Privacy Policy
Last updated: 30 July 2026
This policy explains what information Studio Flows (“the Service”) collects, how it is used, and the choices you have. Studio Flows is an independent product operated by its developer as a sole proprietorship; no company has been incorporated at this time. This policy reflects how the product actually works today.
Information we collect
- Account information. Your email address and an encrypted password (handled by our authentication provider), and the studio name you set at signup.
- Content you create. Projects, clients and contacts, leads and deals, briefs, assets and file uploads, comments, approvals, call sheets, budgets, agreements, documents, and related production records you enter or upload.
- Connected accounts. If you connect Google (Gmail, Calendar, Drive, Chat), Slack, or Figma, we store access tokens and the specific data you choose to link (for example an email thread or a file) so it can appear inside your projects. You can disconnect these at any time in Settings.
- Usage and technical data. Basic log and device data needed to operate and secure the Service, including error reports when something goes wrong.
How we use information
- To provide, maintain, and improve the Service.
- To operate features you invoke, including optional AI features that generate summaries and drafts from your project content.
- To secure the Service and prevent abuse.
- To communicate with you about your account.
AI features, and what leaves the Service
Several features are powered by a third-party AI provider: the project summary, the client update and outreach drafts, the composer’s polish button, invoice and document reading, and the in-app assistant.
These run only when you invoke them. When you do, the relevant project content is sent to the AI provider so it can produce an answer. Under that provider’s API terms, content sent this way is not used to train their models. If you would rather no content left the Service, simply do not use those features; nothing runs on its own in the background.
Who processes your data
We do not sell your personal information. The Service runs on the following providers, acting on our instructions:
- Supabase, for the database, file storage, and authentication.
- Vercel, for hosting and application delivery.
- OpenAI, for the AI features described above.
- Resend, for transactional email such as invitations and review requests.
- Sentry, for error reporting.
Separately, and only if you choose to connect them, Google, Slack, and Figma receive requests on your behalf to read or send the specific content you link.
Where your data is stored
Data is stored in the United States. If you are located elsewhere, using the Service involves transferring your information there.
Sharing you control
When you create a public share or review link (for a client review, a call sheet, or a document), anyone with that link can view the shared content without signing in. Those links can be revoked in the app. Team members and project collaborators you invite can access the projects you share with them. Information may also be disclosed where required by law or to protect rights and safety.
Data retention and deletion
We retain your data for as long as your account is active. There is no self-service delete button during the beta. Email studioflows1@gmail.com and your studio’s data, including uploaded files, will be exported or permanently deleted within 30 days of the request.
Security
Access to studio data is restricted to members of that studio through database row-level security, and file access is gated by signed, time-limited links. Passwords are handled by our authentication provider and are never visible to us.
No system is perfectly secure, and this is early-access software. Please keep your own copies of anything critical rather than relying on the Service as the only place it exists.
Your choices
- Disconnect any connected account in Settings at any time.
- Update or delete content you have created.
- Revoke any share or review link you have issued.
- Request account deletion or a data export by email.
Contact
Questions about this policy? Email studioflows1@gmail.com.