Data and privacy

You control the project.
You control the transfer.

Version 1 · 30 September 2026

Files on your computer

Video stores managed originals, playback media, analysis, and the edit history in your project folder. Editing does not require a cloud copy of that folder. A portable project archive includes the files needed to reopen the project.

Account information

The account service stores your account identity, device sessions, plan, credit ledger, and payment references. Password accounts use password hashes. Google sign-in requests your basic profile and email address. Desktop refresh tokens use the operating system credential store.

Three privacy modes

Fully Local blocks cloud processing of project content. Private Media allows derived text context but blocks raw media uploads. Standard permits approved cloud processing. A request must state its data scope and estimated cost before it starts.

Cloud editing

A cloud plan can use the instruction, selected timeline metadata, transcript text, and selected analysis results. Do not include content you do not want the configured provider to process. Requests exclude local file paths. Stored request context is encrypted and removed after processing.

Payments and diagnostics

Your selected payment provider processes payment details. Video stores payment references and entitlement state. Optional desktop diagnostics are off by default. Diagnostic records must exclude footage, transcripts, prompts, and file names.

Local ownership

You can copy or remove your project folders with your operating system. Sign out to remove the local account session. Use Account to revoke other device sessions. A production service must publish its operator contact and account deletion process before a public launch.