Privacy Policy
Last updated: 3 October 2026. A German version is available at Datenschutzerklärung.
1. What the Service is
The Service is a desktop application operated by me that prepares short vertical videos from a DJ's own gig footage and posts them on a schedule to that DJ's own YouTube, TikTok and Instagram accounts. It processes data only for creators who have chosen to use it and have connected their accounts.
2. Data we process, and why
- Account authorization data (tokens). When a creator connects a platform account, the platform issues access/refresh tokens. These are used solely to publish the creator's videos and, for YouTube, to read view statistics of the creator's own channel. Tokens are stored encrypted in the macOS Keychain on the computer that runs the Service. They are never sent to any third party other than the issuing platform.
- Basic account information. Account/channel name or display name (and, where the platform provides it, the avatar) so the app can show which account is connected.
- Videos and metadata. The creator's own gig videos and the titles/captions created for them. Videos are processed locally on the operating computer and uploaded only to the platform account the creator connected. If a creator submits videos through the upload page on this website, they first wait in a private cloud inbox (see section 3) until the operator's computer has downloaded them.
- Reference photos and recognition data. To find the creator (or their mask) in footage, the creator provides reference photos. Recognition is done locally on the operating computer. Photos and derived recognition data are never uploaded, never shared and never used for any other purpose. They are provided voluntarily and can be deleted at any time on request.
- Writing-style examples. Previous captions and titles the creator provides, which are analyzed so new captions are phrased in the creator's own voice. They are stored on the operating computer and, as described in section 3, included as text in requests to the AI model.
- Post history. Which video was posted when, to which platform, with which title, plus technical status (e.g. errors), so that nothing is posted twice.
3. Recipients and processors
- The platforms themselves (Google/YouTube, TikTok, Meta/Instagram) receive the video and caption the creator wants published, as part of publishing.
- Anthropic (Claude API). Titles and captions are generated by an AI model. Only text is sent: the file name of a video, any text details the creator provided, a selection of the creator's own previous titles and captions (so new ones match the creator's writing style), and titles already used (to avoid repeats). Videos, images and reference photos are never sent to the AI model.
- Cloudflare (upload inbox). Videos a creator submits through the upload page are stored encrypted in a private Cloudflare R2 storage bucket that only the operator's app can read. The app downloads them automatically, usually within minutes, and the cloud copy is then deleted. They are not public and not used for anything else. The upload link is personal and secret to each creator.
- Cloudflare (temporary tunnel, Instagram only). Instagram's publishing interface can only fetch a video from a public web address. For the few minutes a publish takes, the video is made available through a randomly named, temporary Cloudflare Tunnel link, which is shut down afterwards.
- The operator does not sell data, does not share it for advertising and does not use it to profile anyone.
4. Legal basis
Consent of the creator (Art. 6(1)(a) GDPR; for reference photos used to recognize the creator, explicit consent under Art. 9(2)(a) GDPR, to the extent this is considered biometric data) and performance of the agreement to provide the Service (Art. 6(1)(b)). Consent can be withdrawn at any time with effect for the future.
5. Retention and deletion
Data is kept only as long as the creator uses the Service. On request, or when a creator disconnects, tokens, reference photos, recognition data, stored videos and post history of that creator are deleted without undue delay (normally within 14 days). Content already published on a platform stays under that platform's control and is deleted by the creator there.
6. How to disconnect and delete your data
- Revoke access yourself, any time: Google: myaccount.google.com/permissions · TikTok: Settings and privacy → Security & permissions → Apps and services · Instagram: Settings → Apps and websites (Business Integrations).
- Ask for deletion: email hello@getstagecut.com from the address you used when connecting, and all data described above will be deleted and confirmed to you by email.
7. Your rights
You have the right of access, rectification, erasure, restriction, data portability and objection, and the right to withdraw consent at any time. Contact: hello@getstagecut.com. You may also complain to a supervisory authority; the one responsible for the operator is the Landesbeauftragte für Datenschutz und Informationsfreiheit Nordrhein-Westfalen, Düsseldorf.
8. Google / YouTube API Services
The Service uses YouTube API Services. By using it with YouTube you agree to be bound by the YouTube Terms of Service; see also the Google Privacy Policy. The Service's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. You can revoke the Service's access at security.google.com/settings/security/permissions.
9. TikTok and Meta
When you connect TikTok or Instagram, those platforms' own terms and privacy policies also apply to you (TikTok, Instagram). Information received from these platforms is used only to publish your content to your own account as you authorized.
10. This website
This website uses no cookies, no analytics and no third-party trackers. Like any web server, the hosting provider may log technical access data (e.g. IP address, time, page requested) for security and operation. Hosting provider: GitHub Pages (GitHub, Inc., San Francisco, USA).
11. Changes
If the Service changes in a way that affects this policy, it will be updated here and the date above changed.
12. Who is responsible
Martin Grüter · hello@getstagecut.com (full contact details in the Impressum). This is the controller within the meaning of the EU General Data Protection Regulation (GDPR) for the service described below ("the Service").