Who operates Cinevaris
Cinevaris is a trade name used by John Hanninen to operate an unincorporated sole proprietorship. The sole proprietorship has no legal existence separate from its owner and is not a limited liability company or corporation. In this policy, "Cinevaris," "we," "us," and "operator" refer to John Hanninen, doing business as Cinevaris, and any successor business that assumes this policy and the related service obligations.
Privacy and legal notices can be sent to the support address listed below. Do not send passwords, full payment-card numbers, government identification numbers, private keys, or unrelated sensitive information by email.
Scope and responsibility
This policy applies to the Cinevaris website, account and billing systems, browser and desktop app services, encrypted recovery, and support channels. It does not control a third-party website or service that has its own privacy notice.
For the account and service records described here, Cinevaris determines why and how the information is processed. If you include information about another person in a project, support request, or production record, you are responsible for having a lawful reason and any permission needed to collect, use, and provide that information.
Cinevaris is not designed as a repository for medical records, financial-account credentials, government identifiers, biometric templates, children's data, or other highly regulated personal information. Do not place that information in a project or support request unless it is genuinely necessary, lawful, and appropriate for the service.
Information Cinevaris does not collect directly
Cinevaris does not store full credit card numbers, card security codes, bank account credentials, or raw payment-card details. Payment-card entry and processing are handled by a payment processor, and Cinevaris receives only the billing records needed to operate subscriptions, receipts, invoices, refunds, chargebacks, and support.
Cinevaris does not upload your normal local files, portable exports, rendered documents, or local paths. Signed-in projects may create bounded encrypted recovery copies as described below.
Cinevaris does not ask for passwords, private keys, seed phrases, full payment-card numbers, government identification numbers, medical information, or unrelated personal data through normal support channels. Do not send that kind of information unless support specifically provides a safer process for a necessary request.
Cinevaris does not sell personal information and does not currently operate the website as an advertising-tracking platform.
Data map
Cinevaris handles the following categories of account and service data to operate subscriptions, license access, desktop activations, billing support, and account support.
| Category | Examples | Purpose | Provider or location | Retention |
|---|---|---|---|---|
| Website usage | Page path, referrer, approximate screen size, timezone, browser user agent, CTA label or destination when clicked, and a site visitor ID cookie | Understand whether the public site is working, find broken user paths, and improve the website | Cinevaris website records | Kept while useful for site operations, troubleshooting, launch measurement, security, or aggregated review |
| Optional product analytics | Fixed app event IDs, content-free onboarding milestones such as opening the starter project or completing a first workflow, fixed Core workflow phase names, a random ephemeral app-session identifier that resets when the app reloads, Revisions section and workflow names, fixed action IDs, help dismissal or reopening, coarse time-to-first-action buckets, app version, coarse operating-system category, timestamps, bounded audit metadata, hashed IP-related metadata, and browser user agent | Understand which Core phases opted-in app sessions reach, where users encounter onboarding friction, and which Revisions actions are completed, without collecting creative content | Cinevaris website audit records | Raw optional product events are automatically deleted when they are older than 90 days |
| Account access requests | Name, email address, role, project stage, plan interest, project scale, project title, message, user agent, and hashed IP-related metadata | Review account requests, prioritize onboarding, respond to interested users, and reduce spam or abuse | Cinevaris website records | Kept while needed for account follow-up, support, launch planning, abuse prevention, or deletion requests |
| Account and authentication | Email address, account user ID, sign-in state, and account role where applicable | Sign-in, account access, dashboard access, and support lookup | Supabase Auth and Cinevaris account records | The Auth account and account-owned records are deleted when self-service account deletion completes; limited security or dispute records may remain as described below |
| Synced app preferences | Account-linked workspace, editor, display, accessibility, privacy, and workflow preference values plus update timestamps | Keep supported app settings consistent across signed-in browser and desktop sessions | Cinevaris account database | Kept while needed to provide preference sync, subject to account deletion and operational retention requirements |
| Billing and subscription | Billing account ID, checkout session ID, subscription ID, plan, status, consent snapshot, receipt or invoice references, and billing events | Checkout, subscription consent, subscription status, plan changes, cancellation status, refunds, receipts, and billing support | Payment processor and Cinevaris subscription records | Account-facing subscription rows are deleted with the account; recurring-subscription consent evidence is retained until at least three years after consent and, if later, one year after termination, and other billing records may be kept while needed for accounting, tax, fraud prevention, chargebacks, support, or legal obligations |
| License and device activation | License records, activation records, device association records, last-seen timestamps, account/subscription status used for access checks | License issuance, desktop access decisions, device management, abuse prevention, and account support | Cinevaris website records and local desktop app records where applicable | Kept while needed to operate license access, resolve device issues, investigate abuse, or support the account |
| Support communications | Messages sent to support, account email, receipt references, issue descriptions, security reports | Support, billing review, privacy requests, security reports, and account recovery | Support email provider and Cinevaris support records | Kept while needed to answer the request, maintain a support history, handle disputes, or satisfy legal/accounting needs |
| Security, audit, and diagnostics | Route, event type, status, timestamps, bounded diagnostic metadata, hashed IP-related metadata, browser user agent, and error or performance details when diagnostics are enabled | Prevent abuse, investigate failures, protect accounts and billing, and maintain service reliability | Cinevaris security records and Sentry when configured | Kept while needed for security, fraud prevention, troubleshooting, dispute resolution, or legal obligations; direct account foreign keys are detached when the Auth account is deleted |
| Encrypted project recovery | Encrypted project envelope, account and project identifiers, version, size, device label, content hash, and timestamps | Restore signed-in projects after a browser, session, or device loss and prevent stale sessions from silently overwriting newer work | Cinevaris account database | The latest two bounded project versions while the account project remains available; live recovery rows and the account recovery key are deleted with the account |
Local work and encrypted recovery
Working data stays in the app workspace, and portable project files, rendered outputs, production documents, and local paths remain on your device unless you move or share them.
While you are signed in, Cinevaris may automatically keep the latest two bounded project recovery copies in the account database. Project content is encrypted before upload, and the account recovery key is separately encrypted at rest. Cinevaris manages the wrapping and recovery keys and can unwrap them to provide recovery, so this protects stored content but is not zero-knowledge storage.
Recovery metadata can include the account and project identifiers, project title, schema version, encrypted size, device label, content hash, and timestamps. Recovery copies are not public share links or general-purpose cloud file storage.
Cinevaris does not routinely review project content and does not sell project content or use it for advertising. Authorized access is limited to operating recovery, security, support, legal compliance, or another purpose you specifically request or approve.
How information is used
Account and billing information is used to provide access, manage desktop and browser app access, process subscriptions, display account status, and provide support.
If you enable Optional product analytics in app Preferences, Cinevaris may receive fixed product event IDs, content-free onboarding milestones such as opening the starter project or completing a first workflow, fixed Core workflow phase names, a random ephemeral app-session identifier that resets when the app reloads, Revisions page and workflow names, fixed action IDs, help use, coarse time-to-first-action buckets, app version, coarse operating-system category, and related bounded security metadata. This one setting is off by default, and turning it off stops future optional product event sends immediately. Accepting the Terms of Service, creating an account, purchasing a subscription, or continuing to use Cinevaris does not enable this setting.
Optional product events are not keyed to your Cinevaris account ID and do not include project names, scripts, scenes, notes, files, paths, shot data, parameters, or other user-created content. Because Cinevaris receives an ephemeral session identifier and bounded network and browser metadata, this account-free event stream is pseudonymous rather than guaranteed anonymous.
Support information is used to answer requests, investigate billing or access issues, respond to privacy requests, and handle security reports.
Legal bases where required
Where a law requires Cinevaris to identify a legal basis, account, authentication, billing, encrypted recovery, and requested support are processed as needed to provide the service or take steps you request before entering a contract.
Security, fraud prevention, service reliability, and protection of legal rights are processed for Cinevaris's legitimate interests when those interests are not overridden by your rights. Tax, accounting, sanctions, lawful process, and required records may be processed to comply with legal obligations.
Cinevaris relies on consent only where consent is requested for a particular optional purpose. You may withdraw that consent prospectively, but withdrawal does not make earlier lawful processing unlawful and does not stop processing that rests on another valid legal basis.
Service providers
Cinevaris uses service providers for authentication, account data, billing, support delivery, error diagnostics, delivery checks, and website hosting. Supabase Auth handles password authentication, and Cinevaris does not store plaintext passwords in its application database.
These providers may process information needed to deliver their services, such as login events, billing records, service events, and support-related metadata.
Stripe Checkout and Stripe billing tools handle payment-card entry and processing. Cinevaris does not receive or store full card numbers, card security codes, or raw payment-card details.
Postmark delivers support email submitted through the app. Sentry may receive scrubbed error and performance diagnostics when production monitoring is configured; default personal-information transmission is disabled, and Cinevaris removes user identity, request bodies, cookies, query values, secret-bearing headers, and free-form breadcrumb data before transmission.
How information is disclosed
Cinevaris discloses information to service providers only as needed for the functions described above; when you direct or authorize a disclosure; to comply with valid legal process or a legal obligation; or when reasonably necessary to investigate fraud, protect users, enforce terms, or protect the rights, safety, and security of Cinevaris or another person.
Information may also be disclosed to a buyer, successor, or professional adviser evaluating or completing a formation, financing, reorganization, sale, or transfer of the business, subject to appropriate confidentiality and to the successor assuming applicable privacy obligations before using account information for a materially different purpose.
Cinevaris does not sell or rent personal information, share it for cross-context behavioral advertising, or disclose project content for advertising. Cinevaris may use aggregated or de-identified information for service operations and improvement and will not attempt to re-identify it except to test safeguards, prevent fraud or security incidents, or comply with law.
Cookies and similar technologies
The website may use cookies or similar browser mechanisms for authentication, session handling, routing, security, account access, and privacy-conscious site measurement.
The current site measurement uses a first-party visitor ID cookie with a lifespan of up to one year, basic pageview metadata, and public website CTA click metadata. It is used to understand whether the website is working and where the user path needs improvement.
Because Cinevaris does not currently sell personal information, share it for cross-context behavioral advertising, or use it for targeted advertising, Global Privacy Control and Do Not Track signals do not change those current practices. If Cinevaris introduces a covered advertising or data-sharing practice, it will add any legally required signal handling and opt-out control before that practice begins.
Privacy requests
Signed-in customers can permanently delete their Cinevaris account from the website dashboard after confirming the action with their current password and, when enrolled, multi-factor verification. You can also contact support to request access, correction, deletion, or a portable copy of applicable account information, or to object to or request restriction of particular processing where the law gives you that right.
Where applicable law provides them, you may also withdraw consent, use an authorized agent, appeal a denied request, and complain to the privacy or data-protection authority where you live. Cinevaris will not discriminate against you for exercising a privacy right.
Cinevaris may verify your identity and an agent's authority, ask for information reasonably needed to find the records, and deny or limit a request where an exception applies or fulfilling it would impair another person's rights. A response will explain a denial and any available appeal method when required by law.
For support-assisted privacy requests, include the account email and say which right you want to exercise. Some records may still be retained for billing, tax, security, fraud prevention, chargebacks, dispute resolution, or legal reasons.
Retention and deletion
Cinevaris aims to keep only the account, billing, activation, and support records needed to operate the service and protect users, billing, and infrastructure.
Records may be deleted, anonymized, aggregated, or retained depending on the type of record, the status of the account, and whether the record is needed for billing, tax, fraud prevention, security, support, dispute resolution, or legal reasons.
When self-service account deletion completes successfully, Cinevaris cancels active subscriptions, revokes active Auth sessions, and then deletes the Auth account, account profile and roles, synced preferences, device activations, encrypted project recovery copies, and the account recovery key. Export important projects first.
Account deletion uses several provider and database steps rather than one atomic transaction. If a later step fails after billing is canceled, the subscription may remain canceled while the account remains available. The dashboard will report the failure; retry the deletion or contact support so the remaining account deletion can be completed.
Account deletion does not erase local project files, browser-local working data, or exports on your devices. It also does not erase records that Cinevaris or its providers must or reasonably need to retain, including recurring-subscription consent evidence retained until at least three years after consent and, if later, one year after termination, plus limited billing, tax, fraud-prevention, security, chargeback, support, or dispute records.
Canceling a subscription stops future renewal but does not itself delete the account, support history, billing records, preferences, or encrypted recovery copies.
Removing a synced project makes it unavailable through the normal project list but may not erase every retained version immediately. Local project files and exports remain on your devices until you delete them there.
Deleted account data may remain temporarily in access-restricted encrypted backups until those backups rotate out under operational retention. Pseudonymous or aggregated website measurement that is not keyed to the account email may also remain. Raw optional product analytics cannot be located by account identity because it is not account-keyed and is automatically deleted when it is older than 90 days.
Security and limits
Cinevaris uses reasonable operational safeguards for account, billing, activation, and support data, but no website, account system, or internet-connected service can be promised to be completely secure.
If you believe account data or service security may be affected, contact support and avoid sending passwords, private keys, full card numbers, or unrelated personal data.
If a security incident requires notice under applicable law, Cinevaris will provide the required notice using available account or service contact information.
International use
If you use Cinevaris from outside the United States, account, billing, support, and operational information may be processed in the United States or in locations where Cinevaris service providers operate.
Where applicable law requires a transfer mechanism or additional safeguard, Cinevaris will rely on an available lawful mechanism before making the covered transfer and may limit service availability where it cannot do so. Contact support to request more information about safeguards relevant to your information.
Cinevaris is not represented as legally suitable or available in every country or territory. Using the service from another jurisdiction does not waive a privacy or consumer right that applicable law does not allow you to waive.
Children
Cinevaris is a general-audience professional filmmaking service and is not directed to children under 13. Do not create an account or provide personal information if you are under 13.
Paid accounts are limited to people who are at least 18 years old or the age of legal majority where they live and who can enter a binding contract.
Policy changes
Cinevaris may update this policy as the service, providers, or legal obligations change. The current version and last-updated date appear on this page. Material changes will be communicated through a reasonable service notice, account notice, or email when appropriate.
Contact
Questions can be sent to support@cinevaris.com.