Security
Practical safeguards, explained plainly.
AnyTemplate AI uses layered access controls and server-side checks to protect accounts, billing, templates, and credits.
Payments
Stripe processes checkout, subscriptions, payment methods, and approved refunds. Payment actions are created on the server, and verified Stripe webhooks are the source of truth for subscription and credit changes. Full card numbers are not handled by AnyTemplate AI.
Private accounts and templates
Saved templates, spreadsheets, and covers are tied to authenticated accounts. Database row-level access controls restrict user-owned records, and private cover files use signed access rather than public storage.
Server-side secrets
Sensitive provider keys and privileged database credentials remain on the server. Browser code receives only public configuration needed to establish an authenticated session.
Safer spreadsheet generation
Smart Spreadsheet requests go through a capability preflight. Unsupported requests do not proceed or consume credits, and temporary preflight failures stop safely. The spreadsheet engine uses validated formulas and does not run arbitrary JavaScript, macros, VBA, or external links.
Credit protection
Credits are reserved and finalized by the server. If a generation fails, the reserved credits are returned. Browsing categories, choosing a starter, editing a prompt, downloading, printing, exporting, and changing themes do not consume generation credits.
What we do not claim
We do not claim SOC 2, HIPAA, ISO, GDPR, or PCI certification. Stripe maintains its own security and compliance program for payment processing.
Report a concern
Email support@anytemplateai.com with a clear description. Do not include passwords, authentication tokens, or full card information. Read our Privacy Policy for data-handling details.
AnyTemplate AI is operated by Dhaval “Dave” Patel in Texas, United States.