Privacy policy

Last updated: August 17, 2026

Who is responsible for your data

The data controller is the publisher of Neivup, whose full identity (legal form, registration number and registered office) is set out in the Legal notice. They can be reached at contact@neivup.com. This policy explains what data Neivup collects, why, and your rights.

Data we collect

Account: your email address, your display name, and where applicable your Google ID if you sign in with Google.

Billing: when you pay, card details are processed directly by Stripe. Neivup never stores your card number; we only keep a Stripe customer ID and your subscription status.

Content: the files you send (videos, images) and the renders produced are kept for the period set by your plan, then deleted automatically — see “Retention period”. You can also delete them immediately from your history.

History: we keep a record of your jobs (date, type of operation, credits charged) for as long as your account exists — it justifies your credit charges and helps detect abuse.

Technical data: logs, IP address and security data needed for proper operation and protection against abuse.

Why we use it

To provide the service (processing your videos, managing your account and credits), handle billing, prevent fraud and abuse, and respond to your support requests.

Processors

We use providers that process data on our behalf: Supabase (authentication and database), Cloudflare R2 (storage of the files you send and of their renders), fal.ai (AI video and image processing), OpenAI (image upscaling and description), Stripe (payments), Resend (transactional emails), Railway (hosting of the app and of the processing worker), and Google (OAuth sign-in if you use it). Each applies its own security safeguards.

Transfers outside the European Union

The providers listed above — Supabase, Cloudflare, fal.ai, OpenAI, Stripe, Resend, Railway and Google — are companies established in the United States, or run all or part of their servers there. The files you send and the data attached to your account may therefore be transferred outside the European Union, or accessed from outside it.

Retention period

Account data is kept for as long as your account exists. Files — both the one you upload AND the render — are deleted automatically once the period set by your plan runs out: Free: 6h, Starter: 2 days, Pro: 7 days, Studio: 1 month. You can delete them immediately from your history, without waiting for that deadline.

The record of your jobs is kept for as long as your account exists; technical logs are purged after 30 days. You can request deletion of your account at any time.

Your rights

Under the GDPR, you have rights of access, rectification, erasure, portability, restriction and objection. To exercise them, write to us from the Support section of your dashboard — your request is then tied to your account — or to contact@neivup.com. You may also lodge a complaint with your data protection authority.

Cookies

Neivup only sets technical cookies, never advertising cookies or third-party marketing trackers. In use: the Supabase session cookie (authentication, keeping you signed in); “neive_lang” (remembering your display language); “neive_ref” (crediting a referral when you arrive through a referral link); “nv_did” (security — recognising your device, to alert you to a sign-in from an unknown one). The dashboard’s “online” counter also uses a random identifier kept in your tab’s sessionStorage (“nv_vid”), cleared when the tab closes and tied to no account.

Contact

For any question about your data: contact@neivup.com.