Privacy & Data Security

Privacy Policy

Learn how Scribia collects, processes, and secures your information when using our AI summarizers, programming engines, and biometric gesture controls.

1. Introduction

At Scribia, we respect your privacy and are committed to protecting your personal data. This Privacy Policy details how we handle the information collected from your activities on the Scribia platform (scribia.live), including our AI Video Summarizer, Code Changer (Code Studio), Quiz & Flashcard generators, and Gesture-based Two-Factor Authentication modules.

2. Information We Collect

We collect several types of data depending on how you interact with the Service:

A. Account Credentials & Profiles

When you sign up or log in using email or Google OAuth authentication, we receive your email address, name, profile picture URL, and login tokens to establish your user session.

B. Content Uploads and Processing Data

We store text and media files submitted to perform AI tasks:

  • YouTube & Video URLs: Input links submitted for video summarization.
  • Text & Transcripts: Video transcriptions, custom edits you make in the text editor, and text used to generate study cards.
  • Source Code Snippets: Files and programming code submitted to the Code Changer for language translation and optimization.

C. Gesture Password Patterns

If you enable our supplementary security features (Gesture 2FA), you draw a gesture key. We convert this drawn drawing path into a secure numerical matrix vector which is stored on our server. We do not store screenshots, images, or raw canvas snapshots of your drawings.

D. Billing Data

If you subscribe to Premium plans, billing details (credit card information, zip code) are collected directly by Stripe, our secure payment gateway. Stripe provides us with subscription metadata (plan type, expiry dates) only. We do not store or process card numbers on our servers.

3. Sharing and Third-Party Integrations

We share only the minimum required information to deliver our AI features:

  • AI Providers (Gemini, OpenAI, Anthropic, etc.): The source code files, transcripts, or video data you submit are sent to third-party AI endpoints to perform translations, summarizations, or quiz generations. No personal account identifiers (like your email address, user ID, passwords, or gesture data) are shared with these AI systems.
  • Analytics and Storage Providers: We use hosting infrastructure and database storage to retain your user settings, summaries, flashcards, and quizzes. These providers comply with strict security protocols.

4. Cookies and Session Management

We use secure cookies (AccessToken and RefreshToken) solely to authenticate requests and keep you logged into the Service. We do not sell cookie data or share it with third-party advertising networks for marketing.

5. Data Retention and Erasure Rights

You hold full rights over your data. You may request data deletion or account erasure at any time:

  • All transcripts, summaries, quizzes, flashcards, and converted code records linked to your account can be deleted immediately by request or when you delete your account through your profile dashboard.
  • Account metadata is deleted from our databases upon account termination. Backup caches are cleared within 30 days.

6. Data Security

We implement technical and administrative safeguards to protect your personal information, including SSL/TLS encryption for all network traffic, hashing of account passwords, and vector representation of security gesture paths. However, no data transmission or storage over the internet is completely risk-free.

7. Contact Us

If you have questions, data export requests, or want to submit an account deletion request under GDPR/CCPA regulations, please email us at: privacy@scribia.live.