Privacy Policy

Last Modified: April 15, 2026

  1. Overview.

    This Privacy Policy (this “Privacy Policy”) describes how Meld Studio, Inc. (the “Company”, “we”, “us”, or “our”) collects, uses, shares, and protects information in connection with the Company’s websites, applications, and any related services that refer or link to this Privacy Policy (such websites, applications, and services, collectively, the “Services”). As used in this Privacy Policy, “you” or “your” refers to an individual who accesses or is a user of the Services.

    Please read this Privacy Policy carefully to understand our policies and practices regarding your information and how we will treat it. By accessing or using the Services, you agree to this Privacy Policy. This Privacy Policy may change from time to time and the Company reserves the right to change this Privacy Policy at any time consistent with applicable privacy laws or to address new functionality and services. Your continued use of the Services after we make such changes is deemed to be acceptance of those changes, so please check this Privacy Policy periodically for updates.

  2. How the Services Work — Desktop App and Web App.

    The Services consist of two primary components, each of which handles your data differently:

    1. Desktop Application. The Company’s desktop application (the “Desktop App”) runs locally on your computer. All user content you create in the Desktop App — including scene configurations, media source settings, and stream outputs — is stored locally on your device. The Company does not have access to this locally-stored content. You control the deletion of this data by uninstalling the Desktop App or deleting its data directory from your device.

      The Desktop App does transmit certain limited data to the Company’s servers, as described in Sections 4.5 (Crash Reporting) and 4.6 (Telemetry) below.

    2. Web Application. The Company’s web application (the “Web App”) is hosted using third-party cloud hosting and storage providers. Data you create or provide through the Web App — including chat history, uploaded assets, and AI-generated content — is stored server-side by or for the Company through those providers. The Web App includes AI-powered features that transmit your inputs to Third-Party AI Providers for processing, as described in Section 5 below.

  3. Collection of Information.

    1. Sources of Collection. We may collect, process, and use information about you when you:

      • register for or log in to the Services;
      • interact with the Services, including using AI-powered features;
      • access the Services through an account maintained with a third-party authentication provider;
      • install and/or access the Desktop App;
      • contact us for support;
      • respond to a survey or poll; and
      • submit or provide us with information directly.
    2. Types of Information We Collect. The specific categories of information we collect about you include:

      • Account information: your email address, display name, avatar URL, account identifier, and subscription or plan status;
      • Authentication and integration data: identifiers, tokens, and session data associated with authentication providers and connected services, to the extent needed to sign you in or enable integrations;
      • Payment information: payment and billing details are collected and processed by Stripe, Inc. (“Stripe”). We do not store your full payment card numbers, bank account details, or other sensitive financial information on our servers. We may receive limited billing information such as subscription status, billing period, and transaction identifiers. For information on how Stripe handles your payment data, please see Stripe’s privacy policy at https://stripe.com/privacy;
      • Device and connection information: IP address (collected via crash reports and server logs), browser or app version, and device or session identifiers;
      • Diagnostic and usage information: crash reports, log files, telemetry, feature usage events, and performance metrics;
      • Communication information: information contained in emails or other communications you send to us, such as support requests; and
      • User content: content you create, upload, or generate through the Web App, including chat messages, uploaded files, and AI-generated outputs.
  4. Specific Data Practices.

    1. Account Data. When you create or use an account, we receive your email address and basic profile information from our authentication provider, Kinde. In the Desktop App, certain account and integration data may also be stored locally on your device to keep you signed in and to support connected streaming features. This information is used to identify your account, provide the Services, and communicate with you.

    2. IP Addresses. We collect your IP address through crash reports (Desktop App only, via Sentry) and through standard server logs (Web App). IP addresses are used for security purposes, abuse prevention, and troubleshooting.

    3. Opaque Identifiers. The Desktop App generates opaque install identifiers and session identifiers for telemetry purposes. These identifiers are randomly generated and cannot be used to identify you personally. They are not linked to your email address, account, or any other personally identifiable information.

    4. Streaming Platform Data. When you connect streaming platforms (such as Twitch, YouTube, Kick, or TikTok) to the Services, authentication tokens for those platforms are stored locally on your device in the Desktop App. Stream relay data (such as stream events) is processed through the Casterlabs/Koi relay service to facilitate your livestream connections. We do not intentionally permanently store those platform authentication tokens on our own servers as part of that relay flow.

    5. Crash Reporting (Desktop App Only). The Desktop App uses Sentry, a third-party error monitoring service, to collect crash reports when the application encounters an error. Crash reports may contain the following information:

      • application stacktrace and error details;
      • log files generated by the Desktop App;
      • your IP address (collected automatically by Sentry); and
      • an opaque user identifier (a randomly generated UUID that is not linked to your email address or account).

      Crash reports may also include account-related information if it appears in application logs, support submissions, or Sentry user context. For example, if you are signed in when a crash occurs, your email address or other account identifiers may be associated with the report for troubleshooting purposes.

    6. Telemetry (Desktop App Only). The Desktop App collects anonymized usage telemetry to help the Company understand how the application is used and to improve performance. Telemetry data includes:

      • opaque install and session identifiers (not personally identifiable);
      • user interaction events (such as feature usage and navigation patterns); and
      • performance metrics (such as frame rates and encoding statistics).

      We currently design this telemetry to rely primarily on opaque install and session identifiers rather than your name or email address. Telemetry data is stored using third-party cloud infrastructure providers.

    7. Usage, Billing, and Product Metrics. We maintain internal records related to subscription status, usage limits, refunds, and other service operations. We may also create de-identified or aggregated product metrics, such as tool-call success rates and feature reliability metrics, to improve the Services.

  5. AI Features and Data Flow.

    1. How AI Features Work. The Web App includes AI-powered chat features that allow you to interact with AI Models. When you use these features, your inputs (such as text prompts, message history, attachments, and tool call context or results) are transmitted to our Third-Party AI Provider for processing and response generation.

    2. Third-Party AI Provider. As of the date of this Privacy Policy, the Company uses Google Vertex AI (Gemini) as its Third-Party AI Provider. Your inputs are transmitted to Google Vertex AI through the Company’s service providers for processing. Google’s Vertex AI terms provide that Google will not use customer data to train or fine-tune AI or machine learning models without prior permission or instruction. For more information about how Google handles data, please see Google’s privacy policy at https://policies.google.com/privacy.

    3. No Training on Your Data. The Company does not use your personal information, user content, AI inputs, or AI outputs to train, fine-tune, or otherwise improve any AI or machine learning models, whether owned by the Company or any third party.

  6. Use of Information We Collect.

    We use the information we collect about you for the following purposes:

    1. To Provide and Operate the Services. We use your information to operate the Services, process your account registration, authenticate your identity, process payments, enforce plan limits, and provide customer support.

    2. To Improve the Services. We use anonymized and aggregated data (including telemetry and analytics data) to understand usage patterns, diagnose technical issues, and improve the performance and functionality of the Services.

    3. To Communicate with You. We may use your email address to send you account-related communications, security alerts, technical notices, and updates about the Services. You may also receive promotional communications, which you can opt out of as described in Section 8 below.

    4. To Protect Our Users and Business. We use information to detect and prevent fraud, abuse, security incidents, and other harmful activities, and to enforce our Terms of Use.

    5. To Comply with Law. We use information as necessary to comply with applicable laws, regulations, legal processes, and governmental requests.

  7. Disclosure of Information.

    We do not sell the information we collect about you. We may disclose the information we collect in the following circumstances:

    1. Service Providers. We share information with third-party service providers who process data on our behalf to help us operate the Services. These service providers may include:

      • AI model providers, such as Google Vertex AI, which process your prompts, message history, attachments, and related AI context to generate responses;
      • Authentication providers, such as Kinde, which help us verify your identity and manage sign-in;
      • Payment processors, such as Stripe, which process subscription and billing transactions;
      • Error monitoring and support providers, such as Sentry, which help us investigate crashes, bugs, and support issues; and
      • Cloud hosting, storage, delivery, and relay providers, which help us host the Web App, store content, deliver assets, support telemetry, and facilitate connected streaming features.

      Our service providers are contractually obligated to use your information only for the purposes of providing their services to us and are prohibited from using it for their own purposes, except as required by law or their own generally applicable service terms. We may add, remove, or replace service providers over time as the Services evolve.

    2. Legal Purposes. We may disclose your information, to the extent permitted by applicable law: (i) in response to subpoenas or other legal processes; (ii) at the request of governmental authorities conducting an investigation; (iii) to enforce our Terms of Use or other policies; (iv) to a buyer or other successor in the event of a sale, merger, reorganization, or transfer of some or all of our equity or business assets; and (v) to protect the rights, property, life, health, security, and safety of the Company or any third party.

    3. Aggregated and De-Identified Data. We may share non-personal information that is aggregated or de-identified so that it cannot reasonably be used to identify an individual user. We may share this information publicly or with third parties.

  8. Your Choices.

    1. Account Information. You may request access to or correction of your personal information by contacting us at support@meldstudio.co or, where available, through your account settings.

    2. Communication Preferences. You may unsubscribe from promotional communications by using the unsubscribe link in our marketing emails or by contacting us. Even if you opt out of promotional communications, we may continue to send you non-marketing communications related to your account and the Services.

    3. Desktop App Data. All user content in the Desktop App is stored locally on your device. You may delete this data at any time by uninstalling the Desktop App or by deleting its data directory.

    4. Web App Content Controls. Certain Web App data, such as saved chat history or uploaded assets, may be deletable from within the Services where those controls are available.

  9. Account Deletion.

    You may request deletion of your account and associated personal data by emailing support@meldstudio.co. We will verify your identity before processing your request.

    Upon receiving a verified deletion request, we will use commercially reasonable efforts to delete or de-identify the personal data we maintain about you that is reasonably associated with your account, subject to applicable law and our legitimate business needs. This may include your account profile and certain server-side Web App data, such as saved chat history and uploaded assets.

    We may retain certain information after a deletion request where permitted or required by law, including for security, fraud prevention, payment and billing records, dispute resolution, legal compliance, internal record keeping, backups, or the establishment, exercise, or defense of legal claims. We may also retain data in aggregated or de-identified form.

    Desktop App data is stored locally on your device and is not subject to server-side deletion. You control the deletion of Desktop App data by uninstalling the application or deleting its data directory.

  10. Data Retention.

    We retain personal data only as long as necessary to fulfill the purposes described in this Privacy Policy or as required by applicable law.

    • Account, billing, and support data is retained for as long as needed to provide the Services, manage the customer relationship, comply with law, and resolve disputes.
    • Web App content, such as saved chat history and uploaded assets, is retained until it is deleted by you, deleted in response to a verified request, or no longer needed for the operation of the Services, subject to backups and legal holds.
    • Crash reports and diagnostic logs are retained in accordance with our operational needs and applicable service-provider settings.
    • Aggregated or de-identified telemetry and product metrics may be retained for longer periods to improve the Services and measure reliability.
    • Backup copies may persist for a limited additional period before being overwritten or removed from backup systems.
  11. Data Security.

    We take reasonable measures to protect your information from loss, theft, misuse, and unauthorized access, disclosure, alteration, and destruction. Our security measures include:

    • Encryption in transit: All data transmitted between your device and our servers is encrypted using HTTPS/TLS.
    • Encryption at rest: Authentication tokens stored by the Desktop App on your device are encrypted at rest.
    • Hosted infrastructure safeguards: We rely in part on security features provided by our hosting and infrastructure providers for Web App storage and delivery.
    • Access controls: Access to user data within our systems is restricted to authorized personnel on a need-to-know basis.

    Although the Company uses reasonable efforts to protect your information, transmission via the internet is not completely secure and the Company cannot guarantee the security of your information. We are not responsible for unauthorized access to your information that results from circumstances beyond our reasonable control. In the event that we are required by law to inform you of a breach of your personal information, we may notify you electronically, in writing, or by telephone, as permitted by law.

  12. Third Party Services.

    The Services contain links to and integrations with third-party websites and platforms such as Twitch, YouTube, Kick, and TikTok (the “Third Party Services”). When you connect a Third Party Service to the Services, you may share information with that Third Party Service. This Privacy Policy does not apply to Third Party Services, and we are not responsible for the privacy or security practices of any Third Party Service. We encourage you to review the privacy policies of any Third Party Service before connecting it to the Services.

    1. Integration with YouTube API Services.

      With respect to our integration with YouTube API Services, please be aware that by using features that interact with YouTube, you are also subject to Google’s Privacy Policy, which can be found at https://policies.google.com/privacy. Our API Client uses YouTube API Services. We do not store any of your YouTube data through our use of the YouTube API Services. You can revoke our API Client’s access to your data via the Google security settings page at https://security.google.com/settings/security/permissions. If you have any questions or wish to confirm that no YouTube data has been stored, you may contact us at support@meldstudio.co.

    2. Integration with Kick API Services.

      Our service utilizes Kick API Services to function, and your use of these features is subject to Kick’s Privacy Policy (https://kick.com/privacy-policy).

      • Data Handling: To protect your privacy, we do not store your personal data from Kick on our servers. Any data required for the application to function, such as API tokens, is stored locally on your own machine. Other data accessed via the Kick API is processed in-memory on our backend only to provide you with the service and is never permanently stored.
      • Data Use Commitment: We will not sell, license, or transfer any data obtained through the Kick API to any third party, ad network, or data broker.
      • Revoking Access & Deleting Data: You can revoke our service’s access to your Kick account at any time via your Kick settings page: https://kick.com/settings/connections. Removing the application from your computer will delete locally stored data. For any privacy-related questions, you can contact us at support@meldstudio.co.
  13. Cookie Policy.

    We and our service providers use cookies and similar technologies when you access the Services through a web browser. These technologies may be used for the following purposes:

    • Strictly necessary purposes: to enable core site and product functionality, such as authentication, security, fraud prevention, and session management;
    • Analytics and performance purposes: to understand how visitors and users interact with the Services, measure traffic and feature usage, diagnose issues, and improve performance and functionality; and
    • Related measurement purposes: to understand the effectiveness of our websites, communications, and campaigns.

    For related measurement, we may use a first-party visitor cookie when you visit our website or click a product download link. Download interactions may refresh that cookie for up to 180 days so we can understand which campaigns led to product downloads and account activity.

    The specific analytics, measurement, and other cookie-based tools we use may change over time. Where required by applicable law, we will request your consent before using non-essential cookies or similar technologies. You may control cookies through your browser settings and, where available, through cookie preferences tools we provide. If you choose to disable certain cookies, some features of the Services may not function properly.

  14. California Residents.

    If you are a California resident, this section applies to you in addition to the rest of this Privacy Policy. Under the California Consumer Privacy Act, as amended by the California Privacy Rights Act (collectively, the “CCPA”), you may have the following rights with respect to your personal information:

    • Right to Know: You have the right to request that we disclose the categories and specific pieces of personal information we have collected about you, the categories of sources from which it was collected, the business or commercial purpose for collecting it, and the categories of third parties with whom we share it.
    • Right to Delete: You have the right to request that we delete personal information we have collected from you, subject to certain exceptions under the CCPA.
    • Right to Correct: You have the right to request correction of inaccurate personal information we maintain about you.
    • Right to Opt-Out of Sale or Sharing: The Company does not sell your personal information or share it for cross-context behavioral advertising as those terms are used in the CCPA.
    • Right to Non-Discrimination: We will not discriminate against you for exercising any of your CCPA rights.

    To exercise your rights, please contact us at support@meldstudio.co. We will verify your identity before processing your request and will respond within forty-five (45) days, or such longer period as permitted by the CCPA.

    You may designate an authorized agent to make a request on your behalf where permitted by applicable law. We may require the authorized agent to provide proof of their authority to act on your behalf, and we may also require you to verify your identity directly with us.

  15. Children.

    The Services are not intended for users under the age of 18, and no one under the age of 18 may provide any information to the Company in connection with the Services. We do not knowingly collect personal information from children under the age of 18. If you are under the age of 18, do not provide any information to the Company in connection with the Services, or use or interact with the Services in any way. If you believe we might have any information from or about a child under age 18, please contact us at support@meldstudio.co.

  16. Accessibility.

    If you have a disability and require an alternative format to this Privacy Policy, please contact us as directed in the “Contact Us” section below so that we may provide you with a more suitable format.

  17. Changes to This Privacy Policy.

    The Company reserves the right to update or revise this Privacy Policy at any time. We will post any revised Privacy Policy at https://meldstudio.co/privacy and update the “Last Modified” date at the top of the document. For material changes that reduce your rights or expand our data practices, we will provide reasonable advance notice by email or through the Services. Your continued use of the Services after any changes to this Privacy Policy constitutes your acceptance of the revised terms.

  18. Contact Us.

    If you have any questions regarding this Privacy Policy or your rights with respect to the personal data we collect from you, please contact us at support@meldstudio.co. As required by law, we may require you to verify your identity before we can process your request. Following a request, we will use reasonable efforts to supply, correct, or delete personal information about you in our files.