VidLabs
Studio
Back

VidLabs Privacy Policy

Last updated: July 14, 2026

1. Who we are

VidLabs operates tryvidlabs.com and provides tools to analyze and remix short-form video content.

2. Data we collect

  • Account data: email, name, avatar, auth provider IDs.
  • Profile & onboarding data: creator type, platforms, audience details, goals, revenue range, niche, and any other info you provide in onboarding or questionnaire flows. We use this solely to personalize your experience (relevant tools, tips, and recommendations), improve our analytics, and tell you about features that match your profile.
  • Usage data: URLs you analyze, generated transcripts, scripts and saves.
  • Billing data: handled by Stripe for web purchases and by Apple (App Store) for purchases made in our iOS app; we never store full card numbers.
  • Technical data: IP, device, referrer for security and analytics.

3. How we use it

To provide and improve the service, process payments, send transactional emails, prevent abuse, and comply with the law.

4. Sharing

We share data only with processors that run the product: Supabase (database/auth), Stripe (payments), Apple (App Store purchases), Cloudflare (hosting), our email provider, and analytics. We never sell your data.

5. Your rights

You can access, export, correct or delete your data at any time. Email hello@tryvidlabs.com and we'll respond within 30 days. EU/UK users have rights under GDPR; California users have rights under CCPA.

6. Cookies

We use strictly necessary cookies for auth and a small set for analytics. No third-party advertising cookies.

7. Data retention

  • Account & profile data: kept while your account is active; deleted within 30 days of account deletion (backups roll off within 30 days after that).
  • Saved generations, transcripts, scripts: kept until you delete them or delete your account.
  • Direct messages & group chat messages: kept until you delete them, the other party deletes the thread, or your account is closed. Deleted messages are removed from active systems immediately and purged from backups within 30 days. We may retain a copy of any message flagged via report for up to 12 months for safety review, even if the sender deletes it.
  • Location (city/state/country): stored only while Near You is on; cleared immediately when you turn it off or clear it from the Location tab.
  • Block & report records: retained for the life of the account for safety, moderation, and repeat-offender enforcement.
  • Billing & purchase records: retained for at least 7 years to comply with tax and financial regulations.
  • Logs & technical data: 30–90 days for security and abuse prevention.

8. Children

VidLabs is not for users under 13. We don't knowingly collect data from children.

9. Your privacy choices (CA residents)

VidLabs does not sell or share your personal information for cross-context behavioral advertising as defined under the California Consumer Privacy Act (CCPA/CPRA). You have the right to opt out at any time. Because we don't sell or share your data, there is nothing to opt out of — but if you'd like written confirmation or want to exercise any other CCPA right (access, delete, correct), email hello@tryvidlabs.com and we'll respond within 30 days.

10. AI features

VidLabs uses AI models (including third-party LLM providers) to power analysis, generation, and chat features. When you use these features, your inputs (URLs, prompts, transcripts) are sent to those providers solely to return a result to you. We do not allow providers to train their general-purpose models on your inputs. AI outputs may be inaccurate — review before relying on them. Do not submit sensitive personal, medical, legal, or financial info.

11. Data & tracking summary

A plain-language summary of what we collect and why (mirrors the data we declare in Apple's App Store Privacy Label):

  • Linked to you: email, name, creator profile, usage history, saved generations, purchases.
  • Used for app functionality: all of the above.
  • Used for analytics / product improvement: usage events, device/technical data (aggregated).
  • Used for tracking across other companies' apps or websites: none. We do not use third-party ad SDKs and do not share data with data brokers.

12. Copyright (DMCA)

To report copyright infringement, see the DMCA section of our Terms or email hello@tryvidlabs.com.

12a. Google user data — Limited Use & protection

VidLabs offers optional integrations with Google services (for example, Google Calendar). When you choose to connect your Google account, we request the narrowest scopes needed for the feature you're using (e.g. calendar.events to create and read calendar events you schedule through VidLabs).

Limited Use. VidLabs' use of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Specifically, Google user data is:

  • Used only to provide or improve user-facing features that are prominent in the VidLabs interface (e.g. showing and scheduling your calendar events).
  • Never used to train, fine-tune, develop, or improve any generalized or personalized AI/ML models — ours or a third party's.
  • Never sold, rented, or transferred to third parties for advertising, data-brokering, or credit-worthiness purposes.
  • Never shared with third-party AI providers for training, evaluation, or any purpose other than the specific user-initiated action you requested.
  • Only accessed by humans when you explicitly request it, we need it for security or to investigate abuse, we need it to comply with applicable law, or the data has been aggregated and de-identified for internal operations.

How we protect Google user data.

  • Encryption in transit: all traffic to and from Google APIs, our servers, and your device is encrypted using TLS 1.2+.
  • Encryption at rest: OAuth tokens and any cached Google data are stored in our managed database with AES-256 encryption at rest; sensitive credential fields are additionally encrypted at the application layer before being written.
  • Access controls: Google user data is accessible only to the authenticated VidLabs user who authorized it (enforced via row-level security). A very small number of VidLabs engineers may access production systems only for security incidents, abuse investigations, or legally required disclosures; all such access is logged and audited.
  • Retention: we retain Google OAuth tokens only while your integration is connected. Cached calendar events are retained only as long as needed to render the feature and are refreshed from Google on demand.
  • Deletion: you can disconnect Google at any time from Settings → Sync. Disconnecting immediately revokes our OAuth token, deletes stored tokens, and purges cached Google data from active systems within 24 hours (backups roll off within 30 days). You may also revoke access directly at myaccount.google.com/permissions.

Questions about Google data handling: hello@tryvidlabs.com.

13. Near You — location collection & use

Near You is an opt-in Pro feature that helps you discover other creators in your city and message them. When you enable it, we collect and store:

  • Coarse location only: the city, state/region, and country code you provide (either typed or derived from an approximate lookup). We do not collect, store, or share GPS coordinates, precise device location, street address, or continuous location tracking.
  • Purpose: to show your public creator card to other Pro users in the same city/state, to power the "creators near you" list, and to route local group chats.
  • Control: you can turn Near You off, change your city, or clear your location at any time from Settings → Location. Turning it off removes your card from discovery and clears the stored location.
  • iOS: if you grant iOS location permission, it is used only to suggest your city on first setup — the raw coordinates are not sent to our servers or retained. You can revoke permission anytime in iOS Settings → Privacy → Location Services → VidLabs.

VidLabs facilitates introductions only. We are not responsible for offline meetups, in-person events, exchange of contact information, or any user-to-user interactions that occur as a result of using Near You or local group chats.

14. Direct messages & user-submitted content

When you send direct messages, participate in group chats, post to a shared feed, or submit any other user content, we store that content on our servers so we can deliver it to recipients and show it back to you. Messages are transmitted over encrypted connections (TLS) and stored encrypted at rest, but they are not end-to-end encrypted — VidLabs staff may access message content only when strictly necessary to investigate a report, prevent abuse, comply with legal process, or maintain the service. We do not use the contents of your DMs to train AI models or for advertising.

15. Block & report — safety data

You can block or report any user from their profile, a message thread, or a group chat. When you block someone, they can no longer message you, see your profile in Near You, or join chats with you. When you report someone, we collect the reported user's ID, the reason, and a snapshot of the relevant content (message, profile, or post) so our team can review it. We retain block relationships for the life of the account and report records for up to 12 months (longer if required by law or if the account is under active safety review). Reported users are not notified who reported them.

16. Changes

We'll post material changes here and notify active users by email.

Questions? Contact us.