Skip to content
Legal

What we agree to, and what we do with your footage.

Three documents on one page: the terms of service, the privacy policy and the data processing addendum. They are written to be read by the person paying the bill — short sentences, the real numbers, and the limits stated where they apply rather than in a footnote at the end.

Version 1.0 · effective 6 October 2026 · applies from your first upload · the figures match the tiers on the pricing page.

Document one

Terms of service.

Effective 6 October 2026 · version 1.0

1. Who this agreement is with

This Studio runs on one server, operated by one owner. “We” and “the Studio” mean that installation and the person who runs it; “you” means the person who holds the account. Every obligation in this document is owed by a named person who answers their own contact page, not by a company you have never heard of. If that is not the arrangement you want, the honest answer is that Studio is not the right tool for you yet.

2. Your account

One account is one person. You sign up with an email address and a password of at least eight characters, and the account is created with one project called “My videos”. Sign-up can be closed at any time; when it is, new accounts are refused with a message telling you to ask for one. There is no two-factor authentication, no social sign-in and no password reset by email — if you lose your password, the owner resets it for you by hand. Keep your password to yourself: anything done with your session is treated as done by you.

3. What a credit is, and what is charged

A credit is one minute of source footage. It is not a render, not an export and not a generation. When a video finishes, we charge the running time of the files you uploaded, added together and rounded up to the next whole minute — a 42-minute interview with a 40-second intro is 43 credits. The charge happens once per finished job and never again for that job: a restart, a retry or a second render does not charge twice. The length of the finished video does not matter, and neither does the number of versions you keep.

4. What is never charged

  • Revisions. Every message you write in a video's chat makes a new version, and none of them is charged. Ask for changes until the video is right.
  • Shorts. Shorts cut from a video you have already paid for cost nothing, whether you ask for one or ten.
  • A job you stop. Stopping keeps everything done so far, deletes nothing and charges nothing.
  • A job that fails. A failure is our problem, not your bill. Retrying it from where it stopped is also free.
  • An upload that is refused. If a file is too large, the disk is too full or your balance is too small, nothing is charged, because nothing ran.

5. Allowances, rollover and top-ups

The monthly allowance is 300 minutes on Creator ($10), 2,000 on Pro ($50) and 5,000 on Studio Business ($100). The Free tier is 30 minutes once, and it is not a trial with a countdown. Unused monthly minutes roll over — one month on Creator, two on Pro, three on Studio Business — and the rolled-over balance is capped at one month's allowance, so a quiet quarter cannot become a year of free editing. Top-up minutes never expire, on any tier including Free. When you use minutes, the monthly allowance is spent first and top-ups second, because the allowance is the part that can expire and the top-up is the part that cannot.

You are never charged an overage. An upload longer than the minutes you have left is refused before it starts, with the exact shortfall and three ways forward: buy a top-up, move up a tier, or upload only the part that fits. Nothing is ever charged to a card automatically.

6. Payment, receipts and refunds

Today there is no payment provider connected to the Studio: subscriptions and top-ups are recorded by the owner in the credit ledger, and the ledger is the receipt — every grant and every charge, with its reason, its date and the video it belongs to, readable from your account at any time. When a payment provider is connected, it will write to that same ledger and nothing else about your account will change.

Refunds. Within seven days of a payment, if no job has run on those minutes, we refund the unused part pro rata. After seven days, or once a job has run, we do not refund. That is not a penalty clause: by then the edit has consumed real machine time on a real server, and the language work has cost real money, neither of which comes back.

7. Acceptable use

  • Upload only footage, pictures and music you have the right to use. Owning the camera or the file is not the same as owning the rights to the music in it.
  • Do not use the Studio to make a person appear to say something they did not say. The product is built against this — cards are made from your own words and checked against your own transcript — and using it to fake speech is a breach of these terms.
  • Do not upload material that is unlawful, that harasses or threatens anyone, that sexualizes minors, or that is intended to deceive people about who made it.
  • Do not attempt to work around the limits: the caps on files, size, concurrent videos and change requests are part of the service, not obstacles.
  • One account per person. Do not resell editing as your own service, and do not share an account to avoid a tier.

There are rate limits, and they are enforced: 30 change requests per account per hour, 12 log-in attempts per address per ten minutes, 5 new accounts per address per hour. We may refuse work that ignores them, and repeated abuse ends the account.

8. Your footage stays yours

You keep every right you had in your footage, your pictures, your music and your words. We claim no licence over them beyond what is needed to do the job you asked for: store the files, read them, transcribe the speech, cut, plan, draw, render, and deliver the result to you. That licence ends when the files are deleted. If a rights holder complains about material you uploaded, we may have to remove it and will tell you in the product.

9. What we will not do with your footage

We will not use your footage, your transcript or your finished videos to train any model, ours or anybody else's. We will not sell them, license them or show them to another customer. We will not use a video of yours as a public example without asking you first, and a “no” is final and does not need a reason.

10. How long we keep things

Footage, finished videos, every version and every short are kept for the window that belongs to your tier, counted from the last activity on that video: 7 days on Free, 30 on Creator, 90 on Pro and 365 on Studio Business. You can delete a video's footage yourself at any time; the uploads, the versions and the shorts go, and the page tells you the bytes freed.

Deleting the footage keeps the notes: the editing decisions, the chat, the transcript, the plan and what the Studio learned about your preferences. Those are what make your next video better, they contain no media, and they are the only part of a deleted video that survives. One honest note about the server underneath: its retention setting treats zero as “keep forever”, and the windows above are the policy this document sets — if the two ever disagree, the windows above win.

11. Ending the agreement

You can stop using the Studio whenever you like. Cancelling a subscription runs to the end of the period you have paid for, and your footage is kept for your tier's window and then follows the Free window. Closing an account completely is a request to the owner today, because there is no self-service deletion: what you can do yourself is disable the account, which takes effect at once and signs out every session. Disabling does not delete anything — ask, and the account and its records are deleted.

12. Changes and notices

We give notice in the product before a change that affects what you pay for, how long your footage is kept or what we may do with it — at least 30 days before it takes effect, and the version number and date at the top of this page change with it. Because the Studio sends no email, “notice in the product” means a message on your dashboard when you next sign in; if you need notice somewhere else, tell the owner and it will be arranged. Continuing to use the Studio after a change takes effect means you accept it; if you do not, stop before the date and we will settle the unused part of the period.

Document two

Privacy policy.

Effective 6 October 2026 · version 1.0

1. What is stored

  • Your account: the email address you signed up with, the name or brand you gave, and your password as a salted hash. The password itself is never stored in a readable form.
  • Your sessions: every sign-in writes its own row with the time, the address it came from and the browser, so “where was I signed in from” has an answer. Session records are kept for 30 days.
  • Your work: projects, the preferences that shape your edits (account and project), the credit ledger, and for each video the uploaded files, the transcript, the edit decision list, the plan, the decisions, the chat, every version, every short and the job log.
  • Telemetry: which pages were opened, which actions were taken, timings, and errors reported by your browser. It is used to find faults and to know what to improve, and it is stored on the same server as everything else.

2. Addresses

An IP address is hashed with a salted hash when it arrives, and the original address is never written down. The hash is used to count sign-ups, to apply the rate limits and to group errors; nothing else reads it. Be aware of what a hash is and is not: it is stable while the salt stays the same, so the same address produces the same hash on the same server, which is what makes counting possible. It is not reversible, and the salt is not published.

3. Cookies

One cookie is set: studio_sid, the session. It is HttpOnly, so page scripts cannot read it; SameSite=Lax; Secure when the site is served over HTTPS; scoped to the Studio's path; and it expires after 30 days. Signing out deletes the session row and clears the cookie, and changing your password deletes every session of your account at once. There are no advertising cookies, no cross-site trackers and no third-party analytics scripts on any page of the product.

4. Who else is involved

Nothing outbound carries your video or your audio. Editing happens on the Studio's own server, and what leaves it is text. Five names belong in this list, and each one is here with exactly what it receives:

  • The model provider for the language work — it reads text: your transcript and the prompts built from it, so the Studio can decide what a sentence is about and plan its visuals. It never receives your video or your audio.
  • The transcription engine — speech recognition that runs on the same machine as the rest of the edit, on the processor, in the Studio's own process. It is listed because it is other people's software, not because it is another company's server: no audio is sent anywhere.
  • Pexels — stock video and photographs, and only when a job asks for stock visuals. It receives a short keyword query. It never receives your footage, your transcript or anything that identifies you.
  • Pollinations — generated images, used only as the fallback when no stock clip fits. It receives a short text prompt, written from what your video is about.
  • An object store — planned for finished files as the service grows, and not in use today: footage and videos currently live on the Studio's own server. If it is connected, it is named here with the region before anything is stored in it, and the DPA below applies to it as a sub-processor.

5. What is not done

  • No training. Your footage, your transcript and your videos are not used to train any model, ours or a provider's.
  • No selling. Your data is not sold, rented or traded, and there is no advertising business anywhere near it.
  • No third party receives your video for editing. There is no rendering service, no cloud editor and no transcoding API in the pipeline.
  • No silent profiling. What the Studio learns about your preferences is written into your own preference file, dated, with the words that taught it, and it is visible to you and to the owner — nobody else.

6. Your choices

You can read the decisions for any video, delete a video's footage at any time, disable your account yourself, and ask the owner for a copy of everything held about you or for the account's deletion. Requests are answered by the owner, by hand, because there is no automated data-export or deletion tool yet. If you believe something is wrong, or that a request has not been answered properly, the contact page reaches the same person who runs the server.

Document three

Data processing addendum.

Effective 6 October 2026 · version 1.0 · applies where you upload footage containing other people's personal data

1. Roles

You are the controller of the personal data inside the footage you upload — the faces, the voices, the names, whatever your contributors said. The Studio's owner is the processor: we handle that data only on your instructions, and your instructions are the things you actually do in the product — uploading files, naming a project, choosing preferences, writing in a video's chat, deleting footage, closing the account. We do not decide for ourselves what the edit is for, and we do not use your material for our own purposes.

2. Sub-processors, and notice of change

The sub-processors are the five named in the privacy policy, each with the same narrow scope: the model provider for the language work (text only), the transcription engine (on the same machine, no transfer), Pexels for stock visuals (a keyword query), Pollinations for generated images (a text prompt) and the planned object store (not in use today). We will announce a new sub-processor, or a change to what one of them receives, in the product at least 30 days before it takes effect. If you object to the change, tell the owner before the date and your subscription ends at the end of the paid period, with the unused part settled.

3. Security measures

  • Transport is encrypted; the session cookie is HttpOnly, SameSite=Lax and Secure behind HTTPS.
  • Passwords are stored as salted hashes, and changing one deletes every session of that account.
  • Accounts are isolated from one another: a project that is not yours answers as “not found” rather than confirming that it exists.
  • Sign-up and sign-in are rate limited, and so is the feedback chat.
  • Telemetry stores hashed addresses, never raw ones.
  • Access to the server is limited to the owner, and the product records which account did what.

4. Telling you about a breach

If we become aware of a breach affecting your data, we tell you without undue delay and within 72 hours of becoming aware. The notice says what happened, when it happened, what data was involved, what we have done about it and what we recommend you do. It is given in the product, and by any other channel already open between us. Studio does not send email today, so the notice appears in the product and through the contact address you already used.

5. Deletion when the agreement ends

On your instruction, footage and finished videos are deleted within 30 days of the end of the agreement, the record that carries no media — notes, chat, transcript, preferences — is deleted at the same time if you ask for it, and copies held in backups expire within 90 days. Deletion is confirmed in the product with the bytes freed, and on request in writing. If the law requires us to keep something, we say what and for how long.

6. Retention, in one place

Footage and finished videos: 7 days on Free, 30 on Creator, 90 on Pro, 365 on Studio Business, counted from the last activity on the video. Session records: 30 days. The credit ledger: kept while the account exists, because it is the record of what was paid for. Telemetry: kept for the life of the installation in aggregate form, with hashed addresses only. Deleting footage keeps the notes and the transcript — no media, and no face or voice — and that record is deleted when the account is.

Questions about any of the three documents go to the same place: the contact page, which reaches the owner directly. There is no support queue and no ticket number.