Frequently Asked Questions
Last updated: 24 August 2026
Quick answers to the most common questions about Shower. If you don't see your question here, email support@smoothly.dev.
What is Shower?
Shower is an AI-powered platform for building applications and websites by chatting with an assistant. Tell it what you want to build, and it generates working code, lets you preview it live, and publishes it under a smoothly.to subdomain or your own custom domain. Shower is designed to complement Shopify and other commerce platforms with storefronts, landing pages, and lightweight plugins.
Who owns the code I build?
You do. You retain full ownership of the websites, applications, code, and content you create with Shower. Shower does not claim any ownership rights over your output. See section 5 of our Terms of Service for the full IP terms.
Does Anthropic train on my code or prompts?
No. We do not use customer code, prompts, or generated content to train any AI model. Anthropic does not retain or train on data sent through our API integration with Claude. Other AI providers we use (Google Gemini for image generation, OpenAI for embeddings) are bound by similar API-tier no-training agreements. The full list is on our Subprocessors page.
What security certifications do you have?
We are GDPR compliant today. We are preparing for SOC 2 Type II and ISO 27001 certification, but we are not certified yet and do not publish a target date until an audit is formally under way. Our infrastructure providers (Vercel, Supabase, Cloudflare, Stripe) are themselves SOC 2 Type II and ISO 27001 certified. Full details are on our Security page.
Where is my data stored?
Your database and your project files are stored in the European Union: the database runs on Supabase in the EU, and project files are stored in Cloudflare R2 in Western Europe. Some parts run outside the EU. The Shower application itself is served by Vercel, AI providers such as Anthropic are in the United States, and the temporary containers that build your project (Modal) are not pinned to a region, so an individual build may run outside the EU. And a site you publish is delivered through a content delivery network, which keeps cached copies on servers in any country so pages load quickly wherever the visitor is. We do not control how long those copies are kept — our settings let one be served for up to a year without being re-checked, and we have no way to delete it on a schedule. What you store stays in the EU, but copies of what you publish do not. Transfers outside the EEA are protected by Standard Contractual Clauses. The full breakdown is on our Subprocessors page.
What happens if I close my account?
You will have a 30-day window to export your project source code, assets, and other data via the platform export tools. After that window, your data is deleted within 30 days, and any websites published on smoothly.to subdomains are taken offline. Backups containing deleted data are overwritten in line with normal backup rotation. Some records (for example billing data) are retained longer where required by law.
How do I contact support?
Email support@smoothly.dev for general questions and account issues. For security issues, use security@smoothly.dev. For active incidents, use incident@smoothly.dev.
What payment methods do you accept?
We accept all major credit and debit cards (Visa, Mastercard, American Express) and selected local payment methods through our payment processor, Stripe. All prices are denominated in euros (EUR). Invoices are available from your account dashboard.
Do you offer refunds?
Subscriptions are billed in advance and do not auto-prorate. You can cancel any time and will retain access until the end of your current billing period. We do not issue refunds for partial billing periods or unused credits. If you believe you have been charged in error, email support@smoothly.dev and we will investigate. EU consumers retain any statutory withdrawal rights that apply under applicable law.
Related
- Security — how we protect your data
- Subprocessors — vendors we use
- Data Processing Agreement — for business customers
- Terms of Service
- Privacy Policy