Legal
Privacy Notice
Last updated: 18 September 2026
1. Scope
This notice explains how Djan AI handles information when invited studio members use the private filmmaking workspace. Djan is not a public consumer product and does not offer open registration.
2. Information we process
- Account data — email address, display name, workspace role and authentication session details, managed through Supabase Auth.
- Production data — projects, scenes, shots, prompts, reference images, generation settings, review status, and archived video outputs.
- Usage data — estimated and reported token counts, model identifiers and related generation metadata needed for studio accounting.
- Technical logs — limited server-side error diagnostics. We do not log Authorization headers, cookies, signed URLs or raw provider response bodies.
3. How we use it
We use this information to:
- authenticate members and enforce workspace roles;
- run generation jobs and store results for the studio;
- show history, usage and production progress;
- maintain security and diagnose failures.
We do not sell personal data, and this application does not use studio material to train third-party foundation models.
4. Processors and transfers
Hosting, authentication, database and file storage are provided by Supabase. Video generation is performed by BytePlus ModelArk. Reference images may be sent to the provider as short-lived signed URLs solely to render a requested shot. Those providers process data under their own terms and infrastructure regions.
5. Storage and retention
Studio assets and archived videos are kept in private storage buckets. Access is granted only through time-limited signed URLs to authenticated members. Retention follows the studio’s operational needs; administrators may delete projects, assets and generations according to studio policy.
6. Access within the studio
Members of the shared workspace can see production material according to their role (owner, editor or viewer). Viewers cannot mutate studio data.
7. Cookies and sessions
Sign-in uses secure, http-only session cookies managed by Supabase. We do not use advertising or cross-site tracking cookies on the public site or login screen.
8. Your choices
To update your email, reset access or request deletion of account-related data, contact your studio administrator. They control membership and can remove your account from the workspace.
9. Changes
We may revise this notice as the platform changes. The date at the top will be updated when we do. Related terms are in our Terms of Use.
10. Contact
Privacy questions: ask your studio administrator or the operators of your Djan AI workspace.