Renderbuff
Privacy
Last updated August 24, 2026.
This Privacy Policy explains how the operator of Renderbuff (“we,” “us”) collects, uses, and shares personal information when you use the studio at https://www.renderbuff.com (the “Service”). It is written for this product, not for a public social network or an ad-supported app.
We keep your email so you can sign in. We keep prompts, uploads, and finished files so the studio can show your gallery and finish a job.
Use of the Service is also governed by our Terms of Use and Cookies page.
1. Who we are
Renderbuff is a private Seedance studio. The operator is the person or business that runs this site. Write to admin@sanctivision.com. We are the controller of personal information we collect for the studio, except where a provider acts on its own (for example a card network, or MachGen or OpenRouter when it receives a job).
2. What we collect
Account
Email (we send a sign-in link; we do not use an account password), age confirmation (18+), invite and referral codes, and whether you accepted these policies. We may store a timestamp for age confirmation.
Studio content
Prompts, reference pictures, video, and audio; job settings; finished video and last frames; favorites; delete and review actions. Uploads may include a face or voice. We do not create or store a faceprint or voiceprint of our own. We send files to providers so they can check them or make a clip.
Money
Credit lots, spends, refunds, expiries, grants, fees, and a ledger of those changes. If you buy credits, a card processor will see the payment. We do not store full card numbers. We do not turn credits back into cash.
Safety
We check prompts and reference files with a safety checker before we spend money on a job. If that checker is down, we may still send the job to our video provider. The provider may also refuse a job. We may keep the decision, a short reason code, and review notes. We do not show you the checker’s name on the reject screen.
Access and device
On new signups we may read country or region from the host (for example Vercel or Cloudflare headers) so we can refuse sanctioned places. Hosts also see IP address and basic browser data to run the site. We store gallery column, list-or-grid, letterbox-or-fill choice, and the last generate bar (prompt, settings, and files) on your device. We send product events (invite, sign-in, quote, generate, pay, and a few studio actions) to PostHog with your user id. We keep a small PostHog id in this browser so those events can join after you sign in. We do not send prompts or uploads. We do not set a PostHog cookie. We do not record the screen.
We may email you when credits are about to expire, and once after they expire. We only send those notes when mail keys are set. We do not run an ad list.
We do not collect
We do not collect government IDs, precise GPS, marketing profiles, or contacts from your phone. We do not run interest-based ads. We do not sell a public social graph.
3. How we use it
- Create and keep your account, and decide if you may join (invite, allowlist, age, place).
- Run jobs: quote, spend or refund credits, send work to MachGen, OpenRouter, or Atlas Cloud, show the gallery.
- Check Inputs against our safety rules and handle reviews.
- Store and transcode files, including playable downloads and last frames.
- Send service mail, including expiry warnings.
- Remember an invite or a friend link, and grant a friend bonus after a first finished payment.
- Secure the Service, stop abuse, and enforce the Terms.
- Keep money and tax records, and defend legal claims.
- Improve how the studio works (for example fixing a broken download path). We do not train our own video model on your clips.
- See whether generate, pay, and sign-in work, using PostHog product events.
We may make aggregated or de-identified stats (for example how many jobs finished) that do not identify you.
4. Who we share it with
We share personal information only as needed to run this studio. We do not sell it. We do not share it with ad networks for cross-context ads.
- MachGen: first video provider. We send prompts and reference files there when that key is set. MachGen has its own privacy and acceptable-use rules.
- OpenRouter: fallback video jobs, prompts, and reference files. OpenRouter is in the United States and sends work to model vendors (including Seedance). OpenRouter has its own privacy and acceptable-use rules.
- Atlas Cloud: some video jobs, prompts, and reference files when that path is on. Atlas Cloud has its own privacy and acceptable-use rules.
- OpenAI: safety checks on prompts and reference stills, when that checker is on. OpenAI has its own privacy policy.
- Supabase: sign-in, database, and some older files.
- Cloudflare R2: new media files when those keys are set.
- Vercel: hosts the site and may see request data.
- Resend: expiry mail, only if we have set mail keys.
- A card processor (for example Stripe): when checkout exists. They see payment data. We store the credit lots and the ledger.
- PostHog: product events and error reports when a project token is set. We send a user id, and we may send your email as a person property. We do not send prompts, uploads, or finished files. PostHog has its own privacy policy.
- Advisors and authorities: lawyers or officials when the law requires it, or to stop serious harm. Sexual content of children is reported and the account is banned.
- A buyer of the project: if we sell or merge the Service, your account and files may transfer with it.
We do not list vendors we do not use. If we add a processor that changes this picture, we will update this page.
5. Cookies
Invite and referral cookies remember a code so we can attach a friend bonus to the first finished payment. The bonus is credits, not cash. We do not grant it just because someone signed up. The cookies page lists what we set. You can turn the referral cookie off. We do not set ads cookies. We do not set a PostHog cookie.
Essential cookies keep you signed in, remember an invite, and remember that you saw the cookie note. Our host and sign-in provider may also set cookies to run the site.
6. How long we keep it
- Account and gallery files: while the account is open, then until we finish deletion.
- Credits in the wallet: 180 days from the add date, then they expire. The ledger stays so we can show what happened and meet money-record duties.
- A hidden flagged file: about 7 days, then we can wipe it.
- Safety and review notes: as long as we need them to handle a report or a repeat problem.
- Mail logs: a short time at the mail provider.
- Backups: a limited extra window after a delete.
When we no longer need information, we delete it, isolate it, or strip it so it no longer points to you.
7. Security
We use signed-in access, server-side job writes, and signed file links. No method is perfect. You should keep your email inbox private and keep downloads you care about.
8. Where it goes
The studio may run in more than one country. Supabase for this project is in Canada. MachGen, OpenRouter, Atlas Cloud, OpenAI, PostHog, and many hosts process data in the United States. If you use the Service from elsewhere, you understand your information will cross borders. Where a law requires a transfer tool (such as standard contractual clauses), we rely on the provider’s terms for that tool.
9. Your choices and rights
- Sign in to see your gallery and account email.
- Delete a video in the studio. We try to cancel the video provider too.
- Turn off the referral cookie on the cookies page.
- Ask us to close the account and delete what we can. Write to admin@sanctivision.com.
- Opt out of marketing mail if we ever send it. Service mail (like expiry) may still go out.
Depending on where you live, you may also have a right to access, correct, delete, export, or object to some processing, and to appeal a refusal. We will not punish you for asking. We may need to verify it is you. We may keep what the law says we must keep.
10. U.S. state privacy
This section is for residents of California and other U.S. states with similar privacy laws.
Categories we collect are listed above: identifiers (email), account and internet activity, commercial information (credits and jobs), and user content that may include photos or video. We use them for the purposes in section 3. We disclose them to the processors in section 4.
We do not sell personal information for money. We do not share personal information for cross-context behavioral advertising. We do not use sensitive information to infer characteristics for ads. Because we do not sell or share in that way, we do not show a “Do Not Sell or Share” button.
You may ask to know, delete, correct, or receive a copy of information you provided. Email admin@sanctivision.com. We aim to answer in 45 days, or we will tell you if we need more time. You may use an authorized agent with proof. If we say no, you may appeal by replying. We do not offer a financial incentive that requires a separate notice.
California “Shine the Light”: we do not disclose personal information to third parties for their own direct marketing. You may still email admin@sanctivision.com once per year to ask.
11. EEA, UK, and similar laws
If those laws apply, our legal bases are:
- Contract: account, jobs, wallet, gallery, essential cookies, expiry mail about credits you have.
- Legitimate interests: security, fraud and abuse, sanctioned-place checks, improving the studio, keeping a ledger.
- Consent: the optional referral cookie, and any extra use we ask for later.
- Legal obligation: tax, accounting, and required reports (including CSAM).
You may withdraw consent without affecting prior use. You may complain to your local supervisory authority. We do not have a separate EU representative. Contact admin@sanctivision.com.
12. Children
You must be 18 or older. We do not knowingly collect personal information from children. If we learn we have, we will delete it. A parent should write to admin@sanctivision.com.
13. Changes
We may update this policy. We will change the date at the top. If a change is material, we will try to tell you in the Service or by email. Continued use after the new date means you have read the update.
14. Contact
Ask the site owner if you want your account closed, or if you have a privacy question: admin@sanctivision.com.