Legal

Privacy Policy

Effective 3 October 2026 · Applies to the AI Vlogger Studio web app, the Android app (package com.aivlogger.studio) and this website.

The short version. Your recordings and imported media stay on your device unless you choose to upload them. The words you write — profile answers, ideas, scripts, practice transcripts, coach messages — are stored in your account and sent to an AI provider (Anthropic or OpenAI) to produce the suggestions you ask for. Nothing is published to YouTube unless you connect a channel and approve each upload. There are no ads and no analytics or tracking SDKs. We do not sell your data. You can download your data or delete your account from Settings at any time.

1. Who we are

AI Vlogger Studio is developed and published by Md Mahabubur Rahman, trading as Tulx ("we", "us"). You can reach us at tulx.app@gmail.com.

2. What this policy covers

This policy covers the AI Vlogger Studio apps, this website (vlog.tulx.app) and the studio service we operate for them.

The Android app can be pointed at a studio server run by someone else. If you connect the app to a server we do not operate, the person or organisation running that server controls the data you store there, and this policy does not apply to it.

3. Information we collect

Information you give us

WhatDetails
AccountEmail address, display name and password. The password is stored only as a salted scrypt hash; we cannot read it.
Creator profileYour interests, goals and experience. Optionally: age group, gender, where you are based, and travel plans (destination and dates). Every optional answer can be skipped and edited later in My profile.
Your workPractice attempts and the feedback on them, skill history, ideas, scripts and their versions, content plans, titles, keywords and cover designs, editing projects, and your conversations with the coach.
Media you uploadOnly files you select for upload to the media vault or include in a backup: the original file, generated thumbnails and preview copies, transcripts, tags and finished renders.
SettingsYour preferences, privacy mode and a record of the consents you have given or withdrawn.
Messages to usAnything you send when you email support.

Media that stays on your device

Recordings you make and media you import in Create studio are kept in the app's storage on your device or browser. They are not sent to us unless you upload them to the media vault, save an online backup, or submit them for server rendering. If you use the app as a guest, your work is kept on your device and is not linked to an account.

Information created when you use the service

  • Sign-in sessions. Session tokens, stored on our side only as hashes.
  • Activity log. A record of sign-ins, consent and privacy changes, publishing actions and plan changes, so we can answer "what happened to my account".
  • AI usage records. Which AI feature ran and how much it used, to enforce monthly limits and control cost.
  • Server logs. Our web server keeps standard access logs (IP address, requested page, time, browser type) for about 14 days, for security and troubleshooting.
  • Connected channel. If you connect YouTube, the details described in section 7.

What we do not collect

  • No advertising ID, and no advertising or analytics SDKs.
  • No contacts, call logs, SMS or device files you did not select.
  • No precise location from your device. If a media file carries GPS metadata, it is stripped from rendered exports.
  • No face recognition. The app never tries to identify who is in a video.

4. Camera, microphone and permissions

The Android app requests these permissions:

  • Camera and Microphone — to record video and voice when you start a recording. Access is released when you stop.
  • Audio settings — to route audio correctly while recording.
  • Internet — to reach the studio server.

In a browser, the camera and microphone are requested by the browser's own prompt when you start recording. You can refuse or revoke these at any time in your device or browser settings; you can still import existing files and use the writing and planning tools.

5. How we use information

  • To run your account and keep you signed in.
  • To produce what you ask for: feedback, ideas, scripts, plans, coach replies, renders and uploads.
  • To personalise suggestions using your profile, goals and past work.
  • To keep the service secure, prevent abuse and enforce usage limits.
  • To answer support requests.

We do not sell your personal information, and we do not use it for advertising.

6. AI processing

AI features are provided by third-party model providers: Anthropic and OpenAI. When you use an AI feature, the text needed for that request is sent to one of them from our server. Depending on the feature, that can include relevant parts of your creator profile, the idea or script you are working on, transcripts of your practice, and your message to the coach. Their handling of that data is governed by their own terms and privacy policies.

  • Media is treated separately. Your media files are sent to an AI provider for analysis only if you turn on Allow sending selected media to an AI provider for analysis in Settings. This is recorded as a consent you can withdraw at any time. Uploads and basic video processing do not need an AI provider.
  • Provider keys stay on the server. Your device talks only to the studio server, never directly to an AI provider.
  • AI output can be wrong. Suggestions are generated automatically. Check facts before you publish.

7. YouTube connection

Connecting a YouTube channel is optional. The feature uses YouTube API Services. By connecting, you also agree to the YouTube Terms of Service, and Google handles your information under the Google Privacy Policy.

  • What we ask Google for. Permission to upload videos to your channel, and read-only access to your channel's basic details and your videos' information.
  • What we store. Your channel ID and name, the permissions you granted, and the access tokens Google issues. Tokens are encrypted at rest (AES-256-GCM).
  • What we do with it. Show which channel is connected, upload the videos you approve, and show you how published videos performed. We do not sell this data or use it for advertising.
  • Nothing uploads without you. Each video must be previewed and approved by you before it is uploaded or scheduled. Editing a draft clears its approval.
  • Disconnecting. Disconnect the channel in Publish, or revoke access from your Google Account permissions page. Deleting your account also erases the stored tokens.

8. Who we share information with

  • AI providers (Anthropic, OpenAI) — the request text described in section 6.
  • Google / YouTube — only if you connect a channel, and only the videos and details you approve for upload.
  • Hosting — the company that provides the servers the service runs on.
  • Legal requirements — if we are required to by law, or to protect the safety and rights of users and the service.

We do not share your information with advertisers or data brokers.

9. Storage and retention

  • Account data and uploaded media are kept for as long as your account exists, or until you delete the individual item.
  • Deleting a media file from the vault removes the file together with its transcripts, tags and other data derived from it.
  • Deleting your account disables it immediately and queues permanent removal of your stored files and account records. See Delete your data.
  • Media and drafts stored on your device stay there until you clear them on that device.
  • Server access logs are kept for about 14 days.

Our servers and the AI providers may be located outside your country, so your information may be processed in other countries.

10. Your choices and rights

  • Choose where media lives. In Settings, pick Local only (block server uploads), Choose files to upload, or Allow server uploads.
  • Withdraw AI media consent in Settings at any time.
  • Download your data. Settings → Your data → Download account data gives you your account records, scripts, practice history, media details and saved projects. Original media can be downloaded from the media vault.
  • Correct your data. Edit your profile and content in the app.
  • Delete your account. Settings → Delete account, or follow the steps on Delete your data.

Depending on where you live, you may have additional rights under local law, such as the right to access, correct, delete or object to the processing of your personal data. To exercise any of them, email tulx.app@gmail.com.

11. Children

AI Vlogger Studio is not directed at children under 13, and we do not knowingly collect personal information from them. If you are under 18, use the app only with the permission of a parent or guardian. If you believe a child under 13 has created an account, contact us and we will delete it.

12. Security

Connections to the service use HTTPS. Passwords are stored as salted scrypt hashes, session tokens are stored as hashes, connected-channel tokens are encrypted, and every request is checked against the signed-in account so one creator cannot read another's work. Sign-in tokens are stored on your device, so keep your device locked and sign out on shared devices. No system is perfectly secure; if we learn of a breach that affects you, we will tell you.

13. Changes to this policy

If we change this policy we will update the effective date above, and for significant changes we will tell you in the app or by email before they take effect.

14. Contact

Questions or requests about your privacy: tulx.app@gmail.com.