Privacy Policy

How vox.style handles your account, product URLs, recordings and the material behind your videos.

Last updated: September 5, 2026

01

Who is responsible

FUTUREFORGE LABS SRL operates vox.style and is the controller of personal data used to manage accounts, provide support, secure the service and administer our relationship with you. Contact us at hello@vox.style for privacy requests.

This policy covers the vox.style website and its project-creation service. For personal data an organisation supplies solely for processing on its instructions, that organisation may be the controller and we may act as its processor. That distinction depends on the actual use and applicable agreement. Contact us about data-processing terms before using the service for such business data.

02

Information we handle

  • Account information: your email address, account identifier and records needed for email-link sign-in and sessions.
  • Project information: titles, briefs, prompts, intended audiences, language, format, duration, product URLs, scripts, instructions, feedback and approvals.
  • Materials and outputs: files you upload, including voice-over recordings; material processed in production workflows; generated images, audio, videos and captions; and associated file metadata.
  • Website analysis: rendered text, page metadata, screenshots, public images or logos and the product summary extracted from a URL you ask us to analyze. These may include personal data appearing on that page.
  • Operational information: IP addresses and request details in service logs, error records, security and rate-limit identifiers, job status, provider request references and usage estimates.
  • Communications: your email address, message, attachments and the project or order details you choose to include when contacting us.

The starter does not currently accept subscription payments or collect card details. If purchases become available, we will explain the payment provider and related data handling before collection.

Some data comes directly from you; some is created as you use the service or comes from the public webpage you specify. A voice recording is treated as project content, not as a voiceprint used to identify or authenticate you.

03

Why we use it

We do not treat accepting the Terms or reading this policy as consent to unrelated marketing. You can object to processing based on legitimate interests; we assess that request against the applicable legal conditions.

04

AI processing and service providers

Only providers involved in the selected feature need to receive its relevant data. Saving a brief or uploading a recording does not itself start a paid video generation. Requesting website analysis or a production operation can send the relevant project information to an external provider.

We also need hosting, database, file-storage and email infrastructure to run the service. Project inputs and intermediate files are retained in application storage; public marketing assets are separate from account-scoped project files. Provider use varies by configuration, so the list above does not mean every provider receives every project.

The current application does not train a vox.style model on your projects. This is not a promise of zero retention or identical training terms across external providers: their contractual settings and applicable policies govern their own handling. Contact us before submitting material that requires a particular provider restriction or retention arrangement.

We may disclose information when legally required, to protect legal rights or address abuse, or to professional advisers bound by appropriate duties. We do not sell your personal data or make customer projects public as a condition of using the service.

05

Processing outside your country

External AI, delivery and support providers may process information outside your country, including outside the European Economic Area. We do not promise that all project data stays in Romania or the EU.

Transfers that are subject to GDPR restrictions require an applicable legal transfer mechanism, such as an adequacy decision or appropriate contractual safeguards, with additional measures where necessary. The relevant mechanism depends on the provider, recipient and account arrangement. Contact hello@vox.style to ask about the recipients, locations and safeguards relevant to your use, including how to obtain a copy of applicable safeguards.

06

Cookies and website measurement

The current landing page has no third-party advertising pixels or external analytics destination. Its interaction events are local browser events. Campaign parameters such as utm_source may be carried from a landing URL into the starter URL; request URLs may also appear in server logs. Videos and fonts are served from the site rather than third-party embeds.

When email sign-in is enabled, the service uses essential first-party cookies:

  • __Host-vox_login: binds a sign-in request to its browser, with a 15-minute lifetime; cleared after successful sign-in.
  • __Host-vox_session: maintains your signed-in session for up to 7 days; cleared on sign-out.

Local HTTP development uses the equivalent names vox_login and vox_session. These are sign-in cookies, not advertising cookies. Blocking them prevents that sign-in flow from working. Cookie expiry is separate from deletion of stored security records. If we introduce optional tracking that requires consent, we will explain it and request consent before enabling it.

07

How long information is kept

We keep project content while it is needed to provide your saved projects and requested production work. Archiving a project does not delete its files, scripts or related records. The current starter has no self-service permanent deletion control or automatic project-expiry schedule.

You can request deletion or account closure at hello@vox.style. We assess and carry out eligible requests, including relevant project files and processor-held copies where applicable. We may retain limited information where required by law or necessary for an unresolved dispute, security investigation or legal claim, and will explain any applicable exception.

Account and authentication records are kept as needed for account access and security. A sign-in link stops working after 15 minutes and a session expires after 7 days; expiry does not by itself promise immediate removal of every underlying database or log record. Support correspondence is kept while needed to handle the enquiry and related follow-up. Operational logs are kept according to troubleshooting, security and legal needs, rather than a published fixed deletion interval.

Where backup copies exist, deletion from active storage may precede expiry of those copies. External providers may have their own applicable retention periods. This service does not currently promise a universal deletion deadline for every backup or provider copy. We can explain the scope and status of a specific deletion request.

08

Your privacy choices and rights

Depending on the circumstances, you can request access to your personal data, correction, erasure, restriction of processing, or a portable copy of information you provided. You can object to processing based on legitimate interests and withdraw consent where consent is the basis. These rights are subject to the conditions and exceptions in applicable law.

Email hello@vox.style and describe your request. Use the account email where possible and include a project reference if relevant. We may ask for proportionate information to verify identity or authority; do not send identity documents unless we ask for them through an appropriate channel.

We normally respond to GDPR rights requests within one month. Where the law permits an extension because of complexity or the number of requests, we will explain the reason within that first month. Requests are normally free of charge, subject to statutory exceptions.

You can complain to your competent data-protection authority, including Romania’s ANSPDCP, or the authority where you live, work or believe an infringement occurred. You do not need to contact us before exercising that right.

09

Security, sensitive material and other people

We use account-scoped access checks for project resources, time-limited sign-in credentials, and technical controls designed to restrict unauthorised access. No online system is risk-free. Tell us promptly if you suspect a security issue; do not include passwords, API keys or live sign-in links in an ordinary support message.

Do not upload sensitive personal information that is unnecessary for the story, private credentials or confidential material you are not authorised to disclose. Where your projects include other people’s personal information, you are responsible for having a lawful basis, providing required information and respecting their rights. Contact us before submitting special-category personal data or projects that require a tailored data-processing agreement.

The service is intended for adults aged 18 or over. We do not knowingly offer accounts to children. If you believe a child has provided account information, contact us so we can investigate and take appropriate action.

AI is used to help create and review content. The current service does not use your voice to authenticate you or make solely automated decisions about you that produce legal or similarly significant effects.

10

Updates to this policy

We will revise this policy when our practices change and update the date above. We will provide additional notice of material changes where required. New purposes that require a different legal basis or consent will be addressed before that processing begins.

For questions about this policy or a project’s data handling, contact FUTUREFORGE LABS SRL at hello@vox.style.

Back to top ↑