OpenFilm
GitHub Docs Login
  1. 1. Who we are and what this covers
  2. 2. Information we collect
  3. 3. Where your data lives
  4. 4. How we use information
  5. 5. AI processing and model training
  6. 6. How we share information
  7. 7. Cookies and local storage
  8. 8. How long we keep it
  9. 9. Security
  10. 10. Your rights and choices
  11. 11. Closing your account
  12. 12. International transfers
  13. 13. Children
  14. 14. Changes to this policy
  15. 15. Contact us
TermsPrivacyRefunds

Privacy Policy

Last updated October 5, 2026

The short version

  • Your films are yours. Prompts, uploads, projects and everything made for you belong to you.
  • We don't sell your data, and we don't train AI models on it. Not ours, and we don't let the model providers we use train on it either.
  • Nothing is public unless you make it public. A project is only seen by others when you create a share link, and you can switch the link off at any time.
  • Projects on your computer stay on your computer. OpenFilm and Studio run on your machine. Files leave it only when you share a film or ask your account for generated media — each explained below.
  • No ad trackers, no analytics. Our website sets no cookies and records no visits. The account pages use only the cookies they need to keep you signed in.
  • You're in control. Stop sharing, download what was made for you, get a copy of your data or close your account whenever you want.

This summary isn't the whole policy. Please read the details below.

1. Who we are and what this covers

OpenFilm (“OpenFilm”, “we”, “us”) makes OpenFilm, which turns a coding agent you already use into a video agent, and OpenFilm Studio, an editor that runs on your own computer. This policy explains how we handle personal information when you use openfilm.dev, your OpenFilm account, the media it generates for you (openfilm get), share links, our API and our support channels (together, the “Service”).

For the personal information described here, OpenFilm is the controller: we decide why and how it is processed. The open-source OpenFilm tools and OpenFilm Studio run on your computer and need no account. Section 3 lists the few times they talk to our servers.

This policy is part of our Terms of Service. Words like “Input” and “Output” mean what they mean there.

2. Information we collect

We collect only what we need to run the Service for you. Most of it comes from you directly. Some is created as you use the Service.

CategoryWhat it includesWhere it comes from
AccountEmail address, name and profile photo, sign-in identifiers, your plan and settings.You, and Google or GitHub if you sign in with them (your name, email and photo only).
Your contentThe prompts and files a generated-media request needs, the images, video, voice, music, sound and transcripts made for you, and the films you share.You, and the Service as it works on your requests.
Request recordsA record of each generated-media request: what was asked, the provider it went to, the result and the credits it used.Created by the Service.
BillingPlan, billing period, credit balance and history, invoices, and a customer reference from our payment processor. We never receive or store your full card number.You, via our payment processor.
TechnicalIP address, browser and device type, operating system, OpenFilm version, timestamps, and error and security logs.Your device, automatically.
CommunicationsMessages and feedback you send us, and the email address you send them from.You.

We don't ask for sensitive information, such as health or financial account details, government IDs, or information about religion or ethnicity. Please don't put it in prompts or uploads unless your film really needs it. If you do, it is handled like the rest of your content.

3. Where your data lives

On your computer

A project is a folder on your computer, wherever you or your coding agent keep it. OpenFilm Studio keeps its own data (its project list, version history and settings) on your disk too. Editing, previews and exports all happen on your computer, and nothing is uploaded to make them. Files leave your computer only in these cases:

  • When you ask for generated media: voice, music, sound, images, video, transcription or web search, through openfilm get or Studio. The inputs a request needs, such as a recording to transcribe, go to our servers and the providers in section 6. They are processed in a temporary workspace that is deleted when the job finishes, and the result comes back to your project folder.
  • When you share a film. Sharing uploads a copy of the film to your account so the link can play it. The folder on your computer stays the original.

Your computer also contacts our servers to download OpenFilm Studio (once per version) and to fetch fonts, sound effects and music from our public library when a film uses them. Those requests carry no account information. OpenFilm sends no analytics, usage telemetry or crash reports. If you sign in, Studio keeps the sign-in in a file on your computer that only your user account can read.

With a coding agent (Claude Code, Codex and others)

Your coding agent runs under your own account with its provider, under their terms and privacy policy. Its reasoning and the files it reads don't pass through OpenFilm. We only receive the generated-media requests described above.

4. How we use information

We use personal information only for these purposes:

  • To provide the Service: sign you in, generate the media you ask for and deliver it, and operate share links.
  • To bill you: process payments, grant and charge credits, and prevent payment fraud.
  • To keep the Service safe: detect abuse, spam and security incidents, and enforce our Terms.
  • To support you: answer your messages, and investigate a failed or disputed request, which can mean looking at that request's record.
  • To fix and improve the product: diagnose errors and understand, in aggregate, how features perform. We don't use your content to train AI models, as section 5 explains.
  • To contact you about your account: security alerts, billing notices and material changes to these policies. We don't send marketing email unless you ask for it, and every marketing email has an unsubscribe link.
  • To meet legal obligations: tax and accounting records, and responding to lawful requests.

We don't use your information for advertising, and we don't build advertising profiles.

Legal bases (EEA, UK and Switzerland). We rely on: performance of our contract with you, to provide the Service and bill you; our legitimate interests, for security, support, fixing problems and improving the product (these never override your rights); legal obligation, for tax, accounting and lawful requests; and your consent where we ask for it, which you can withdraw at any time.

5. AI processing and model training

Generating media means sending your request to AI models: the prompt and any file the request needs to read or transform, such as a recording to transcribe. These models are provided by AI model partners, described in section 6.

  • We don't train AI models on your content. Your prompts, uploads, projects, Output and request records are not used to train or fine-tune any model, ours or anyone else's.
  • Providers get only what the step needs, only to process that request, and under agreements that don't allow them to use it to train their models.
  • Output is made for you. We don't put your films in our showcase, examples or marketing unless you give us explicit permission.

AI Output can be wrong. Our Terms explain your responsibilities when you publish it.

6. How we share information

We don't sell your personal information, and we don't share it for cross-context behavioural advertising. We share it only in these cases.

Service providers

We work with a small number of carefully chosen providers who process data on our behalf. They may use it only to provide the Service for us, never for their own purposes, and they're bound by contracts that require confidentiality and security at least as strict as ours.

Kind of providerWhat they do for usData involved
IdentitySign-in and account securityAccount
PaymentsPayments, invoices and the billing portalBilling, email
Cloud infrastructureServers, databases, file storage, content delivery and network securityAll categories, as needed to run the Service
AI modelsMaking images, video, voice, music and sound; transcriptionPrompts and the files a request needs
SearchWeb search requestsSearch queries

We review every provider's security and privacy practices before we work with them. If you need our current list of providers, for example for a data processing agreement, write to [email protected].

When you share

Anyone with a share link can watch that film and see its preview card, the prompt it was made from, and the part of your email address before the “@”. You can protect a link with a password or an expiry date, and stopping sharing takes effect immediately.

For legal reasons and safety

We disclose information when the law requires it, such as a valid court order, or when we believe in good faith it's needed to prevent fraud or protect someone's safety. We examine every request, push back on requests that are overbroad, and tell you about requests for your data unless the law or an emergency prevents us.

Business changes

If OpenFilm is involved in a merger, acquisition or sale of assets, your information may transfer as part of it. This policy, or protections at least as strong, will continue to apply, and we'll tell you before your information becomes subject to a different policy.

7. Cookies and local storage

openfilm.dev sets no cookies, runs no third-party scripts and records no visits.

The account pages (sign-in, credits, plan and billing) use only the cookies they need to work:

  • sign-in cookies, which keep you signed in;
  • a 24-hour cookie that remembers you've unlocked a password-protected share link.

OpenFilm Studio, on your computer, sets a cookie for its own local address only, so that other programs and websites can't use it. These cookies are strictly necessary, so they don't need consent banners. We don't use advertising, tracking or cross-site cookies.

8. How long we keep it

We keep information while we need it for the purpose we collected it for, then delete it or make it anonymous.

DataHow long
Shared films and request recordsUntil you delete them or your account. Deleted data leaves the product at once and is permanently erased within 30 days.
Generated-media working filesDeleted when the job finishes. The result is sent to your project folder.
Share linksUntil you stop sharing (effective immediately) or delete the shared film.
Account informationWhile your account is open. It is deleted within 30 days of closing the account.
Billing and tax recordsAs long as tax and accounting law requires, usually up to 7 years. These are kept separately from your content.
Security and server logsOnly as long as needed to secure and debug the Service.
BackupsEncrypted and rolled over on a schedule. Deleted data is gone from them within 30 days, and we never restore it except to recover from a disaster.

9. Security

Protecting your films is part of the product. We:

  • encrypt data in transit (TLS) and at rest in our database and file storage;
  • protect the Service with network-level security, rate limits and strict access controls;
  • never store sign-in passwords in our own systems, and store API keys and share-link passwords only as one-way hashes;
  • keep Studio's sign-in in a file on your computer that only your user account can read;
  • restrict production access to a small number of authorised people who need it for their work, and access your content only to support you at your request, investigate abuse, or when the law requires;
  • back up regularly and practise restoring.

No system is perfectly secure. If a breach affects your personal information, we'll notify you and the relevant authorities without undue delay, as the law requires. To report a vulnerability, write to [email protected].

10. Your rights and choices

Wherever you live, you can:

  • Access your information and get a copy of it in a portable format;
  • Correct it (you can change your name, photo and email in your account);
  • Delete any shared film at any time, or your whole account (section 11);
  • Download what was made for you whenever you want. Films you export never carry a watermark;
  • Object to or restrict processing based on our legitimate interests;
  • Withdraw consent you've given, without affecting what happened before.

To make a request, write to [email protected] from the email address on your account. We may ask you to confirm that you own the account. We answer within 30 days (45 days where the law allows more time, and we'll tell you if we need it). Requests are free. We won't treat you differently for using your rights.

EEA, UK and Switzerland: you can also complain to your local data protection authority. We'd appreciate the chance to fix it first.

California and other US states: you have the rights above. We don't sell or “share” personal information as those laws define it, and we don't use sensitive personal information to infer characteristics about you. You can use an authorised agent to make a request. If we refuse a request, you can appeal by replying to our answer.

11. Closing your account

To close your account, write to [email protected] from its email address. First cancel any subscription, and download anything you want to keep. When we close the account, we delete its shared films, generated media, request records, share links and API keys, and we remove your email from your account record. Deletion is complete within 30 days, including backups as described in section 8. We keep only the billing records the law requires. Projects on your computer stay there, where you can keep them or delete them.

12. International transfers

We and our providers process information in the United States and other countries whose data protection laws may differ from yours. When we transfer personal information out of the EEA, the UK or Switzerland, we use safeguards the law recognises, such as the European Commission's Standard Contractual Clauses and the UK Addendum to them.

13. Children

The Service is not for children under 13, or under the minimum age for digital consent where they live (16 in some countries). We don't knowingly collect their personal information. If you believe a child has given us personal information, write to [email protected] and we'll delete it.

14. Changes to this policy

When we change this policy, we'll update the date at the top. If a change is material, for example a new use of your content, we'll tell you by email at least 30 days before it takes effect. We will never apply a less protective policy to content you gave us before the change without your consent.

15. Contact us

Privacy questions and requests: [email protected]
Security reports: [email protected]
Everything else: [email protected]

GitHubDocsSpecSupport
©2026 OpenFilmTermsPrivacy