Privacy Policy
Last updated August 11, 2026
This policy explains what CineConvert collects, why, and who it goes to. It covers two different groups of people, and the distinction matters throughout: customers, who hold an account and publish videos, and viewers, who watch a video a customer published. Most of the data described here is collected about viewers, on behalf of the customer who published the video.
CineConvert is operated by [LEGAL ENTITY NAME], [REGISTERED ADDRESS]. For any privacy question or request, contact [PRIVACY CONTACT EMAIL].
What we collect from customers
- Account details: email address, password (stored hashed by our authentication provider), and workspace name.
- Content you upload: video files, thumbnails, titles, calls to action and page copy.
- Billing details. Card numbers are entered directly with Stripe and are never sent to or stored on our servers. We retain the subscription status and the last four digits Stripe returns.
- Integration credentials you choose to add, such as a GoHighLevel private integration token. These are encrypted at rest.
What we collect from viewers
When someone watches a video published through CineConvert, we record engagement events so the customer can measure performance. These events include:
- Video loads, view starts, replays, progress milestones and periodic watch time while the video is visible and playing.
- Impressions and clicks on calls to action, poll answers and branching choices.
- Short link and bio page clicks, including the referring domain and any campaign or source tag on the link.
- Approximate technical context derived from the request: device type, browser, and country. We do not store full IP addresses alongside these events.
If a viewer submits an opt in form on a video, we also collect what that form asks for, which is typically name, email address and phone number. That information is provided knowingly by the viewer and is passed to the customer who published the video.
Cookies and visitor recognition
We set a first party cookie named cc_vid containing a random identifier. It is marked httpOnly, so page scripts cannot read it. Its purpose is to recognise the same browser across visits, so that a viewer who watches on Monday and returns on Thursday is counted as one returning person rather than two strangers, and so a link click can be connected to the view that follows it.
This identifier is not tied to a name until a viewer voluntarily submits a form. At that point it is associated with the contact record they created, which means their earlier anonymous activity becomes visible to the customer as that contact's history. We do not sell this data, and we do not use it for advertising or share it with advertising networks.
[REVIEW: if you serve viewers in the EU or UK, cross session recognition of this kind generally requires a consent mechanism. No consent banner is currently implemented.]
Who we share it with
We use a small number of processors, each for a specific function:
- Supabase, for database hosting and authentication.
- Cloudflare R2 and Cloudflare Stream, for video storage and delivery.
- Vercel, for application hosting.
- Stripe, for payment processing.
- Resend, for transactional email.
- GoHighLevel, only where a customer has connected their own account, and only for leads captured on that customer's videos.
Lead and engagement data belongs to the customer whose video captured it. We act as a processor for that data and do not use it for our own purposes.
Retention
Engagement events and contact records are retained for as long as the customer's account is active. Customers can delete individual contacts and reset a video's analytics from within the product. When an account is closed we delete its content and associated records within[RETENTION PERIOD, for example 30 days].
Your rights
Depending on where you live, you may have the right to access, correct, export or delete the personal information we hold about you, and to object to certain processing. To make a request, contact [PRIVACY CONTACT EMAIL]. If you are a viewer rather than a customer, your request may need to be directed to the customer who published the video, and we will help identify them and pass the request along.
Children
CineConvert is not directed to children under 13 and we do not knowingly collect their information.
Changes
If we change this policy materially we will update the date above and, for customers, give notice by email before the change takes effect.