Privacy Policy

Last Updated: October 12, 2025

Introduction

Welcome to SoraPrompt (hereinafter referred to as "we" or "the platform"). We highly value your privacy protection and personal information security. This privacy policy aims to explain how we collect, use, store, and protect your personal information, as well as your related rights.

Please carefully read and fully understand this privacy policy before using our services. If you do not agree with any content of this policy, please stop using our services immediately.

1. Information We Collect

1.1 Information You Actively Provide

  • Account Information: When you register an account, we collect your email address and password (encrypted storage)
  • Google Account Information: If you choose to log in with Google, we collect your Google account basic information (name, email, avatar)
  • Uploaded Video Files: Your uploaded video files are used for AI analysis to generate prompts

1.2 Automatically Collected Information

  • Usage Data: Access time, IP address, browser type, device information
  • Operation Logs: Your service usage records, including prompt generation history
  • Cookies and Similar Technologies: Used to maintain login status and improve user experience

2. How We Use Your Information

  • Provide, maintain, and improve our services
  • Process your video files and generate Sora prompts
  • Save your history for easy access anytime
  • Verify your identity and protect account security
  • Send service-related notifications and updates
  • Analyze service usage and optimize user experience
  • Comply with legal and regulatory requirements

3. Information Storage and Security

3.1 Storage Methods

  • Your account information and history are stored in a secure PostgreSQL database
  • Passwords are encrypted using bcrypt encryption algorithm
  • Uploaded video files are only used for temporary analysis and are not permanently saved on our servers

3.2 Security Measures

  • Use HTTPS encrypted transmission to protect data security
  • Adopt industry-standard security technologies and procedures
  • Conduct regular security audits and vulnerability fixes
  • Limit employee access to personal information

3.3 Storage Period

We only retain your personal information for the period necessary to achieve the purposes stated in this policy. When you delete your account or request data deletion, we will delete the relevant information within a reasonable period, unless required by law to retain it.

4. Information Sharing and Disclosure

We commit not to sell, rent, or trade your personal information. We only share your information in the following circumstances:

  • Service Providers: We use Google Gemini API for video analysis, and your video data will be sent to Google for processing
  • Legal Requirements: According to laws, legal procedures, litigation, or government requirements
  • Rights Protection: To protect our or others' rights, property, or safety
  • With Your Consent: In other circumstances with your explicit consent

5. Third-Party Services

Our services use the following third-party services:

  • Google Gemini API: For video analysis and prompt generation
  • Google OAuth: For Google account login
  • Google Analytics: For analyzing website usage
  • Microsoft Clarity: For user behavior analysis

These third-party services have their own privacy policies. We recommend you review their privacy policies for details.

6. Your Rights

According to applicable laws and regulations, you have the following rights:

  • Right of Access: You have the right to access your personal information we hold
  • Right of Rectification: You have the right to request correction of inaccurate personal information
  • Right of Erasure: You have the right to request deletion of your personal information
  • Right to Restrict Processing: You have the right to request restriction of processing your personal information
  • Right to Data Portability: You have the right to obtain your data in a structured, commonly used, and machine-readable format
  • Right to Withdraw Consent: You have the right to withdraw consent to process personal information at any time

To exercise the above rights, please contact us through the contact information provided at the end of this policy.

7. Cookies and Similar Technologies

We use cookies and similar technologies to:

  • Maintain your login status
  • Remember your preference settings
  • Analyze website traffic and usage
  • Improve user experience

You can manage or disable cookies through browser settings, but this may affect the use of certain features.

8. Children's Privacy Protection

Our services are not directed to children under 13 years of age. We do not knowingly collect personal information from children under 13. If we discover that we have inadvertently collected personal information from children, we will delete such information as soon as possible.

9. Cross-Border Data Transfer

As some of our service providers (such as Google) are located in other countries/regions, your information may be transferred to locations outside your jurisdiction. We will take appropriate measures to ensure your information is adequately protected during transfer.

10. Privacy Policy Updates

We may update this privacy policy from time to time. The updated policy will be published on this page and the "Last Updated" date will be updated. If we make significant changes to the privacy policy, we will notify you through website notices or email. We recommend you regularly review this policy to stay informed of the latest information.

11. Contact Us

If you have any questions, comments, or suggestions about this privacy policy, or need to exercise your rights, please contact us through the following methods:

Email: liangwendong152@gmail.com

Website: https://soraprompt.chaojigeti.xyz

We will respond to your request as soon as possible after receiving it, usually within 30 days.

12. Applicable Law

This privacy policy is governed by the laws of the People's Republic of China. In case of disputes, both parties shall resolve them through friendly negotiation; if negotiation fails, either party may file a lawsuit with the people's court having jurisdiction over the location of the platform.