This Privacy Policy describes how Neuroframe, Inc. ("Neuroframe," "we," "us," or "our") collects, uses, and discloses personal information when you use Filmback — our websites, applications, APIs, software, and related services (collectively, the "Services"). If you do not agree with this Privacy Policy, do not use the Services.
1. Information We Collect
Information you provide
- Account information: name, email address, handle, profile photo, and profile links. Sign-in is handled by our authentication provider; we never see or store passwords.
- Content: projects, scripts, prompts, reference materials, and the assets you generate — including the version history of your projects.
- Billing information: payments are processed by Stripe; we do not store card numbers.
- Communications: support requests, contact-form submissions, and survey responses.
Information collected automatically
- Log and device data: IP address, browser type, operating system, app version, language, and timestamps.
- Usage data: features used, models selected, and metered usage records (our usage ledger records what ran, when, and what it cost).
- Diagnostic data: crash reports, error logs, and service health metrics.
2. How We Use Information
- to provide, operate, maintain, and improve the Services;
- to create and manage accounts and authenticate users;
- to meter usage, bill subscriptions and on-demand spend, and prevent fraud and abuse;
- to respond to support requests and communicate service, security, and billing notices;
- to monitor, troubleshoot, secure, and debug the Services;
- to comply with legal obligations and enforce our terms;
- to produce de-identified or aggregated analytics for service improvement, where permitted by law.
3. How We Process Your Content
To provide the features you request, your content is sent to the third-party AI model providers that power generation — for example, a prompt goes to the language-model provider you selected, and a shot description goes to a video-generation provider. The providers we use are listed on our subprocessors page. We do not use your content to train generalized AI models, and we contractually require the same of our model providers where such terms are offered.
Your projects and generated assets are stored so the Services can work — version history, incremental builds, and review links all depend on it. Access is limited to what is necessary to operate the Services; we do not allow humans to read your content unless you explicitly request support, it is required for security or abuse investigation, or it is required by law.
4. Organizations
If you use the Services through an Organization (including a team plan), that Organization may control the content and personal information associated with your use — including accessing, exporting, or deleting it, and configuring permissions and retention. Where an Organization provides your access, it may act as the controller of certain personal information and Neuroframe as a processor on its behalf.
5. How We Share Information
- Subprocessors — vendors that host infrastructure, process payments, send email, provide authentication, and run AI models, listed at /subprocessors.
- Your Organization — if your access is provided through one.
- People you share with — review links and public profile pages expose exactly what you choose to expose.
- Legal and safety — where reasonably necessary to comply with law, enforce our terms, or protect users and the public.
- Corporate transactions — in connection with a merger, acquisition, or similar transaction.
We do not sell personal information or use it for third-party advertising.
6. Data Retention
We retain personal information for as long as reasonably necessary to provide the Services, maintain records, comply with legal obligations, resolve disputes, and prevent abuse. Deleting your account removes your profile, projects, and stored assets, except records we are required to keep (such as billing history). De-identified or aggregated information may be retained longer where permitted by law.
7. Security
We implement reasonable technical and organizational measures designed to protect personal information — encryption in transit and at rest, access controls, hashed session tokens, logging, and least-privilege access. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
8. International Data Transfers
We process and store personal information in the United States and other countries where we or our service providers operate. Where required by applicable law, we use appropriate safeguards for cross-border transfers.
9. Your Rights
Depending on where you live, you may have rights to access, correct, delete, restrict, or receive a portable copy of your personal information, and to withdraw consent. Most of these are self-service: your dashboard lets you edit your profile, control public visibility, export usage data, and delete your account entirely. For anything else, contact [email protected]. We may need to verify your identity before processing a request. If your access is managed by an Organization, you may need to direct requests to it.
10. Children's Privacy
The Services are not directed to children under 13, and we do not knowingly collect personal information from them. If you believe a child has provided us personal information, contact [email protected].
11. Changes to This Policy
We may update this Privacy Policy from time to time. If we make material changes, we will post the updated policy and update the date above; where required by law, we will provide additional notice.
12. Contact
Neuroframe, Inc.
2810 N Church St, PMB 51378
Wilmington, DE 19802, United States
[email protected]