loopling.ai

Privacy Policy · loopling

Effective date: June 5, 2026

This document explains what data Atelier collects, where we store it, and who sees it. We don't sell data. We don't run third-party analytics. We don't run user-tracking pixels. The processing here is the minimum needed to run a synced creative tool.

Who we are. Atelier is operated by Extensium Inc., a Delaware corporation. Extensium is the controller of the personal data described below. You can reach us at hello@atelier.space, or by post at Extensium Inc., c/o Legalinc Corporate Services Inc., 131 Continental Dr, Suite 305, Newark, DE 19713, U.S.A.

1. What atelier collects

Account data

  • Email address — your login identifier.
  • Google sub claim — if you sign in with Google, the stable opaque user id Google provides. We use it to confirm "same Google account = same user" across sessions.
  • createdAt, lastActiveAt — admin diagnostics: who's been using Atelier and when.
  • Free-form admin note (note field) — an admin may write a private note about who you are (e.g. "met through Vimeo", "studio in Tokyo") to remember context across long gaps. Visible only to admins.

Content data

  • Spaces — each space you create, including the layout of every node, every connection, the camera position, and a per-space "muse memory" Muse may write about your work.
  • Conversations — your chats with Muse, including the messages you wrote and her replies.
  • Files — every image, video, audio file, PDF, or other binary you upload or generate, plus the metadata Atelier needs to display it (filename, MIME type, size).
  • References — when Muse searches the web for images or fetches a URL on your behalf, the metadata about each result (title, source URL, creator, license) and any image preview that Atelier proxied.

Billing data

  • Stripe customer id — Atelier's pointer to your billing record on Stripe. Created lazily on your first paid action.
  • Subscription state — your current tier, status (active / trialing / past_due / canceled), and period_end date.
  • Ink ledger — every Ink debit, credit, and reservation, with timestamps and the endpoint that triggered it. We need this to show you a monthly activity log and to reconcile against AI provider invoices.
  • Quota usage — per-day and per-month aggregates of how much Atelier owed AI providers on your behalf.
  • Activity log — per-call audit row (endpoint, model, latency, cost) retained 30 days for debugging and abuse review.

We do not see or store your full payment-card number — card details go directly to Stripe, our payment processor.

What we do NOT collect

  • Telemetry — Atelier doesn't run Google Analytics, Mixpanel, Segment, FullStory, Hotjar, or any third-party analytics SDK. No tracking pixels, no fingerprinting.
  • Cross-site cookies — see the cookie policy.
  • Behavioural advertising profiles — Atelier doesn't sell any advertising; there's no profile to build.
  • Voice / speech input — we don't capture audio of you talking, even if you use a voice-to-text input on your own device.

If you are in the European Economic Area or the United Kingdom, we process your personal data on these legal bases:

  • Performance of a contract — to create your account, sync and store your spaces and files, route your generation requests, and process payments. Without this we can't provide the Service.
  • Legitimate interests — to keep the Service secure, prevent abuse and fraud, debug problems, and reconcile vendor costs. We balance these against your rights.
  • Legal obligation — to keep tax and accounting records, and to respond to lawful requests.
  • Consent — where we ever ask for it specifically; you can withdraw consent at any time without affecting prior processing.

3. Where data is stored

Browser-side

When you're signed in, Atelier mirrors a working copy of your spaces, conversations, and files into your browser's IndexedDB so they load fast and work offline. This data is yours alone — it lives in the browser's per-origin sandbox; we can't see it remotely.

Server-side

The authoritative copy of your data lives on:

  • Postgres (Supabase Pro) — accounts, invites, spaces metadata, conversations, file metadata, billing tables, audit logs.
  • Cloudflare R2 — file blobs (images, videos, audio, PDFs) and share-link snapshots.
  • Redis (Upstash) — short-lived rate-limit windows.

All three are hosted in the United States.

What sub-processors see

We use the following third-party services. Each has a defined role and can only see the data needed for that role.

Sub-processorWhat they seePurpose
AnthropicYour message text + canvas context for chat turnsMuse model inference
OpenAI / LiteLLMImage generation prompts + reference imagesImage generation
ByteDance (Volcano Engine, Seedance, Seed3D, Ark)Video / 3D generation prompts + framesVideo / 3D generation
Kling / HappyHorseVideo generation promptsVideo generation
Mureka, MiniMax, ElevenLabsAudio generation promptsMusic / TTS / SFX
Tavily, Serper / Scrapingdog, JinaSearch queries and URLs Muse generates from your requestsWeb search & page retrieval
Cloudflare R2Encrypted file blobsObject storage
Cloudflare (CDN edge, Workers)Request metadata; deployed-app code you publishNetwork delivery, app hosting
SupabasePostgres rowsDatabase hosting
UpstashRedis keys (no message content)Rate limiting
StripeEmail address + billing detailsPayments
ResendEmail address + transactional message bodyEmail delivery
SentryError stack traces (no message bodies)Error monitoring
Google (OAuth)Email + sub claimSign-in

If we add or change a sub-processor in a way that materially affects data flow, we'll update this table and notify users 14 days before the change takes effect.

What AI providers do with prompts

The AI providers above each have their own policy on whether they train on API inputs. We direct your prompts to API endpoints whose terms prohibit training on input, and we track these policies and switch providers if any of them change the default to "trains on inputs without explicit opt-out." If you want a complete current list with citations, email hello@atelier.space.

4. How long we keep data

DataRetention
Account recordUntil you close your account
Spaces, conversations, filesUntil you delete them or close your account
Ink ledger (ink_transactions)Until you close your account
Activity log (activity_log)30 days, then trimmed by cron
Quota usage aggregates18 months
Stripe billing records7 years (regulatory requirement)
Email log (email_log)60 days
Server access logs30 days

When you close your account: spaces / conversations / file blobs / ink_transactions are deleted within 30 days. Stripe billing records remain for the regulatory retention period. We may retain a hashed record of your email address for a brief period to honour suspensions (stops re-creating an account that was suspended for abuse).

5. Your rights

Depending on where you live, you have some or all of these rights. We honour the core rights (access, correction, deletion, portability) for all users, not just those in a specific jurisdiction.

  • See your data: every space, conversation, and Ink transaction is visible in the app. Email support if you want a structured export.
  • Correct your data: account email and content are user-editable. Contact support for billing-record corrections.
  • Delete your data: close your account from Settings; data goes through the 30-day deletion described above.
  • Object / restrict: if you don't agree with a sub-processor we use, email support and we'll discuss alternatives. Some sub-processors (Stripe, the database host) can't be removed without making Atelier non-functional for you.
  • Withdraw consent: where processing is based on consent.
  • Lodge a complaint: with your local data-protection authority (ICO in the UK, your lead supervisory authority in the EEA, or a state attorney general in the U.S.).

California residents (CCPA/CPRA). In the past 12 months we have not sold or "shared" (as those terms are defined under California law) your personal information, and we do not do so. We do not process sensitive personal information to infer characteristics. You have the rights to know, delete, correct, and opt out; we don't discriminate against you for exercising them. Categories collected and their purposes are described in Sections 1–3.

To exercise any of these rights, email hello@atelier.space. We respond within 30 days; complex requests may take longer, in which case we tell you the timeline up front. We may need to verify your identity (usually by confirming control of the account email) before acting.

6. International transfers

Your data is stored in the United States. If you're in the EU, EEA, or UK, your data is transferred to the U.S. and to our sub-processors under an appropriate transfer mechanism — typically the European Commission's Standard Contractual Clauses (and the UK Addendum), or a provider's Data Privacy Framework certification where available. The sub-processors listed above each commit to compatible safeguards. Email hello@atelier.space for a copy of the relevant transfer terms.

7. Security

  • In transit: TLS 1.2+ between you and Atelier; TLS between Atelier and every sub-processor.
  • At rest: Postgres rows encrypted at rest by Supabase; R2 blobs encrypted at rest by Cloudflare. Database backups are similarly encrypted.
  • Access control: only authorized personnel (currently Extensium's founder) and a small number of trusted contractors, when needed for support, can access production data; every access is logged.
  • Sessions: session cookies are HttpOnly, SameSite=Lax, and Secure. We rotate the signing secret periodically.
  • Incident response: if we detect a security incident affecting your personal data, we'll notify affected users and any required authority within the timeframes the law requires (and in any case without undue delay).

We are not perfect. If you find a security issue, please email hello@atelier.space — we'll respond quickly and keep you informed.

8. Children

Atelier is not directed to children. You must be at least 16 to use it (see the Terms). We don't knowingly collect personal data from anyone under 16; if we learn we have, we delete it and close the account.

9. Changes to this policy

If we change this policy materially:

  1. We'll update the date at the top.
  2. Email everyone with an active account 14 days before the change.
  3. Keep prior versions at https://atelier.space/legal/privacy?version=YYYY-MM-DD.

10. Contact

  • Privacy questions, data-subject requests, and security reports: hello@atelier.space
  • Controller of record: Extensium Inc., c/o Legalinc Corporate Services Inc., 131 Continental Dr, Suite 305, Newark, DE 19713, U.S.A.

loopling.ai · grows with you, grows itself

hello@loopling.ai · community · pricing · privacy · terms