Privacy Policy
Last updated: [EFFECTIVE DATE]
1. What data we collect
Account data: email address, password hash (or OAuth identity, if you sign in with Google), display name, avatar URL, plan tier, credit balance, and Stripe customer ID (for billing). We also record IP address and user agent on your login sessions for account security (detecting suspicious logins, session management), and a lightweight record of the last page you visited for first-party product analytics.
Content data: the prompts you write, the video/audio/image content Vicreon generates for you, and any assets you upload (logos, intro/outro clips, voice samples), along with the scene plans and thumbnails generated along the way.
Decision and outcome metadata: which generation provider was used and why, and signals about whether you approved, rejected, or edited generated content before publishing. See Section 3 for how we use this.
2. Third-party processors
We share data with the following third parties, only as needed to provide the Service. We only list processors that are actually integrated into Vicreon today — features tied to optional processors are simply unavailable if not configured.
| Processor | Purpose | What's shared |
|---|---|---|
| OpenAI | Scene/script planning, lyrics generation, comment analysis, reference-video recipe distillation | Prompt/transcript text — not raw video or image bytes |
| Fal.ai | AI video clip generation | Prompts and generation parameters |
| ElevenLabs (optional) | AI voiceover text-to-speech | Script text. If not configured, Vicreon falls back to a local, no-third-party TTS engine (edge-tts) |
| Suno (optional) | AI music generation | Prompts/lyrics |
| Pexels (optional) | Stock footage search | Search queries |
| Cloudflare R2 | Storage for all generated/uploaded media | Media files |
| Stripe | Payment processing | Billing/payment details |
| Resend (optional) | Transactional email | Email address, message content |
| Google / TikTok / Instagram | OAuth sign-in and publishing to your connected accounts | OAuth tokens (encrypted at rest), published content |
| YouTube Data API | Public video statistics lookup | Public video IDs/URLs |
3. How we use data
We use account and content data to operate the Service: generating and publishing your videos, billing, account security, and customer support. We use decision and outcome metadata (which provider was chosen, approval/rejection/edit signals, and similar operational signals) — including in aggregated or de-identified form — to operate, maintain, and improve the Service, including improving the automated decisions it makes on your behalf. We do not use your raw generated video, audio, or image content to train models for third parties or products outside Vicreon, and we do not sell your content or personal data.
4. Data retention and deletion
We retain your account and content data for as long as your account is active. There is currently no self-service account-deletion button; to request deletion of your account and associated data, contact us at [SUPPORT EMAIL] and we will process the request within [DATA DELETION TIMEFRAME]. Some records (e.g. billing records) may be retained longer where required by law.
5. Your rights
Depending on your jurisdiction, you may have rights to access, correct, export, or delete your personal data, and to object to certain processing. Contact us at [SUPPORT EMAIL] to exercise these rights.
6. Children's privacy
Vicreon is not directed at, and does not knowingly collect personal data from, anyone under 18. Accounts require you to confirm you're 18 or older at signup. If we learn an account belongs to someone under 18, we will take steps to close it.
7. Security
We encrypt sensitive credentials (such as connected-account OAuth tokens) at rest, use industry-standard session security practices, and restrict access to personal data to what's needed to operate the Service. No method of transmission or storage is 100% secure, and we can't guarantee absolute security.
8. Changes
We may update this Privacy Policy from time to time. We'll post the updated policy here with a new "Last updated" date, and for material changes we'll make reasonable efforts to notify active account holders.
9. Contact
Questions about this Privacy Policy? Contact us at [SUPPORT EMAIL].