Privacy Policy
Effective Date: 9/20/2025
1. Introduction
HighlightHub ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our video highlight detection service and website (the "Service").
By using our Service, you consent to the practices described in this Privacy Policy. If you do not agree with this policy, please do not use our Service.
2. Information We Collect
2.1 Information You Provide
- Account Information: Name, email address, password, and profile information
- Payment Information: Billing address and payment details (processed securely through Stripe)
- Video Content: Videos you upload for highlight detection and analysis
- Communication Data: Messages you send us through support channels
- Social Media Data: If you connect YouTube or other social accounts, we may access public profile information and video metadata as authorized
2.2 Automatically Collected Information
- Usage Data: How you interact with our Service, features used, and time spent
- Device Information: IP address, browser type, operating system, and device identifiers
- Log Data: Server logs, error reports, and performance metrics
- Cookies and Tracking: As described in our Cookie Policy
2.3 Third-Party Sources
- OAuth Providers: Information from Google, YouTube, or other connected services
- Analytics Services: Aggregated usage statistics from analytics providers
3. How We Use Your Information
We use your information for the following purposes:
- Service Provision: Process videos, generate highlights, and deliver our core AI services
- Account Management: Create and maintain your account, process payments, and provide customer support
- Communication: Send service updates, security alerts, and respond to inquiries
- Improvement: Analyze usage patterns to improve our AI models and user experience
- Legal Compliance: Comply with applicable laws, regulations, and legal processes
- Security: Detect fraud, prevent abuse, and protect our Service and users
- Marketing: Send promotional materials (with your consent, where required)
4. Legal Basis for Processing (GDPR)
For users in the European Union, we process your data based on:
- Contract Performance: To provide the services you've subscribed to
- Legitimate Interest: To improve our services, ensure security, and conduct business operations
- Consent: For marketing communications and non-essential cookies
- Legal Obligation: To comply with applicable laws and regulations
5. Information Sharing and Disclosure
We do not sell, trade, or rent your personal information. We may share information in the following circumstances:
5.1 Service Providers
- Payment Processing: Stripe for payment processing
- Cloud Infrastructure: DigitalOcean, Google Cloud, or similar providers for hosting
- Analytics: Privacy-focused analytics services
- Support Tools: Customer service and communication platforms
5.2 Legal Requirements
We may disclose information when required by law, court order, or to:
- Comply with legal obligations
- Protect our rights and property
- Investigate potential violations of our Terms of Service
- Ensure user safety and security
5.3 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of the business transaction.
6. Data Security
We implement industry-standard security measures to protect your information:
- Encryption: Data in transit and at rest is encrypted using modern standards
- Access Controls: Limited access to personal data on a need-to-know basis
- Regular Audits: Security assessments and vulnerability testing
- Secure Infrastructure: SOC 2 compliant hosting and cloud services
- Employee Training: Regular security awareness training for our team
However, no method of transmission over the internet is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
7. Data Retention
- Account Data: Retained while your account is active and for 30 days after deletion
- Video Content: Processed videos are automatically deleted after 90 days unless you save them
- Usage Data: Aggregated and anonymized for up to 2 years for service improvement
- Legal Requirements: Some data may be retained longer to comply with legal obligations
8. Your Rights and Choices
8.1 Access and Control
- Account Settings: Update your profile and preferences in your account dashboard
- Data Download: Request a copy of your personal data
- Data Deletion: Delete your account and associated data
- Correction: Update or correct inaccurate information
8.2 Communication Preferences
- Opt out of marketing emails using unsubscribe links
- Manage notification settings in your account
- Contact us to update communication preferences
8.3 EU/UK Rights (GDPR)
If you're in the EU or UK, you have additional rights:
- Portability: Receive your data in a machine-readable format
- Restriction: Limit how we process your data
- Objection: Object to processing based on legitimate interest
- Withdraw Consent: Withdraw consent for consent-based processing
- Complaint: File a complaint with your local data protection authority
9. International Data Transfers
Your information may be processed in countries other than your own. We ensure adequate protection through:
- Standard Contractual Clauses approved by the European Commission
- Adequacy decisions for certain countries
- Other appropriate safeguards as required by applicable law
10. Children's Privacy
Our Service is not intended for users under 13 years of age. We do not knowingly collect personal information from children under 13. If we discover we have collected information from a child under 13, we will delete it immediately.
11. Changes to This Policy
We may update this Privacy Policy periodically. Material changes will be communicated through:
- Email notification to registered users
- Prominent notice on our website
- In-app notifications
Your continued use of the Service after changes become effective constitutes acceptance of the updated policy.
12. Contact Us
If you have questions about this Privacy Policy or want to exercise your rights, contact us:
- Email: [email protected]
- Subject Line: "Privacy Policy Inquiry"
- Response Time: We'll respond within 30 days
13. Compliance Certifications
HighlightHub is committed to maintaining the highest standards of data protection:
- GDPR Compliant: Full compliance with EU data protection regulations
- CCPA Compliant: Adherence to California privacy rights
- SOC 2: Infrastructure partners maintain SOC 2 Type II compliance