you import;
  • the blocks, templates and design system the service generates for you, and their versions, which it keeps so you can restore and reuse them;
  • the messages you send us when you ask for help.

Update check. A copy of the plugin downloaded from fabrement.com checks api.fabrement.com for new versions, usually twice a day, whether or not you have signed in. With that check it sends your site’s address, the plugin version, your PHP version and your site’s language, and your Fabrement project id once you have signed in. A copy installed from WordPress.org gets its updates from WordPress.org instead and does not make this check.

Request logs. Like most web services, api.fabrement.com records every request it receives in its server logs: the IP address it came from, the time, the address requested and the User-Agent header, which WordPress fills with its version and your site’s address. We use these logs to run and secure the Service and to investigate problems.

Where your information is kept

  • The Fabrement service runs on servers rented from Hetzner in the United States, and your account, projects, blocks and chat history are stored there.
  • Images you upload to the chat are stored with Cloudflare (R2 storage) in Europe.
  • Help requests reach our support team by email.
  • If you are in the European Union, the wider EEA, the United Kingdom or Switzerland, this means your information is transferred to and processed in the United States, as it also is by the AI providers the Service works with.

Your API keys

  • The key you enter for your AI provider (OpenAI, Anthropic or Google Gemini) is stored encrypted on your WordPress site. It is sent to the Fabrement service with each generation request, and the service uses it only to make that request to your provider on your behalf. While your free credit lasts, requests run on Fabrement’s own Google Gemini account instead, unless you added an OpenAI or Anthropic key.
  • Your Figma access token is stored on your WordPress site and is sent only to Figma (api.figma.com) when you import a design. It is never sent to us.

Your site’s visitors

  • The plugin does not collect personal data about your site’s visitors, and sends none to us.
  • Fonts chosen in your design system are loaded from Google Fonts unless they are installed on your site, so your visitors’ browsers request them from Google.

What happens to what you build

  • The blocks, templates and layouts you generate belong to you.
  • They are installed in your WordPress site and the plugin renders them, so it needs to stay installed for them to display on your pages. The Service also keeps a copy and its versions, as described above.
  • You can download the generated code and reuse it anywhere, including in your own theme, without restriction. Today that is a manual step rather than an automated export; an automated export to your theme is planned.

Third-party services

  • The Fabrement service passes AI generation requests to the provider in use: Google Gemini, OpenAI or Anthropic. What that provider does with them is governed by its own privacy policy.
  • If you connect an AI agent, such as Claude, to your site through MCP, whatever the agent reads from your site is sent to that agent’s provider.
  • Please review the policies of OpenAI, Anthropic, Google (Gemini and Google Fonts) and Figma before sending them anything confidential.

Security

  • We take reasonable measures to protect API keys and generated content.
  • You are responsible for your WordPress administrator credentials and your server environment.

Your choices

  • You can accept, reject or change your cookie preferences at any time from the cookie banner.
  • You can ask us what information we hold about you, ask for it to be corrected, or ask us to delete it, by writing to [email protected].
  • You can remove the plugin at any time. We keep no record of it when you do, and once it is removed it makes no further update checks.

Deleting your Fabrement account

  • To delete your account, write to [email protected] from the email address you signed up with. We may ask you to confirm the request before we act on it.
  • Within one month we delete the account and everything the Service keeps for it: your projects, blocks and their versions, design systems, icons, chat history and the images you uploaded to the chat. We confirm by email when it is done.
  • Blocks already installed on your WordPress site are files on your site, so they stay there and keep working while the plugin is installed. Generating or changing blocks needs an account again after that.

Changes to this policy

We may update this Privacy Policy from time to time. The current version is always published on this page.

Contact

Questions about this policy, or about information we hold, can be sent to 7Fridays INC. at [email protected] or through our contact form.