Data management

Last updated: 17 August 2026

Where your data sits, what leaves, and how to get it back or have it erased. For the legal detail — bases, rights, subprocessors — see the privacy policy.

Where it lives

WhatWhereRegion
Account, projects, billingNeon (Postgres)Frankfurt, Germany
Media, proxies, exportsCloudflare R2Western Europe
Application and servicesRailwayFrankfurt, Germany
Video renderingAWS LambdaEuropean Union

Your account and your content stay in the European Union. What leaves it is the material you deliberately send to a generation provider — a prompt, a reference image, a voice sample — and only for the time it takes to return the result. The list of those providers and the safeguards covering the transfer are in the privacy policy.

What we store

  • Your projects and their full timeline, including edit history.
  • The media you import and the images, videos and voices generated from them.
  • Your renders, for as long as you keep them.
  • The voice samples used to create a clone, and the clone itself. A cloned voice also exists at our voice provider, where it was trained: deleting it here deletes it there.
  • The conversations held with the built-in assistant, attached to their project.
  • The ledger of your credits, allowances and top-ups.

What we do not store

  • Your password — authentication is delegated and we never see it.
  • Your card number — Stripe holds it, we only ever see an identifier.
  • A record of your browsing: pages visited, time spent, actions taken. Only refused accesses are logged, for security.

Getting your data out

  • Your renders and imported media can be downloaded from the editor at any time, in their original format.
  • For a full export — projects, timelines, media, ledger — write to [email protected]. We reply within one month, in an open, machine-readable format.

Deletion

Deleting an item in the editor removes it immediately from your workspace. Deleting your whole account is requested by email; we then erase your projects, media, renders, voices and conversations — database rows and stored files alike — within 30 days. Where a provider holds a copy that only exists because you asked for it — a cloned voice at our voice provider — we delete it there too.

Two things survive, and we would rather say so plainly: invoices and accounting records, which the law requires us to keep for 10 years, and support exchanges, kept for 3 years and detached from your account. Deletion is final and there is no restore.

Backups

The database is backed up by our provider for disaster recovery. Content deleted at your request may persist in a backup until it rotates out; it is never restored into the live service, and the rotation applies the deletion in turn.