§ · Legal · Privacy

Your data,
handled honestly.

This is the plain-English version. We try to be precise without being legalistic. If anything is unclear, email privacy@editorop.com.

Last updated · August 29, 2026
01

What we collect

  • Account email: via Google OAuth or email credentials through NextAuth.
  • Uploaded clips and audio you provide to the editor.
  • Auto-generated transcripts produced from your clips by our AI pipeline.
  • Final exported MP4s rendered through our Remotion Lambda pipeline.
  • Usage data: analyses run, exports made, credits consumed (used for billing and quota enforcement).
  • Error logs via Sentry with PII scrubbed (no email, no IP, no session tokens).
  • Person-segmentation mattes: for the "text behind you" effect we run automated person-segmentation (an outline of the person vs the background) on your video. This is not facial recognition — no face template, faceprint, or identity match is ever created, and the matte is deleted with your project.
02

Who we share with (sub-processors)

We share only what is required for each service to function. We never sell your data.

  • OpenAI / Groq: Whisper speech-to-text transcription of your clips' audio. Under their API terms neither uses your content to train models; OpenAI retains transcripts up to 30 days for abuse monitoring, then deletes them.
  • AWS Bedrock: the AI editing decisions. Models on Bedrock: Kimi K2.5 (Moonshot AI), GLM-4.7 (Z.ai), and Anthropic Claude as fallback. Bedrock runs these models inside AWS accounts the model providers cannot access — per AWS, the model providers never see your prompts or transcripts, and AWS does not use Bedrock content to improve its services.
  • Cloudflare R2: encrypted storage for your video assets.
  • Vercel: frontend hosting.
  • Railway: backend hosting.
  • Supabase: account database.
  • Dodo Payments: payments and tax. Dodo is the seller of record on your invoice and handles VAT/GST/sales tax globally.
  • Sentry: error monitoring (PII-scrubbed).
  • Resend: email delivery — the receipts, failure notices and, if you opt in, product news. Holds your address and the delivery status of what we sent you.
  • Modal: GPU compute for the behind-the-speaker cutout. Receives the seconds of footage being cut out, nothing else, and keeps nothing after the job.
  • Unsplash: imagery for concept graphics. Receives a search word derived from your transcript; no other personal data is shared.
  • Vercel Analytics & Speed Insights: privacy-friendly, cookieless traffic and performance metrics. Aggregated; no cross-site tracking.
  • PostHog: product analytics, so we can see which features work and where people get stuck. For visitors who are not signed in it runs cookielessly: nothing is stored on your device and no profile is built. Once you sign in, your usage is linked to your account, because running the product you paid for is why we measure it. Screen recordings are separate and only happen if you say yes in the banner.
  • Pexels, Giphy, Brandfetch, Wikipedia: stock footage, sticker, and logo lookups. Search terms derived from your transcript or typed by you are sent to find matching assets; no other personal data is shared. Assets they return are royalty-free / free to use; see our Terms for how stock assets and your own uploads are licensed.
  • What we never do: we never sell your data, and we never use your videos, audio, or transcripts to train AI models — ours or anyone else's. If that ever changed it would be prospective and opt-in only, never applied to content you already uploaded.
03

Retention

  • Clips, projects, and exports: kept while your account is active, so you can come back to a project any time. Deleted when you delete the project or your account.
  • Transcripts at our AI providers: OpenAI retains API inputs for up to 30 days for abuse monitoring, then deletes them. AWS Bedrock does not retain your prompts or outputs.
  • Account email and billing records: kept while your account exists. Financial records are retained for up to 7 years per applicable tax law, even after account deletion.
  • Sentry logs: 90-day rolling retention.
  • Backups: deleted data can persist in encrypted backups until they are overwritten on our normal rotation schedule. Backup copies are never restored to re-instate deleted data, and are used for disaster recovery only.
04

Your rights

We aim to honor GDPR- and CCPA-style data rights for all users globally, regardless of jurisdiction. We do our best in good faith.

  • Legal basis (EEA / UK): we process your data to perform our contract with you (running the Service), on your consent (where we ask for it, e.g. optional analytics), and our legitimate interests (security, abuse prevention, and improving the product), balanced against your rights.
  • Access & portability: download a machine-readable JSON export of your account, consents, projects, and library from your account page, or email privacy@editorop.com. Your finished videos download as MP4s from the editor.
  • Deletion: delete your account from the same account page. This removes your videos, exports, projects, and library. Billing records are retained per tax law; deleted data can persist in encrypted backups until rotation (see Retention).
  • Correction: to correct your account email, contact privacy@editorop.com.
  • Object, restrict & withdraw consent: you can object to or restrict processing, and withdraw any consent you gave, at any time.
  • California (CCPA / CPRA / CalOPPA): you have the right to know, delete, and correct your personal information, and to opt out of its "sale" or "sharing." We do not sell or share your personal information, and we will never discriminate against you for exercising any privacy right. Do Not Track: our analytics run only with your consent (see Cookies); we do not respond to browser DNT signals separately.
  • Children: EditorOP is for adults (18+). We do not knowingly collect data from anyone under 18; tell us if you believe a minor signed up and we will delete it.
  • Complaints: EEA / UK users may lodge a complaint with their local data protection authority. We'd appreciate the chance to put things right first.
05

Cookies

  • NextAuth session cookies: required for sign-in. HTTP-only, secure, SameSite.
  • Sentry error context: anonymized debugging session ID.
  • Measurement (no cookies): PostHog and Vercel Analytics count pages and clicks without storing anything on your device. No cookie, no identifier that survives the tab, no cross-site profile.
  • Session recordings (your choice): a replay of your own screen inside the product, which is how we find what breaks. Off until you choose Allow recordings. Choosing Not now, then or later, stops it and clears what was stored. We use no advertising or cross-site-tracking cookies, and we never sell your data.
  • Essential sign-in and security cookies always remain. You can change your analytics choice at any time via the control — withdrawing is as easy as accepting.
06

International users

EditorOP is operated from India; for data-protection purposes the data controller is EditorOP (contact privacy@editorop.com). Data is processed in the United States and India (AWS, OpenAI, Sentry, Cloudflare, and our hosting). Where we pass personal data to sub-processors outside the EEA / UK, we rely on their Standard Contractual Clauses and, where certified, the EU-US Data Privacy Framework. EEA / UK users can lodge a complaint with their local supervisory authority at any time — we'd appreciate the chance to put things right first at privacy@editorop.com.

07

Changes to this policy

We'll notify users by email for any material changes, with at least 30 days notice. Continued use of the Service after the effective date constitutes acceptance.

08

Contact

For privacy questions or data requests, email privacy@editorop.com. For security issues, see our Security page.