Privacy Policy
1. Who we are
SativaExperience is a closed-beta adult AI entertainment platform operated as a solo project. This policy describes what data is collected during the beta phase and how it is used.
We aim to be transparent about what is actually implemented. We do not claim compliance we cannot support at this stage.
2. Account data
- If you sign in via magic link, your email address is stored by Supabase (our authentication provider, EU-based) to identify your account.
- Your email is used exclusively for login and communication about your account. It is not shared with third parties or used for marketing.
- Legacy beta code users do not have an email account on this platform.
3. Credits and transaction records
- Your credit balance is stored in a database associated with your account.
- Individual credit transactions (top-ups, charges per scene, refunds) are logged with a timestamp, amount, and reason code.
- This data is retained to allow balance verification and support enquiries.
4. Session data
- Your active session state (selected scenario, persona, mood, and session progress) may be saved so you can continue a session later.
- Saved session data contains the structural state of your session, not a full verbatim transcript of the conversation.
- Session data is stored under your account and is not accessible to other users.
- You can start a new session at any time, which replaces the saved state.
5. Technical event logs
- Lightweight event records (e.g. "session started", "session ended", "provider error") may be stored for debugging and beta operations.
- These records include a session reference and an event type. They do not contain the content of your conversation or generated images.
- Server-level logs (FastAPI access logs, error logs) are retained for a limited period on our hosting infrastructure.
6. Generated content
- Text responses and images are generated in real time by third-party AI providers (Grok/xAI, Claude/Anthropic, ElevenLabs). These providers receive your session prompt context.
- We do not store generated images or audio persistently beyond the active session, unless explicitly stated otherwise for a session-continuation feature.
- Please review the privacy policies of the underlying AI providers if you have concerns about data processing at their end.
7. Data storage and security
- Account and session data is stored on EU-based infrastructure (Supabase/Hetzner).
- Access to database data is restricted to server-side processes using service-role credentials. Data is not directly accessible via the frontend.
- We apply reasonable technical measures to protect your data. No system is perfectly secure; this is a beta service.
8. Data we do not collect or sell
- We do not sell, rent, or share your personal data with advertisers or data brokers.
- We do not track you across other websites.
- We do not use your chat content for AI training purposes on our end.
- We do not collect payment card data. Payment processing (when introduced) will be handled entirely by a third-party payment provider.
9. Your rights
During the closed beta, you can request deletion of your account and associated data by contacting the operator directly. We will process deletion requests manually within a reasonable timeframe.
A more formal data subject rights process will be introduced before public launch.
Contact
For privacy questions or data deletion requests, please contact the operator directly: