Privacy Policy
Last updated: May 2, 2026
VEVEMedia ("we", "us", "our") provides a content-creation platform that lets users design images and short videos and share them on social platforms. This Privacy Policy explains what we collect, why we collect it, how we use it, and the choices you have.
1. Information We Collect
1.1 Information you provide
- Account data: name, email address, username, and password (stored hashed) when you register or apply for an account.
- Application form data: phone number, intended use, and how you heard about us when you submit an account request via
/apply. - Content you create: images, videos, captions, music selections, and footer/text styling you generate using our tools.
- Support communications: messages you send us by email or through any contact form.
1.2 Information collected automatically
- Technical data: IP address, browser user-agent, device type, and approximate geolocation derived from IP.
- Usage data: pages viewed, features used, generation counts, gallery items, and timestamps.
- Cookies & session storage: a session cookie to keep you signed in, plus localStorage entries used by the editor (e.g., last-used template).
1.3 Information from third-party services you connect
If you connect a third-party account (e.g. Pinterest, Facebook, or Google) to publish or share your generated content, we receive limited profile information from that service — typically your account ID, username, profile image, and a list of boards/pages you own — along with an OAuth access token used solely to perform the actions you authorize.
- We never see or store your password for the third-party service.
- We only request the minimum scopes needed (e.g.
pins:write,boards:read). - You can disconnect any linked account from your dashboard at any time, which revokes the token.
2. How We Use Your Information
- To provide the core service — rendering your image/video, saving it to your gallery, returning the download.
- To authenticate you and keep your session active.
- To review your account application and contact you about its outcome.
- To publish content to your connected third-party accounts at your explicit request (clicking a "Post to Pinterest" button, for example).
- To prevent abuse — rate-limiting, spam detection, fraud screening (we keep IP/UA on application submissions for this reason).
- To improve the platform — anonymized usage patterns inform what features we build next.
- To comply with legal obligations and enforce our Terms of Service.
3. Third-Party Media Sources
Our editor lets you pick background images and videos from external libraries (currently Pexels and Pixabay) and music from Jamendo. When you select an asset, our server fetches it from the provider on your behalf and composes it into your output. We do not transmit your personal information to these providers — only an outbound HTTP request from our server with the asset URL.
4. Sharing & Disclosure
We do not sell your personal data. We share data only:
- With third-party platforms you explicitly connect — for example, when you click "Post to Pinterest", the generated image and your caption are sent to Pinterest so it can be published on your board.
- With service providers who help us run the platform (hosting, email delivery, link shortening). These providers process data only on our instructions.
- For legal reasons — if required by law, court order, or to protect rights, property, or safety.
- In a business transfer — if VEVEMedia is acquired or merged, your data may transfer to the successor under this same policy.
5. Data Retention
- Account data: kept until you delete your account.
- Gallery content: kept up to a per-user cap (currently 10 images + 10 videos), with oldest items auto-evicted (FIFO) as you generate new content.
- Server-side render artifacts: intermediate FFmpeg files are deleted within 3 minutes of completion; failed jobs are cleaned within 30 minutes.
- Application submissions: kept for 12 months for review history, then archived.
- Logs: rotated and deleted within 30 days unless needed for ongoing security investigation.
6. Security
We use industry-standard safeguards: HTTPS for all traffic, password hashing
(password_hash with bcrypt), CSRF tokens on every state-changing form,
parameterized SQL queries, role-based access control, and OAuth tokens stored
encrypted at rest. No system is perfectly secure — if you discover a vulnerability,
please email us so we can fix it.
7. Your Rights
Depending on your jurisdiction (GDPR, CCPA, etc.), you have the right to:
- Access the personal data we hold about you.
- Correct inaccurate data.
- Delete your account and associated data ("right to be forgotten").
- Export your data in a portable format.
- Withdraw consent for a connected third-party service at any time.
- Lodge a complaint with your local data-protection authority.
To exercise any of these rights, email us at support@vevemedia.com.
8. Children's Privacy
VEVEMedia is not directed at children under 13 (or under 16 in the EU/UK). We do not knowingly collect data from children. If you believe a child has submitted information, contact us and we will delete it promptly.
9. International Transfers
Our servers are located outside your country of residence. By using VEVEMedia, you consent to your data being processed in those locations under safeguards consistent with this policy.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be announced on this page with a new "Last updated" date. Continued use after a change constitutes acceptance.
11. Contact
Questions, requests, or complaints?
Email: support@vevemedia.com
Site: vevemedia.com