Legal

Privacy Policy

This Privacy Policy explains what personal data CineCLI collects when you use our AI short-drama video generation service, how we use and protect it, and the rights you have over it.

Last updated: June 13, 2026 · Version 1.0

Our core commitment. The prompts, scripts, uploads and other content you submit to CineCLI are never used to train foundation models. Your content is processed through Amazon Bedrock within your selected AWS Region, encrypted in transit and at rest, and used only to provide and secure the service.

1. Who we are & scope

CineCLI (“CineCLI”, “we”, “us”, “our”) provides an AI short-drama video generation platform built on Amazon Bedrock. This policy applies to the personal data we process when you visit our website, create an account, or use the service. It does not cover third-party sites or services that we link to but do not control.

For the purposes of the EU and UK General Data Protection Regulation (GDPR), CineCLI is the data controller for the personal data described here, except where we act as a processor handling content you submit on behalf of your own end users.

Operator note (remove before launch): Insert the legal entity name, registered company number, and registered address of the controller, and identify whether a separate data processing agreement governs content processed on behalf of business customers.

2. Information we collect

We collect the following categories of information:

CategoryExamples
Account informationName, email address, organization, role, login credentials and account settings.
Content you submitPrompts, scripts, reference uploads (images, audio, video) and other inputs you provide to generate output.
Generated outputThe video, image, audio and text assets the service produces from your inputs, together with provenance metadata.
Usage & log dataFeature usage, generation requests, timestamps, IP address, and safety/moderation events.
Device & cookiesBrowser type, device identifiers, and cookie or similar technology data. See our Cookie Notice.
Payment informationBilling details processed by our payment processor. We do not store full card numbers ourselves.
Support communicationsMessages, attachments and metadata you send when you contact support or report abuse.

3. How we use information

We use personal data to:

4. AI processing & foundation models

The content you submit is processed by foundation models accessed through Amazon Bedrock. We apply the following protections:

We never train base models on your content. Customer content is used to produce the output you request and to keep the service safe and secure — not to train the underlying foundation models.

5. Legal bases (GDPR)

Where the GDPR applies, we rely on the following legal bases:

PurposeLegal basis
Providing the service and managing your accountPerformance of a contract.
Security, fraud prevention, safety, and service improvementLegitimate interests.
Optional cookies and marketing communicationsConsent.
Tax, accounting and responding to lawful requestsLegal obligation.

Where we rely on legitimate interests, we balance those interests against your rights and freedoms. You may object as described in Your rights.

6. Sharing & sub-processors

We do not sell personal data. We share personal data only with service providers acting on our instructions, including:

A current list is maintained on our Sub-processors page. We may also disclose data where required by law or to protect rights, safety and the integrity of the service.

7. International transfers

Where personal data is transferred outside your country or region, we put appropriate safeguards in place, such as the European Commission’s Standard Contractual Clauses (SCCs) and, where applicable, the UK International Data Transfer Agreement, together with supplementary measures.

Operator note (remove before launch): Confirm the AWS Regions used, the specific transfer mechanism(s) relied upon (SCCs, UK IDTA, adequacy decision), and any localized data-residency commitments for your launch markets.

8. Data retention

We retain personal data for as long as your account is active and as needed to provide the service. Specifically:

9. Security

We apply technical and organizational measures to protect personal data, including encryption, access controls and monitoring. No system is perfectly secure, but we work to reduce risk and respond promptly to incidents. Learn more on our Security page.

10. Your rights

Subject to applicable law, you have the right to access, correct, delete, and port your personal data, and to object to or request restriction of certain processing. Where we rely on consent, you may withdraw it at any time.

If you are a California resident, the CCPA/CPRA gives you the right to know what personal information we collect, to delete it, to correct it, and to opt out of sale or sharing (note: we do not sell personal data), and the right to non-discrimination for exercising these rights.

To exercise any right, contact us using the details in Contact. You may also have the right to lodge a complaint with a supervisory authority.

Operator note (remove before launch): Insert the competent supervisory authority and contact details for your jurisdiction, and the verification process used to handle data-subject and consumer requests.

11. Children

The service is not directed to children and is not intended for use by anyone under the minimum age set out in our Terms of Service. We do not knowingly collect personal data from children. If you believe a child has provided us personal data, contact us so we can delete it.

12. Cookies

We use cookies and similar technologies for essential functionality, preferences and analytics. You can manage your choices as described in our Cookie Notice.

13. Changes to this policy

We may update this policy from time to time. We will revise the “Last updated” date above and, where changes are material, provide additional notice. Continued use of the service after an update means you accept the revised policy.

14. Contact

For privacy questions or to exercise your rights, contact us at privacy@cinecli.com. This policy works together with our Terms of Service, Acceptable Use Policy and Responsible AI Policy.

Operator note (remove before launch): Insert the contact details of the data protection officer (DPO) and/or the EU/UK representative appointed under Article 27 GDPR, including postal address.