Legal
Privacy policy
What FrameOne collects, why, how long it is kept, and how to delete it.
Who we are
FrameOne is operated by [OWNER: fill — legal entity name], [OWNER: fill — registered address]. This policy explains what data FrameOne collects, why, how long it is kept and how you can have it deleted.
Data we collect
Account data: when you sign in we store your email address, a display name if you set one, and an identifier from our authentication provider (Descope). Your profile picture, when shown, comes from that provider and is not stored by FrameOne.
Public YouTube data: when you run a channel or video audit, FrameOne reads publicly available information through the YouTube Data API — video titles, thumbnails, publish dates and public view, like and comment counts. Anonymous audits are associated with a random identifier stored in a cookie and a salted hash of your network address; raw IP addresses are never stored.
Connected YouTube data (optional): if you connect a YouTube channel, FrameOne requests the read-only scopes youtube.readonly and yt-analytics.readonly through Google OAuth. With them, FrameOne reads your channel list and your channel’s analytics reports — thumbnail impressions, click-through rate, views, watch time and traffic-source and device breakdowns per video. FrameOne never asks for permission to upload, edit or delete anything on your channel.
Creative inputs: video links, ideas, reference images, faces and thumbnails you upload or generate are stored so you can return to your projects.
Usage data: standard web analytics (Google Analytics, when enabled) and server logs used to keep the service reliable.
How we use it
To produce the audits, intelligence reports, thumbnails and titles you ask for; to keep your projects, preferences and credits; to enforce plan limits; to prevent abuse; and to improve the product. FrameOne’s use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Connected YouTube analytics are used only to show you your own channel’s performance and to inform the creative suggestions FrameOne makes for you. They are never sold, shared with advertisers, used to train generalized models or shown to other users.
Retention
Account, project and connected-channel data are kept for as long as your account exists. Uploaded reference images and generated assets are kept while the project they belong to exists. Anonymous audit reports are kept for [OWNER: fill — retention period] and the anonymous identifier cookie expires after one year.
Deletion and revoking access
Disconnecting a YouTube channel in Settings revokes FrameOne’s Google tokens and deletes the analytics data synced for that connection. You can also revoke FrameOne’s access at any time from your Google Account permissions page.
Deleting your account in Settings removes your account, connections, synced analytics, projects, uploads and generated assets. Audit reports you created stay available as anonymous reports without any link to you. Deletion is irreversible and completes within [OWNER: fill — deletion window].
Third parties
FrameOne relies on Descope (authentication), Google (YouTube APIs, OAuth, Analytics), Stripe (payments — FrameOne never stores card numbers), and cloud infrastructure and AI model providers that process data on our behalf under contract. [OWNER: fill — list current providers and regions].
Your rights and contact
You can access, correct, export or delete your data at any time by using Settings or by contacting us at [OWNER: fill — privacy contact email]. Depending on where you live you may have additional rights under laws such as the GDPR or CCPA; we honor them on request.
Last updated: 2026-09-10.