Privacy
Privacy Policy
This policy covers studiola.app and its web workspace. Yunus Emre Macit, operating as Studiola, is responsible for the personal data processing described here. Contact support@studiola.app.
Information we process
We receive information when you create an account, upload material, use a feature, subscribe or contact support. Authentication and payment providers also supply the account or transaction information needed to run the service.
- Account identifiers, email address, name, authentication status and account preferences.
- Uploaded product and reference images, filenames, prompts, chat messages, selected settings, generated images, saved preferences, feedback and archive organization.
- Subscription and transaction references, billing dates, payment status, amounts, currencies and credit history. Payment card details are entered in Dodo Payments checkout and are not stored by Studiola.
- Operational information such as generation status, downloads, credit usage, errors and support correspondence. Hosting and authentication services also process device, browser and network information when handling requests.
Why we use information
We use account and workspace information to provide authentication, image generation, chat assistance, saved work and support; billing information to deliver subscriptions and credits; and operational records to troubleshoot errors and prevent misuse.
Where applicable, our legal bases are performance of a contract for requested services, legal obligations for required records, and legitimate interests in security, reliability and resolving disputes, balanced against your rights. Where consent is required, it is a separate choice and can be withdrawn. Optional analytics storage uses the preference described below.
Service providers and AI processing
Clerk provides authentication. Cloudflare provides hosting, database and file storage, delivery and operational infrastructure. Dodo Payments sells and bills online subscriptions as Merchant of Record and handles payment information under its own privacy notice.
OpenAI processes chat requests, which can include selected reference images, previous result images, current prompts, recent conversation context and saved user preferences. fal.ai processes image-generation prompts, reference images and generation settings. These requests may include image URLs so the provider can retrieve the images. The information sent depends on the feature and material you select.
Provider retention periods and any use of inputs for model improvement depend on the provider, service and applicable terms. Follow the links below for each provider’s practices, including before submitting confidential or sensitive material.
Images and sharing
Uploaded and generated images are delivered through image URLs. These URLs can be accessible without signing in to Studiola; anyone with a working URL may be able to view the file. They should not be treated as private file storage. Images can also be cached by delivery services or saved by someone who receives a link.
Only upload material you are authorized to use. For identifiable people, obtain the permissions and any consent needed for AI processing and the intended use of the resulting image. Do not upload identity documents or sensitive personal records.
Cookies, browser storage and analytics
Authentication and service features use cookies or browser storage. Studiola also stores preferences, local chat history and payment-confirmation references in your browser. Clearing site data may remove this local information without deleting account records held by the service.
Google Tag Manager is used only when configured. In that case, it loads on the site and a preference prompt controls the analytics-storage consent signal. Analytics storage defaults to denied unless a saved acceptance exists; advertising-storage and advertising-use signals remain denied. Declining does not prevent the Tag Manager script itself from contacting Google. Configured tags may process usage information according to their consent behavior.
When analytics is configured, use Cookie settings in the footer to change your choice. Application events can include sign-in, sign-up, feature links and checkout initiation. These optional analytics preferences do not disable operational records needed to provide the service.
Retention and deletion
Retention depends on the data category, whether the account or saved work remains in use, support and dispute needs, security investigations, and applicable accounting or legal requirements. We do not apply one fixed deletion period to all data. Contact us to discuss the records associated with your account.
Deleting an image from your workspace removes its app record and triggers removal of its stored file where supported. Related records, provider copies, cached images and copies already downloaded may follow different deletion processes. Removing a sign-in profile does not by itself complete a Studiola data-deletion request. Contact support for account-wide deletion or an export.
International processing
Our service providers operate internationally, so information may be processed outside your country, including in countries with different data-protection rules. The applicable transfer requirements depend on the information, provider and jurisdiction. Contact us for information about the locations and transfer arrangements relevant to your request.
Your rights and requests
Depending on applicable law, you may request access to information about processing and recipients, correction, deletion, restriction, or a portable copy, and may object to certain processing. You may withdraw consent without affecting processing that was lawful before withdrawal.
Where Turkish Law No. 6698 applies, Article 11 includes rights to learn about processing and recipients, seek correction or erasure under the legal conditions, request notification of those actions to recipients, object to an adverse result based solely on automated analysis, and seek compensation for unlawful processing. Where the GDPR applies, its access, erasure, restriction, portability and objection rights apply subject to their conditions.
Email support with your request and enough information to identify the account. We may ask for proportionate verification and will respond under the applicable procedure and time limits. You may also complain to the competent data-protection authority, including the Turkish Personal Data Protection Authority or your relevant European supervisory authority, subject to the applicable complaint procedure.
Policy updates
We may update this policy as the web service changes. The date above identifies this version. Material changes will be communicated where required by applicable law.
Questions about Studiola?
Contact the team or explore the production guides before starting a project.