Privacy

Privacy Policy

What Studio stores, why it stores it, who else sees it, and how to get it deleted. This is the whole policy — there is no second document.

Last updated

Jump to a section

1. What we collect

We collect the minimum needed to run Studio: your account email and password hash, or your Google account if you sign in that way; the brand bible, characters and chats you create; the images and video you generate; the reference material you upload; and your billing and credit records.

If you connect an X account, we store the access tokens for it, encrypted at rest, and the posts we read on your behalf. You can disconnect it at any time from settings, which deletes the stored tokens.

2. How we use it

Your data powers your account and nothing else: storing your bible, rendering your generations, tracking your credits, and showing you your own library. We do not sell your personal data, and we do not use your brand material to train models.

Every row we store is scoped to your account. One user's bible, chats and generations are never readable by another.

3. AI model providers

Producing an image, a video or a reply means sending the prompt — and any reference images attached to it — to a model provider. Studio routes those calls through OpenRouter, which forwards them to the model you or the agent selected. That content leaves our systems for as long as the request takes, and is subject to the provider's own handling of it.

We log the request and its cost so you can see what a generation was and what it charged. Prompt logs are pruned on a rolling window; your credit ledger and your generations are not, because they are your financial and creative record.

4. Payments

Card payments are processed by Stripe. We never see or store card details — we store the identifiers Stripe gives us so we can match a payment to your account and grant the credits it bought.

Payments in USDC settle on Solana. A public blockchain is public: the payment amount, the wallet that sent it and the time it landed are visible to anyone, permanently, and we cannot remove them. Only you can link that wallet to your identity, and we do not publish the link.

5. Storage and security

Account data lives in our own Postgres database on servers we operate; generated assets and uploads live on the same infrastructure. Passwords are stored as scrypt hashes, never in a recoverable form, and third-party access tokens are encrypted with AES-256-GCM before they touch the database.

No system is perfect and we will not claim otherwise. If we ever discover a breach that affects your data, we will tell you.

6. How long we keep it

Your account content is kept for as long as your account exists. Request-level prompt logs are pruned automatically after a short retention window. Credit ledger entries and generation records are kept for the life of the account, because they are what lets either of us reconstruct a charge months later.

7. Your choices

You can edit or clear your brand bible, delete brand memories, remove uploaded references and disconnect linked accounts yourself, at any time, from settings.

You can request deletion of your account and everything attached to it by writing to hello@memstudio.xyz. We will also send you a copy of what we hold on request. Records we are required to keep for tax or accounting reasons are the only exception, and we will tell you if any apply.

8. Contact

Questions about this policy, or about anything we hold, go to hello@memstudio.xyz. A person reads that address.