Privacy Policy
Effective date: May 25, 2026
This Privacy Policy explains how Marozzo ("we", "us") collects, uses, and protects your personal data. We operate from Riihimäki, Finland and comply with the EU General Data Protection Regulation (GDPR).
1. Who We Are
Marozzo is the data controller for personal data processed through this Service. Contact us at [email protected](opens in a new tab) for any privacy-related queries.
2. Data We Collect
Account data: Email address and display name, collected when you register. Your account may also be used to authenticate you on related Falcata services through a single sign-on; in that case the same account identifier is shared with those services. Legal basis: performance of a contract.
Subscription & billing data: Subscription status and billing history. Payment card details are processed directly by Stripe — we never see or store your card number. Legal basis: performance of a contract; legal obligation (financial records).
Usage data: Content you mark as completed or favourite, and comments and reactions you post. Legal basis: performance of a contract.
Search data: When you use the semantic search feature (available to members), your search queries are sent to an external AI service to match relevant content. We do not store your search queries beyond the duration of the request. Legal basis: performance of a contract.
AI chat data: When you use the AI chat feature (available to members), your messages and relevant excerpts of Service content are sent to an external AI provider to generate a response. We do not store the content of your chat messages on our servers; we retain only usage metadata such as token counts, the model used, and automated moderation results, which are used for budget tracking, abuse prevention, and service monitoring. Legal basis: performance of a contract; legitimate interests (abuse prevention and cost control).
Uploaded media: Where the Service permits you to upload video or other media (for example, contributor uploads), the media file and any audio it contains are processed to enable playback, generate previews, and produce transcripts. Audio is sent to a third-party speech-to-text provider, and the resulting transcript may be passed to a large language model for correction and to derive titles, descriptions, and tags. Legal basis: performance of a contract; legitimate interests (improving content discoverability and accessibility).
Notification preferences: In-app notifications about activity on your comments (replies, reactions) and similar events, with per-user opt-out. Legal basis: performance of a contract.
Analytics data: An anonymous, persistent identifier stored in your browser (local storage), a session identifier, interaction events such as page views and checkout attempts, the referring URL or domain that brought you to a page, and impressions and clicks on promotional placements. This data is sent to our own backend — no third-party analytics services are used. Legal basis: legitimate interests (understanding how the Service is used).
Programmatic access data: If you use our public API, MCP server, or CLI, we process the OAuth tokens or personal access tokens you create, together with metadata about API requests (endpoint, timestamp, response status, rate-limit consumption) for security, billing, and abuse prevention. Legal basis: performance of a contract; legitimate interests (security and service integrity).
Security & abuse prevention data: Records of security-relevant events such as suspicious login activity, detected prompt-injection attempts against AI features, abuse of programmatic access, and any warnings, suspensions, or bans applied to your account or API access, together with the reason and supporting evidence. Legal basis: legitimate interests (protecting the Service, its users, and third parties from abuse); legal obligation where applicable.
Technical data: IP address and standard server logs, retained for security and operational purposes. Legal basis: legitimate interests.
3. Third Parties
We share data with the following processors only to the extent necessary to operate the Service:
- Stripe — payment processing (stripe.com/privacy(opens in a new tab))
- Convex — backend database and serverless infrastructure (convex.dev/privacy(opens in a new tab))
- Bunny.net — video delivery, font delivery, and file hosting (bunny.net/privacy(opens in a new tab))
- Hetzner Online GmbH — compute infrastructure (Gunzenhausen, Germany) hosting background workers, including the media transcription worker (hetzner.com/legal/privacy-policy(opens in a new tab))
- Resend — transactional email delivery such as login links and account notifications (resend.com/legal/privacy-policy(opens in a new tab))
- Voyage AI — AI-powered text processing used to provide semantic search functionality; receives content text and search queries but no personal profile data (voyageai.com/privacy-policy(opens in a new tab))
- Cartesia AI, Inc. — speech-to-text processing applied to the audio of uploaded media to generate transcripts; receives the audio stream but no personal profile data (cartesia.ai/legal/privacy.html(opens in a new tab))
- Anthropic — large language model provider used to generate AI chat responses, correct media transcripts, and derive titles, descriptions, and tags from transcripts; receives the relevant inputs (chat messages, transcript text, content excerpts) but no personal profile data, and does not use this data to train its models (anthropic.com/legal/privacy(opens in a new tab))
Some content pages may embed videos from YouTube using privacy-enhanced mode (youtube-nocookie.com). When you view an embedded video, YouTube (Google) may receive your IP address and browser information. See policies.google.com/privacy(opens in a new tab).
We do not sell your data to third parties.
4. International Data Transfers
Stripe, Convex, Resend, Voyage AI, Cartesia, and Anthropic are based in the United States. Data transfers to these providers are covered by Standard Contractual Clauses (SCCs) approved by the European Commission, ensuring your data receives an equivalent level of protection. Bunny.net (Slovenia) and Hetzner (Germany) process data within the EU/EEA.
5. Cookies & Local Storage
We use a single HTTP-only session cookie to keep you logged in. This cookie is not accessible to scripts and is deleted when your session ends.
We use browser local storage for two purposes:
- Authentication preference — remembering whether you use password or email-link login
- Anonymous analytics ID — a persistent random identifier used to count unique visitors without tracking you across other sites
No advertising or third-party tracking cookies are used.
6. Data Retention
| Data | Retention |
|---|---|
| Account & usage data | Until you delete your account |
| Financial records | 6 years (Finnish accounting law) |
| Server logs | 90 days |
| Analytics data (including AI chat usage metadata, referrers, promo interactions) | 24 months, then aggregated |
| Uploaded media and derived transcripts | Until deleted by the uploader or the account is deleted |
| Programmatic access tokens and request logs | Tokens until revoked or the account is deleted; request logs 90 days |
| Security & abuse records (warnings, suspensions, bans, injection events) | Until the account is deleted, or longer where necessary to prevent repeat abuse or comply with a legal obligation |
7. Your Rights
Under GDPR you have the right to:
- Access — request a copy of your personal data. You can export your data at any time from your profile settings using the self-service data export feature.
- Rectification — correct inaccurate data
- Erasure — request deletion of your data. You can delete your account from your profile settings; you will receive confirmation when deletion is complete.
- Portability — receive your data in a machine-readable format (included in the self-service data export)
- Restriction — limit how we process your data
- Objection — object to processing based on legitimate interests
To exercise any of these rights, or if you need assistance beyond the self-service options, contact [email protected](opens in a new tab). We will respond within 30 days.
8. Supervisory Authority
You have the right to lodge a complaint with the Finnish Office of the Data Protection Ombudsman (Tietosuojavaltuutetun toimisto) at tietosuoja.fi(opens in a new tab).
9. Changes
We may update this policy from time to time. Material changes will be notified by email or in-app notice. The effective date at the top of this page indicates when the policy was last revised.