Legal

Privacy Policy

How FrameGrade handles account, workspace, creator submission, and review data.

Last updated: June 11, 2026

Overview and operator

FrameGrade is a B2B creator-content QA and review service operated by Ricky Shaw. Brands, agencies, and creative teams use FrameGrade to collect creator-submitted videos, process media, generate structured reviews, route approval and revision decisions, and keep review history.

This Privacy Policy explains how FrameGrade collects, uses, shares, and retains information when customers, team members, creators, and visitors use FrameGrade.

Information we collect

Account and user information, such as names, email addresses, login data, authentication details, account settings, and workspace or company details.

Workspace and team information, such as organizations, team members, roles, invite emails, campaign settings, approval modes, product or campaign context, reviewer assignments, and workflow configuration.

Creator information, such as creator names, email addresses, portal link activity, upload session metadata, submission history, revision context, and creator-facing feedback when provided by a customer or creator.

Media and submission information, such as uploaded videos, reference videos, extracted audio, sampled frames or images, thumbnails, transcripts, file names, file types, file sizes, duration, review metadata, scores, rubrics, summaries, feedback, reviewer notes, decision history, and revision history.

Billing information, such as subscription status, plan, review credit usage, purchased credit metadata, Stripe customer and checkout metadata, invoices or payment status, and related billing records. Full payment card details are handled by Stripe and are not stored directly by FrameGrade.

Contact, support, and demo inquiry information, such as name, email, company, subject, message, page URL, user agent, and other information submitted through contact or support forms.

Technical and usage information, such as IP address, browser and device data, logs, cookies, session data, analytics events, rate-limit metadata, and information needed to maintain, secure, and improve the service.

Cookies, sessions, and analytics

FrameGrade uses cookies, local storage, and similar technologies for authentication, session management, theme preferences, security, analytics, and product functionality.

FrameGrade uses analytics services, including Vercel Analytics, to understand product and website usage, diagnose reliability issues, and improve performance.

How we use information

To provide, operate, secure, maintain, and improve FrameGrade.

To authenticate users, manage accounts and workspaces, support role-based access, and enforce workspace-scoped permissions.

To create campaigns, manage upload and invite links, process creator submissions, prepare video playback, generate thumbnails, produce transcripts, create scorecards, generate review feedback, support routing decisions, and preserve review history.

To support manual, hybrid, and automated review workflows, approval decisions, revision requests, reporting, search, activity summaries, support, billing, fraud prevention, abuse prevention, and compliance with legal obligations.

To communicate with customers and users about support requests, billing, product updates, account activity, creator portal links, team invites, and operational notices.

Creator submissions and customer responsibility

Creators may submit videos through tokenized creator portal links without creating normal FrameGrade dashboard accounts. Those links are provided by customers such as brands, agencies, or creative teams.

Customers are responsible for their relationship with creators, including creator contracts, payment, campaign instructions, permissions, releases, and consents. Customers are responsible for obtaining all rights and permissions needed for FrameGrade to host, store, process, transcribe, analyze, display, and provide feedback on creator content.

Creator-submitted information may be visible to the customer workspace, authorized team members, reviewers, and, where applicable, the creator through the creator portal.

AI and media processing

FrameGrade uses automated and AI-assisted processing as part of the product. Uploaded videos and derived data may be processed to extract audio, sampled frames or images, thumbnails, transcripts, campaign context, reference context, metadata, scores, rubrics, feedback, review outputs, and routing support.

FrameGrade may send uploaded media and derived data to AI or model providers, including OpenAI or similar providers, for transcription, audio review, visual and content review, reference comparison, scoring, feedback generation, and review or routing support.

AI/model providers may process this data according to their own service terms and data handling policies. FrameGrade does not claim that AI outputs are perfect, complete, or free from error.

Third-party service providers

FrameGrade uses third-party providers to operate the service. These may include Supabase for authentication, database, and storage; Stripe for billing and payments; Resend for email; Trigger.dev for background jobs; OpenAI or similar providers for AI/model processing; Upstash Redis for rate limiting; Vercel for hosting and analytics; and other providers needed for infrastructure, logging, security, or operations.

These providers may process information as needed to provide services to FrameGrade, operate the product, secure the service, comply with law, or support customer-requested functionality.

How we share information

FrameGrade does not sell personal information. We may share information with service providers needed to operate FrameGrade, process payments, deliver email, host and secure the product, perform media and AI processing, provide analytics, prevent abuse, comply with law, protect rights and security, or act at a customer direction.

Workspace content may be available to owners, admins, reviewers, viewers, creators, or other users according to workspace roles, access rights, portal links, invite links, and product settings.

We may disclose information if required by law, legal process, security investigation, payment dispute, business transfer, or to protect FrameGrade, customers, creators, users, or the public.

Data retention

FrameGrade does not intend to retain full video media forever. Raw uploaded media is temporary and may be removed after processing and routine cleanup. Generated playback or video copies are retained according to plan-based playback retention settings and scheduled cleanup.

Reference videos may remain while they are active reference assets for a campaign. Reference videos are deleted when the associated campaign or reference asset is deleted, subject to normal cleanup timing, backups, logs, and legal or business retention needs.

One thumbnail frame may persist for submission or review history. Transcripts, scores, rubrics, review metadata, creator-facing feedback, decision history, billing records, logs, and support records may persist as business, security, billing, or review records unless deleted through available deletion or account processes or unless deletion is required by law.

Deletion may not be immediate. Cleanup may depend on scheduled jobs, backups, provider systems, logs, security needs, legal obligations, payment records, dispute records, and operational retention requirements.

Security

FrameGrade uses reasonable technical and organizational controls designed to support workspace-scoped access, private upload and review workflows, tokenized creator links, signed upload and playback links where applicable, role-based team permissions, and abuse prevention.

No internet service is perfectly secure. FrameGrade cannot guarantee that unauthorized access, data loss, provider outages, or security incidents will never occur.

Privacy rights and requests

Users may be able to update account information, manage workspace settings, revoke invite or creator portal links, delete certain supported submissions, unsubscribe from certain communications, or contact FrameGrade with privacy requests.

Depending on location, you may have rights to access, correct, delete, restrict, or object to certain processing of personal information. FrameGrade will respond to privacy requests as required by applicable law.

Creators should generally direct requests about campaign participation, payments, releases, or use of creator content to the customer that invited them. FrameGrade may need to coordinate with the relevant customer workspace to respond to certain creator-related requests.

Children's privacy

FrameGrade is not intended for children under 13. Customers must not use FrameGrade to collect or process content from children or minors unless they have all legally required rights, permissions, consents, and releases.

International processing

FrameGrade and its service providers may process information in the United States and other locations where FrameGrade or its providers operate. Those locations may have privacy laws that differ from the laws where you live or work.

Changes to this policy

FrameGrade may update this Privacy Policy from time to time. When we do, we will update the Last updated date on this page. Material changes may also be communicated through the product, email, or another reasonable method.

Contact

For privacy questions, contact FrameGrade at support@framegrade.com.