Governance & Trust

Data Retention & Lifecycle Policy

Operating Legal Entity: Viewsmo Technologies Inc. · Effective Date: October 11, 2026

1. Purpose and Scope

Viewsmo Technologies Inc. (“Viewsmo”, “we”, “us”) is committed to minimizing data storage and strictly limiting the lifecycle of creator media and telemetry. This policy applies to all media uploads, transcribed text, intermediate audio/video clips, rendered outputs, OAuth authorization tokens, and user account records across our web applications and serverless processing workers.

Zero Indefinite Retention: In accordance with our security principles, no user data category is retained indefinitely without explicit user control or a documented legal requirement.

2. Artifact Retention Schedule

The table below outlines the precise retention window, target storage tier, and legal/technical justification for each artifact processed by Viewsmo:

Artifact CategoryRetention PeriodStorage LocationPurge Trigger & Justification
Source Upload Master Files

Original user-uploaded video files (.mp4, .mov, etc.)

7 Daysstorage.source-videosKept temporarily to allow project re-renders and edits; automatically deleted after 7 days.
Intermediate Audio & Extracted Subclips

Temporary clipped segments, normalized WAVs, and ASS subtitle working files

2 Daysstorage.clipsPipeline working artifacts; purged within 48 hours of job termination.
Final Rendered Shorts (Free Tier)

Exported 1080x1920 MP4 vertical videos, SRT sidecars, and manifests for free accounts

30 Daysstorage.rendered-shortsAllows download window for free tier users; purged after 30 days.
Final Rendered Shorts (Paid Tier)

Exported 1080x1920 MP4 vertical videos, SRT sidecars, and FCPXML files for Pro/Studio accounts

90 Daysstorage.rendered-shortsExtended storage retention for paying creator subscriptions.
OAuth Refresh & Access Tokens

Google / YouTube Data API credentials stored in channel_tokens

Immediate (< 1 min)databaseRetained only while channel connection is active. Permanently purged within 1 minute of disconnect.
Job Manifests and Pipeline Telemetry

Sanitized pipeline stage execution metrics, timestamps, and error classes (no raw transcripts)

90 DaysdatabaseRetained for system diagnostics, SLA compliance, and security monitoring.

3. YouTube OAuth Token Handling & Revocation

When a creator links their channel through the YouTube Data API OAuth 2.0 flow:

  • Tokens are stored in encrypted database storage (channel_tokens) strictly to read channel statistics, verify owned videos, and perform authorized uploads.
  • Immediate Disconnect Purge: When you disconnect a channel in Viewsmo, access tokens, refresh tokens, and channel ID links are permanently deleted from our databases within 60 seconds.
  • Third-Party Revocation: You can also instantly revoke Viewsmo’s access at any time via Google’s native dashboard at https://myaccount.google.com/permissions.

4. User Account Deletion & Verifiable Evidence

Creators may delete their account and all associated records at any time directly through the dashboard or by calling our automated deletion API (POST /api/user/delete).

Upon submission, our deletion worker performs an immediate cascade:

  1. Purges all raw and rendered objects in Supabase Storage.
  2. Revokes and deletes all channel tokens and analytics snapshots.
  3. Deletes all render jobs, brand presets, and billing ledger mappings.
  4. Permanently deletes the Supabase Auth user record.
  5. Issues an immutable cryptographic Deletion Receipt containing timestamp, itemized counts, and unique receipt ID for verification.

5. Security, Incident Response & Contact

For data privacy inquiries, DPA execution, or security incident reports, our appointed officers can be reached directly:

Security & Incidents

security@viewsmo.com

24/7 SLA for vulnerability reports

Privacy & Compliance

privacy@viewsmo.com

DPA and GDPR/CCPA queries

Creator Support

support@viewsmo.com

Account & billing assistance