1. Who we are and what this covers
This policy is issued by OfflineCreator (“we”, “us”) and applies to the OfflineCreator Studio service at offlinecreatorstudio.com, including the web app, the public API, the MCP server, and the CLI. Studio is offered to users in the United States who are 18 or older. It does not cover LocalForge AI or third-party sites we link to.
2. Information we collect
- Account information. Email address, display name, and — if you sign in with Google — the basic profile information Google shares for authentication.
- Generation content. The prompts you write, source images you upload, your chosen settings (model, aspect ratio, workflow), and the images, videos, and 3D assets you generate. Your media is stored privately unless you choose to publish a generation to the Community gallery, which makes that generation’s media, prompt, and settings publicly visible until you unpublish it.
- Marketplace and seller information. Public seller handle and profile, listing text and previews, moderation history, purchases, license and download records, seller ledger entries, and the connected-account status Stripe returns to us. Stripe collects seller identity, tax, and payout details; we store Stripe references and capability status rather than bank-account or identity-document contents.
- Billing information. A Stripe customer reference, your plan, credit ledger entries, and purchase history. Card numbers are collected and stored by Stripe, not by us.
- API and security metadata. If you create personal API keys we store a one-way hash of the secret (never the plaintext after creation), a display prefix, scopes, and last-used timestamps. Sampled API request logs record the route, status code, key identifier, and a truncated one-way hash of the network address. To limit sign-in abuse, we also store keyed one-way hashes derived from a server-issued device identifier and the network address associated with authentication attempts. We do not store the raw address in those abuse-control records.
- Usage analytics. First-party product events (for example page views, generation started or failed, checkout started) tied to your account or an anonymous browser identifier, plus campaign parameters and the referral code that brought you here. If you opt in to analytics, Google Analytics additionally measures how you use the site (pages viewed, sign-ups, generations, purchases) — never your prompts, uploads, generated media, or email address. See the Cookie Notice for the full inventory.
- Support communications. Messages you send us and our responses.
3. How we use information
We use your information to operate Studio: authenticate you, run your generation jobs, store and deliver your media, manage credits and billing, prevent fraud and abuse, enforce our Terms and Acceptable Use Policy, measure and improve the product, and communicate with you about your account. We do not sell or share your personal information for advertising, we do not use your private generation content for advertising, and we do not use your prompts, source media, or outputs to train AI models.
4. How we share information
We share personal information only with service providers that help us run Studio:
- fal.ai — when you generate, we send your prompt, settings, and any source media to fal.ai, which runs the model you selected. See AI models for the current launch catalog.
- Stripe — payment processing, subscriptions, marketplace checkout, seller verification, transfers, payouts, tax calculation when activated, and receipts.
- Supabase — authentication and our database (hosted in the U.S., us-west-2).
- Cloudflare — application hosting, private media storage, and performance analytics. Cloudflare Turnstile also evaluates sign-in requests for automated abuse before we ask Supabase to send an email link or start Google sign-in.
- Google — if you choose Google sign-in (authentication profile data), and, only with your consent, Google Analytics (usage measurements as described in section 7 and the Cookie Notice).
We may also disclose information when required by law, to protect the safety of any person (including reporting child sexual abuse material to the National Center for Missing & Exploited Children as required by law), to enforce our agreements, or as part of a merger or acquisition, in which case this policy continues to apply until changed with notice.
5. Cloud model providers
Provider processing is necessary to fulfill your generation request. Providers process your request under their own terms. The current launch catalog is routed through fal.ai, which may operate or broker the underlying model. Do not upload material you are not authorized to disclose to a cloud provider — use LocalForge for work that cannot leave your device.
6. API keys, MCP, and CLI
Prompts, settings, and source media submitted through the API, MCP server, or CLI are processed the same way as web generations. Key secrets are shown once and stored only as a hash; they are not written to application logs. Signed download links for your media expire quickly and require your account’s authorization to mint.
7. Cookies and analytics
Studio uses strictly necessary sign-in and signup-abuse-prevention cookies, a 30-day referral cookie, browser storage for anonymous analytics, and first-party product events. With your explicit opt-in consent — and only then — we also use Google Analytics to understand aggregate usage; it sets first-party _ga cookies and sends usage measurements (never prompts, media, or email addresses) to Google. We keep Google’s advertising features disabled, and you can withdraw consent at any time via “Cookie preferences” in the footer. We use no advertising trackers. The full inventory, lifetimes, and your controls are in the Cookie Notice. Because we do not sell or share personal information for advertising, there is no sale or sharing to opt out of.
8. Retention
- Account and billing records: up to 7 years, for billing, tax, and dispute handling.
- Marketplace purchase, license, seller-ledger, tax, and payout records: up to 7 years after the transaction or longer when required for an active dispute or legal hold.
- Generation history and media: until you delete them or close your account, subject to short backup windows.
- Temporary uploads and failed-job artifacts: deleted promptly, typically within 7 days.
- Sampled security and audit logs: up to 12 months.
- Pseudonymous signup-abuse device and network hashes: for the life of the account, to reduce automated sign-in abuse and a rolling network limit.
9. Your rights and choices
You can request access to, correction of, export of, or deletion of your personal information by emailing privacy@offlinecreatorstudio.com from your account email. We verify requests against the account email and respond within 45 days. You can revoke individual or all API keys in Settings at any time, and you may have additional rights under your state’s privacy law, which we honor regardless of where in the U.S. you live. We will not discriminate against you for exercising these rights.
10. Security
Media storage is private by default and not publicly listable; only generations you explicitly publish to the Community gallery are publicly readable, and unpublishing removes that access. Secrets remain server-side, webhook signatures are verified, database access is governed by row-level security and least-privilege credentials, and API keys are stored hashed. No service can guarantee perfect security; if a breach affects your personal information we will notify you as required by applicable state law.
11. Children
Studio is not directed to anyone under 18, and we do not knowingly collect personal information from children. If you believe a child has created an account, contact us and we will delete it.
12. Changes to this policy
We will post any changes on this page with a new version number and effective date, and for material changes we will notify account holders by email or in-product notice before the changes take effect.
13. Contact
Privacy requests: privacy@offlinecreatorstudio.com
General support: support@offlinecreatorstudio.com