Skip to content
tsurumi

PRIVACY

Privacy Policy

This policy explains how tsurumi handles information when you visit tsurumi.ai or use its creative workspace.

Scope and operator

This Privacy Policy applies to the tsurumi website, account, creative workspace, project sharing, and related services.

tsurumi is operated by the tsurumi team. For privacy questions, contact contact@reimei.dev.

Information we collect

Account information includes your email address, display name, profile image, email-verification state, and identifiers associated with the sign-in method you choose.

Content information includes project and session titles, prompts, uploaded images and audio, generated images and videos, reference relationships, filenames, media metadata, and sharing settings.

Security and operation data includes session information, IP address, user-agent information, request timestamps, and error or service logs. We use this data to authenticate requests, limit abuse, and troubleshoot the service.

For purchases, Stripe processes payment details. tsurumi receives order references, the associated user ID, amounts, currency, refund amounts, and payment time. tsurumi does not store your full card number.

How we use information

We use account, session, and organization information to authenticate users, manage organization membership, and enforce project access.

We use prompts, uploaded material, and generation settings to submit requests to the selected generation provider, store results, display them in the workspace, and enable authorized sharing.

We use operational, billing, and usage information to provide support, process purchases and refunds, prevent fraud or abuse, maintain security, and understand aggregate service usage.

Google sign-in

If you choose Google sign-in, Google may provide basic profile information such as your name, email address, profile image, and Google account identifier.

We use this information only to create or access your tsurumi account, display your account identity, and protect the service from abuse. We do not sell Google user data or use it for advertising.

We request only the information needed for sign-in. Google user data is handled in accordance with the Google API Services User Data Policy, including its Limited Use requirements, and is not used by tsurumi to train models.

We do not transfer Google user data to third parties except where needed to provide or secure sign-in, comply with law, or protect users. We do not use it for advertising, credit scoring, or model training.

When information is shared

We share information with service providers that process it on our behalf, only as needed to operate tsurumi. We do not sell personal information or share it for third-party advertising.

Project owners can keep a project private, share it with selected collaborators, or make it available to their organization. Anyone with a current public link can view its shared project and completed outputs until the link is disabled or regenerated.

We may disclose information when required by law or when reasonably necessary to protect users, tsurumi, service providers, or the public from harm, fraud, or security threats.

Service providers

Clerk provides authentication and organization management; Cloudflare provides hosting, object storage, and workflow infrastructure; Neon provides hosted Postgres database infrastructure; and Stripe provides checkout and payment processing.

Generation requests may be sent to BytePlus ModelArk/Seedance, MiniMax, Google Gemini, OpenAI, or Atlas Cloud, depending on the model selected. The request can include the prompt, selected settings, and reference material needed for generation. Each provider processes data under its own terms and privacy policy.

Storage and security

We use reasonable technical and organizational measures, including access controls, encrypted connections, and authorization checks for private project content. No online service can guarantee absolute security.

Private project files are served only after authorization. Public links are intentionally accessible to anyone who has the current link, so do not place information in a public project that you want to keep private.

Retention and deletion

We keep account, project, and generation information while it is needed to provide the service or while the account or project remains active.

Deleting a project starts a deletion workflow that removes its stored media and database records after active work is handled. Copies held by external providers are subject to their retention rules.

You can request account deletion or ask a privacy question by contacting us. We may retain records when necessary for security, fraud prevention, disputes, accounting, or legal obligations.

Your choices and requests

Depending on where you live, you may have rights to request access to, correction of, deletion of, or restrictions on the use of your personal information. Contact contact@reimei.dev and include enough detail for us to locate your account.

You can sign out at any time. Signing out does not delete stored content. If you used Google sign-in, you can also revoke the connection from your Google account settings.

Changes to this policy

We may update this policy as tsurumi changes. We will publish the revised version here, update the date above, and provide additional notice for material changes when appropriate.