Privacy Policy

How we collect, use, and protect your personal information.

Last updated: 2026-10-05

Introduction

We respect your privacy and are committed to protecting your personal data. This Privacy Policy explains how we collect, use, and safeguard your information when you use Encorist, a hosted platform that creates media with third-party AI models on your behalf, such as animating a character image with the movement from a reference video. Encorist is operated at encorist.com. This policy covers the website and the service, including sign-in with Google or email.

Encorist does not generate or permit sexual, nude, or non-consensual intimate imagery. Our moderation systems screen the inputs you submit, as described below.

Information We Collect

We collect the following types of information to provide and improve Encorist:

  1. Account Information — Your name, email address, and profile details you provide when creating an account. When you sign in with Google, we receive your name, email address, profile image, and Google account identifier. We use this information only to create your account, authenticate you, and maintain your session. We do not receive or store your Google password.
  2. Usage Data — Information about how you interact with the service, including features used, generation history, frequency of use, and interaction patterns.
  3. Device Information — Device type, operating system, browser type, IP address, and locale, used to optimize compatibility, performance, and security.
  4. Cookies and Local Storage — Small data files stored on your device to remember preferences, keep you signed in, and measure platform performance. See our Cookie Policy for details.
  5. Payment Information — Billing information processed by the payment provider you select, such as Creem or Stripe. We receive transaction details needed to confirm payment, activate your plan, and maintain billing records; full payment credentials are handled by the provider.
  6. Generations and Inputs — The text, reference media, settings, and other inputs you submit when creating content. Generation records are stored in your account, and completed media is stored in Cloudflare R2 so you can view and download it.

How We Use Your Information

We use the data we collect to:

  • Provide, maintain, and improve Encorist.
  • Authenticate you and keep your session secure.
  • Process transactions, provision credits and subscriptions, and send related confirmations.
  • Route generation inputs to our AI model providers, Replicate or fal.ai, to fulfill your request.
  • Screen text prompts and supported reference images and videos through the configured content moderation providers when their channels are enabled.
  • Send technical notices, security alerts, and support messages.
  • Respond to your questions, feedback, and support requests.
  • Detect, prevent, and address fraud and abuse.

Data Sharing

We do not sell your personal information. We share data only with the trusted processors that help us run Encorist, and only the minimum needed for each purpose:

  • AI model providers: Replicate and fal.ai — Run the Kling video models developed by Kuaishou on our behalf. They receive the inputs and generation settings required to process your request and return the resulting media. Which provider handles a request depends on our configuration.
  • Payment providers, including Creem and Stripe — Process subscription billing, credit purchases, invoices, and payment security. The provider involved depends on the payment method you select.
  • Content moderation providers — The configured providers receive text prompts and supported reference images or videos for safety screening when the corresponding moderation channel is enabled.
  • Authentication and database services — Help us securely manage your account and store your information.
  • Cloudflare R2 — Stores uploaded reference images, videos, and audio, as well as completed generated media, so the service can process requests and make results available from your account.
  • Analytics services — Google Analytics measures visits, sessions, approximate location, device information, traffic sources, and on-site activity. Microsoft Clarity provides heatmaps and session replays based on interactions such as mouse movements, clicks, scrolling, navigation, and page rendering. We use this information to improve Encorist and do not use these tools for third-party advertising.
  • Operational tooling — Email delivery, logging, and incident-response vendors may receive the metadata necessary to send transactional messages or troubleshoot issues.

We may also disclose information if required by law, to protect the rights and safety of our users or partners, or in the context of a corporate transaction. We require all vendors to maintain reasonable security and data-protection practices.

Google User Data

Encorist offers "Sign in with Google" through Google OAuth. This section describes exactly what Google user data we access and how we handle it.

  • What we access. We request only the basic sign-in scopes openid, email, and profile. Through them Google gives us your name, email address, profile picture, and Google account identifier. We do not request or access your Gmail, Google Drive, Calendar, Contacts, Photos, or any other Google service or sensitive or restricted scope.
  • How we use it. Only to create your Encorist account, sign you in, show your name and avatar in the interface, send you account and billing messages, and prevent fraud and abuse. We do not use it for advertising, profiling, or to build or train AI models.
  • How we share it. We do not sell it or share it with third parties, except the infrastructure providers listed under Data Sharing that store and process it on our behalf, or where the law requires.
  • How we store and protect it. It is stored in our database with encryption in transit and access controls. We never receive or store your Google password.
  • Retention and deletion. We keep it while your account is active. To delete your account and the Google-derived data linked to it, email support@encorist.com from your account address and we will process the request. You can also revoke Encorist's access at any time at myaccount.google.com/permissions.

Encorist's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Data Retention

  • Account and billing records are retained for as long as your account is active and for the period required by tax and accounting law after closure.
  • Uploaded reference media and generated videos stored by Encorist in Cloudflare R2 are kept so you can view, download, and reuse them from your account. They are automatically deleted 30 days after upload or creation. Copies processed or retained by model providers are subject to their own retention practices.
  • Text inputs, generation settings, and task records are retained as needed to provide generation history, operate the service, address abuse, and meet legal obligations. Contact us if you want to request deletion of account-linked generation data.
  • Support tickets and correspondence are retained for the period needed to resolve your request and meet our legal obligations.
  • Moderation logs (prompt hash, provider, verdict, timestamp) are retained to operate the safety system and respond to abuse reports.

Your Rights

You can update available profile information through your account settings. To request access to, export of, or deletion of other personal information, contact us at the email address below. Depending on where you live, you may also have the right to restrict or object to certain processing, withdraw consent, or lodge a complaint with your local data protection authority.

International Transfers

We and our service providers may process your information in countries other than your own. When data is processed across borders, we use safeguards required by applicable law and our agreements with service providers.

Data Security

We use reasonable technical and organizational safeguards, including encryption in transit and access controls. No method of transmission or storage is completely secure.

Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by updating the date at the top of this page and, where appropriate, sending a notice through the service.

Contact Us

If you have questions about this Privacy Policy, contact us at support@encorist.com.