Privacy Policy
What we collect, why, who we share it with, and your rights.
- Version
- 2026-08-25
- Effective
- 2026-08-25
PLACEHOLDER — NOT YET REVIEWED BY A QUALIFIED PERSON. The structure and the factual descriptions below were written from the product's actual code and infrastructure and are accurate as far as they go. The operative legal wording has not been reviewed. Do not rely on this document until that review has happened and this banner is removed.
1. What we collect
| Data | Why | Where it comes from |
|---|---|---|
| Email address | Account identity, sign-in, transactional mail | You, at sign-up (or from Google if you use that) |
| Password hash | Sign-in | You. We never store the password itself. |
| Character descriptions and prompts | To generate what you asked for | You |
| Chat transcripts | So the assistant has context, and so you can return to a session | You |
| Generated images, voice clips and video | So the product can show you your own work | Produced by the service |
| Credit ledger and billing status | To meter usage and manage your subscription | The service and Stripe |
| Request metadata (IP, user agent) | Security, abuse prevention, rate limiting | Your browser |
2. What we do NOT collect
We do not accept photographs of real people, and we do not build biometric face templates of real people. Characters are generated from text. The upload route that could once have accepted a likeness photo is closed, and no such photo has ever been stored.
The service does compute a mathematical consistency signature over the images it *generates*, so that a character looks the same across shots. That signature describes synthetic output, not an identifiable person.
3. Legal basis
- Contract — everything needed to give you the service you signed up for.
- Legitimate interests — security, abuse prevention, and keeping the service working.
- Consent — optional analytics cookies only. See the Cookie Notice.
4. Who your data reaches
Generating a character means sending your prompt to a model provider. The complete list of sub-processors, with what each one receives:
| Provider | Purpose | Location | Data |
|---|---|---|---|
| Supabase | Database, authentication, and file storage | United States | Account email, generated images and video, chat transcripts, credit ledger |
| Railway | Application and background-worker hosting | United States | All request data in transit; application logs |
| Vercel | Web frontend hosting and delivery | United States | Request metadata (IP, user agent) for delivery and abuse prevention |
| Stripe | Subscription billing and payment processing | United States / Ireland | Account email, billing details. Card numbers never reach our servers. |
| OpenAI | Chat assistant, prompt generation, and content moderation | United States | Chat messages and generation prompts; images submitted to the moderation endpoint |
| Runware | Character image generation and voice-seed synthesis | United States / European Union | Generation prompts and generated media |
| PiAPI | Video generation | United States | Scene prompts, generated reference images, generated video |
Several are outside the UK and EU, so international transfer safeguards apply. PLACEHOLDER — the specific transfer mechanism (Standard Contractual Clauses, UK IDTA, or an adequacy decision) must be confirmed per provider by a qualified person.
5. How long we keep it
| Data | Retention |
|---|---|
| Account record and email | Until you delete the account |
| Generated media | Until you delete it, or until account deletion |
| Chat transcripts | Until you delete the session, or until account deletion |
| Credit ledger | Retained after account deletion where required for financial record-keeping |
| Application logs | Short-term, for operating and debugging the service |
6. Your rights
You can ask for a copy of your data, correction of it, deletion of it, or restriction of how it is used. Account deletion and data export are not yet self-service — request them through Support and we will action them. Building the self-service versions is tracked as work in progress.
7. Security
See the Security page.
8. Changes
New versions get a new version date at the top of this page.