Effective July 31, 2026
Privacy Policy
FluxVision stores the account and project data needed to operate the workspace: your name, email, OAuth account links, revocable sessions, uploaded media, generation inputs, job status, entitlement records, usage ledgers, and hashed API keys.
How data is used
Account data authenticates you and enforces quotas. Uploaded media and prompts are used only to process the generation you request. When a generation provider is configured, the prompt and related job data are sent to that provider under the operator’s agreement.
Storage and retention
Structured domain and identity records are designed for PostgreSQL through Cloudflare Hyperdrive, while media objects are stored in private Cloudflare R2. Retention depends on project policy, account-deletion workflows, provider terms, and legally required records.
Security and choices
Web authentication uses configured Google or Apple OAuth through Better Auth. Device and API secrets are stored as hashes, provider OAuth tokens are encrypted, and project access is workspace-scoped. Account deletion begins a revocation and cleanup workflow; final production retention behavior still requires operator approval.
Contact
This repository does not yet define a production operator or privacy contact. The legal entity, jurisdiction, contact address, complete subprocessor list, regional transfer terms, retention schedule, and deletion-request SLA must be supplied before launch.
Read the Terms