Datenschutzerklärung
Zuletzt aktualisiert: 7. Oktober 2026Dieses Dokument gibt es nur auf Englisch. Maßgeblich ist die englische Fassung.
Introduction
Motionflare, Inc., a Delaware corporation (“Motionflare,” “we,” “our,” or “us”), operates motionflare.ai and provides AI-powered product video generation tools. This Privacy Policy explains what information we collect, how we use it, who we share it with, and the choices you have. Motionflare, Inc. is the controller of the personal information described in this policy.
Information We Collect
- Account and profile information: email address, name, profile image, and email verification status. If you sign in with Google or GitHub, we also store the OAuth tokens and scopes the provider returns, which we use only to authenticate you.
- Session and security information: session tokens and when they expire, plus the IP address and user agent of each device that signs in to your account.
- Product usage information (signed-in users): account and project milestones, sessions and active time, the pricing pages and upgrade prompts you view, checkout starts, payment confirmations, optional feedback on why you did not buy, and first-touch attribution: campaign tags, the type of ad click ID, the referring site, the page you first landed on, a coarse country code from our hosting provider, and your browser language. We do not store the raw click ID or the full referring URL. Our product analytics do not record prompts, keystrokes, mouse movements, device fingerprints, or session replays.
- Project and content information: the product URLs you submit, the page text, summaries, and screenshots we capture from them, the branding we detect, AI-generated scripts and scene configurations, voiceover audio, rendered videos, your chat messages with the assistant, and generation status.
- Public share links: when you share an exported video publicly, we store the share code, title, MP4 URL, poster URL, duration, export details, and when the link was created and last updated, so we can serve the public page, social previews, and search sitemap.
- Billing, credits, and one-time exports: your plan, including the date of your first credit pack purchase (which keeps your account on the Flex plan); subscription status; Stripe customer, checkout, payment, refund, and subscription identifiers; credit balances and transactions; and, for one-time exports, the linked project, its status (available, used, forfeited, or refunded), and timestamps.
- Device and diagnostic information: when an error occurs in your browser or on our servers, we record the error, the page or request involved, and browser and device details. Our website analytics providers also receive page views, referring site, and browser, device, and approximate location information, as described under Third-Party Services and Cookies.
- Public showcase entries: if a video of yours is added to our public showcase gallery, the entry stores its title, source URL, poster image, and MP4 URL. Today our team curates the showcase from our own demo projects; we do not add user projects to the public gallery without consent.
How We Use Your Information
- To create and manage accounts, authenticate users, and secure the service.
- To process URLs and inputs you submit and generate scripts, voiceovers, scene visuals, and rendered videos.
- To serve public share pages for exported videos, generate social previews, and make public share pages discoverable through search engine sitemaps.
- To process payments, enforce plan limits, deduct and refund credits, and manage one-time exports.
- To understand where signed-in users get stuck, measure onboarding and paid conversion, and improve the product. This analysis runs in Motionflare's own database, separate from the optional Google Analytics on our public pages.
- To send transactional and product emails: account verification, password resets, and notifications when a video render completes.
- To send occasional product update emails about new features, improvements, and launch announcements. When you create an account, you are subscribed to these updates by default. Every product update email includes a one-click unsubscribe link, and unsubscribing does not affect transactional emails such as password resets or render notifications.
- To monitor service reliability through server and browser error reporting, and to measure website traffic and aggregate site usage as described under Third-Party Services and Cookies.
We process account, project, and billing information to perform our contract with you and, for billing records, to meet legal obligations. We process security logs, reliability data, and first-party product analytics for our legitimate interests in running and securing the Service. We process optional Google Analytics cookies only with your consent.
Third-Party Services
We use the following providers as sub-processors. Each receives only the data needed for its function and is governed by its own privacy policy. We do not sell your personal information, and we do not share it for cross-context behavioral advertising.
Hosting and infrastructure
- Vercel: hosting and delivery of the motionflare.ai website, including request logs and the approximate country derived from your IP address.
- Railway: hosting of our API and background generation workers.
- Neon: our Postgres database, which stores account, project, billing, and usage records.
- Cloudflare: DNS, content delivery, and security for motionflare.ai and api.motionflare.ai, so requests to both pass through Cloudflare; cookieless website traffic analytics (Cloudflare Web Analytics); and R2 storage and delivery of screenshots, scene bundles, voiceover audio, and rendered videos.
- AWS (Remotion Lambda): serverless video rendering. Final MP4s are then transferred to Cloudflare R2.
AI model providers
Your project inputs (the URLs and descriptions you submit, scraped page content and screenshots, brand details, scripts, and chat messages) are sent to AI model providers to generate scripts, scene code, voiceovers, and videos. Which provider handles a request depends on the model chosen for that task, by you or by us, and on fallbacks when a provider is unavailable.
- Google (Gemini API): text generation and text-to-speech voiceover synthesis.
- OpenAI: text generation, and speech transcription used to time subtitles to the voiceover.
- Anthropic: text generation.
- DeepSeek: text generation and web search. DeepSeek processes data in the People's Republic of China.
- xAI: text generation.
- fal and OpenRouter: fal hosts MiniMax video generation. OpenRouter routes some text generation and hosts HeyGen video generation, including reference images when a render uses them. The underlying model provider also processes the request.
- TypeSafe: automated quality checks that compare a voiceover script with its transcript.
Content and assets
- Firecrawl: webpage scraping, screenshot capture, and branding extraction for the URLs you submit.
- logo.dev: logo lookup, which receives the domain of a URL you submit.
- Google Fonts: fonts used in video previews, loaded by your browser from Google's servers, which receive your IP address.
Accounts, payments, and email
- Google and GitHub OAuth: optional social sign-in.
- Stripe: checkout, billing portal, subscriptions, credit-pack purchases, one-time export purchases, refunds, and payment disputes. Card data is handled by Stripe; we never see or store your card number.
- Resend: delivery of transactional, notification, and product update emails (verification, password reset, video ready, feature announcements). When you create an account, your email address and name are added to our Resend contact list for product updates. Unsubscribing removes you from future product update sends.
Monitoring and analytics
- Sentry: error reporting from our API, website servers, and your browser. We send the error and contextual fields (such as request id, user id, project id, and the page involved) to help diagnose issues; we do not send performance tracing or session replays.
- Google Analytics: aggregate site analytics. Google Analytics sets cookies only after you accept analytics in the cookie banner. Before you choose, or if you decline, it runs in Google Consent Mode, which sets no cookies and sends limited cookieless signals that Google uses for aggregate measurement and modeling.
Cookies
We use the following categories of cookies and browser storage:
- Necessary: session cookies that keep you signed in and protect account access. These are always enabled.
- First-touch attribution: a snapshot of the campaign, landing page, country code, and browser language from your first visit, kept in local storage until you sign up or sign in and then saved with your product usage information. It does not include a raw ad click ID or the full referring URL.
- Analytics (optional): Google Analytics cookies, set only after you accept analytics in the cookie banner. We store your cookie choice in your browser's local storage so we can remember it.
You can change your choice at any time from the Cookie Settings link in the site footer, or manage cookies in your browser settings.
Data Retention
- We keep account, project, and product usage data for as long as your account is active.
- Temporary files used during rendering are deleted from working storage on a rolling basis after a render completes.
- When you delete your account, we delete your user record together with your sessions, linked Google or GitHub sign-ins, projects, messages, render history, product usage events, and credit balance. Files stored in Cloudflare R2 (screenshots, voiceovers, scene bundles, and rendered videos) are then cleaned up in the background on a best-effort basis.
- When a public share link is made private or removed through project or account deletion, the public page becomes unavailable and is removed from future sitemaps. Search engines and social platforms may retain cached results or previews for some time after removal.
- After a project is deleted, we keep its credit transaction records, without the link to the project, for accounting and audit purposes.
- One-time export payment and refund records may be retained after project or account deletion as needed for accounting, fraud prevention, dispute handling, and legal obligations. Generated project content is not retained in that purchase record.
- If a video of yours is in the public showcase, deleting your account unlinks it from your user record, but the showcase entry may stay visible until our team removes it. You can ask us to remove it at any time.
International Data Transfers
Motionflare is based in the United States, and we and our providers process personal information in the United States and other countries, including the People's Republic of China for requests handled by DeepSeek. These countries may have data protection laws that differ from those where you live. Where the law requires a transfer mechanism, we rely on the contractual safeguards in our providers' data processing terms, where those terms provide them. The European Commission has not issued an adequacy decision for the People's Republic of China.
Children
The Service is not directed to children, and you must be at least 18 years old to use it. We do not knowingly collect personal information from anyone under 18. If you believe a person under 18 has given us personal information, contact us and we will delete it.
Your Rights
- View and update your profile information on your profile page in the app.
- Delete individual projects, or your whole account, in the product settings.
- Cancel a paid plan at any time from the Stripe billing portal.
- Unsubscribe from product update emails at any time with the one-click link in every such email. Transactional emails (verification, password reset, render notifications) are not affected.
- Contact us for help with how we handle your personal data, deleting your account, or removing a public share page or showcase entry.
- Change your cookie choice from the Cookie Settings link in the site footer, or in your browser settings.
Depending on where you live, including the European Economic Area, the United Kingdom, and California and other U.S. states, you may also have the right to access, correct, delete, or receive a copy of your personal information, to object to or restrict certain processing, and to withdraw consent where we rely on it. To exercise these rights, email us from the address on your account; we may need to verify your identity, and we will not discriminate against you for exercising them. You may also lodge a complaint with your local data protection authority.
Changes to This Policy
We may update this Privacy Policy from time to time. We will post the updated version on this page with a new “Last updated” date and, for material changes, give notice by email or in the Service.
Contact Us
Motionflare, Inc. is responsible for this policy. If you have any questions about it or want to exercise your privacy rights, contact us at [email protected].