SETIKIT · LEGAL

Privacy Policy

Effective May 6, 2026

Plain-language summary, not legal advice. Final document templated via GetTerms.io / Termly before launch.

01What we collect

  • Account info: name, email, password hash.
  • Production data you create: scenes, characters, photos, budget, notes.
  • Billing info: stored by Stripe, not by us. We see status, not card numbers.
  • Email content: transactional emails (welcome, billing) handled by Resend.
  • Anonymous analytics: pageviews via Plausible. No cookies, no fingerprinting.

02Where data lives

Production data, including continuity photos, is stored on Supabase (Postgres + Storage). Auth tokens are issued by Supabase Auth. The default region is US-East. EU data residency is available on Studio plans.

03Photo retention

Continuity photos remain on Setikit for the life of the production plus 12 months after wrap. After that, photos are archived to cold storage. You can request a full export or permanent deletion at any time via the Customer Portal or by emailing us.

04Sub-processors

  • Supabase — database, storage, authentication
  • Stripe — payment processing
  • Resend — transactional email delivery
  • Vercel — hosting and edge network
  • Plausible — privacy-respecting analytics

05What we don't do

  • We don’t sell your data.
  • We don’t train AI models on your data without explicit, opt-in consent.
  • We don’t use third-party advertising trackers.
  • We don’t use cookies for analytics.

06Your rights

Under GDPR, CCPA, and similar laws, you can request access, correction, export, or deletion of your personal data. Email hello@setikit.com and we’ll respond within 30 days.

07Contact

Questions about privacy: hello@setikit.com.