Legal
Privacy Policy
We are in open beta and are not selling anything, so there are no purchases and no card data today. The ledger below records the free tokens we grant and what the AI consumes. The purchase rows only start existing when buying opens.
1. Most of your data never reaches us
The Gustalabs apps are local-first. Your songs, samples, recordings, 3D models, video footage, and preferences live in your own browser's storage on your own device unless you explicitly save a project to the cloud. In Gusta Video that is absolute: imported video and audio never leave your device at all, and there is no setting that would send them. We run no ads and no third-party trackers, and the sites set no cookies. We do measure anonymous, aggregate usage (how many sessions and how long they last) to see whether the apps are working, but this uses no cookies and no identifier that follows you between visits: each visit is an unrelated, throwaway session id held only in memory. What follows is only about the data we actually store when you use a Gusta account.
2. What we store, why, and for how long
- Account: your email address, a salted hash of your password (never the password itself), and whether the address is verified. We send account emails only: the signup verification link, a password reset link when you ask for one, and confirmations when you change your email address. No marketing email. Basis: contract. Kept until you delete the account.
- Token ledger: the tokens we grant you and what the AI consumed. Nothing is for sale during the open beta, so we hold no purchase or card data. If buying opens, card details will go directly to Stripe and we will never see them; accounting records are then kept as Swedish law requires (7 years), pseudonymized after account deletion. Basis: contract and bookkeeping law.
- Cloud saves: projects you choose to save to the cloud. Basis: contract. Kept until you delete them or the account. In Gusta Video, backup is off until you switch it on for a specific project, and what is stored is the edit document only: clip timings, titles you typed, section names, and the names, sizes and durations of the media files the edit refers to. No video, no audio, and no thumbnail of your footage is stored.
- AI requests: two records. What each request COST (model, token counts, duration, success) is kept while your account exists. Separately, the INSTRUCTION YOU TYPED is logged for 30 days for abuse detection and support, then swept automatically; it is truncated, and it is only your message, never the project document sent alongside it. Basis: legitimate interest. Deleted immediately if you delete your account.
- What an assistant request contains: when you ask the assistant for something, your message is sent along with the context it needs to answer. In Gusta Video that context is the edit itself and what the app has measured about it: clip timings, section names, the text of any titles you added, the names of your media files, and where the silences and shot changes are. It never includes video or audio. That context goes to the model provider (section 3) to answer the request; it is not kept in our own prompt log.
- Support and feedback: messages you send through the in-app Feedback button. Basis: contract. Kept until account deletion.
3. Who processes it
Four processors, no one else: Amazon Web Services hosts everything in Stockholm; Resend delivers account emails (verification, password reset, email changes) and receives your email address; Anthropic runs the AI models that answer assistant requests, which can involve processing outside the EEA under the EU standard safeguards; Stripe will process payments if and when buying opens. We never sell or share data for advertising.
4. Your rights, self-service
Both rights that matter most are buttons in the account menu of every app, no support ticket needed:
- Download my data: a JSON export of everything we hold about you: account record, ledger, cloud saves, and feedback threads.
- Delete my account: permanently removes your account, sessions, cloud saves, and feedback, and severs stored AI logs from your identity. Bookkeeping records are kept in pseudonymized form as the law requires.
You also have the rights to rectification, restriction, and objection under the GDPR, and you can complain to the Swedish Authority for Privacy Protection (IMY, imy.se) or your local supervisory authority. For anything else, use the in-app support channel or email support@gustalabs.com; both land in the same support queue, kept until account deletion.
5. Security
Everything is served over TLS. Passwords are stored hashed, access tokens are opaque and revocable, the apps enforce a strict content security policy, and production access is limited to the operator. If a breach ever affects your data, we will tell you and the authority as the GDPR requires.
6. Changes
If this policy changes materially, we will show a notice in the apps before the change takes effect. The version and date at the top always tell you what you are reading.