XFilm AI

XFilm beta · Updated 2026-10-02

XFilm Privacy Notice

What we process, why providers receive data, and how to request help.

Operator: Working Premise Labs, Inc.
1522 Western Avenue, STE 94166, Seattle, WA 98101, United States
Support and privacy: contact@workingpremise.ai

Information and purposes

We process account and verified-login information to control access; prompts, briefs, uploaded media, project versions and outputs to provide your tools; job, credit and receipt records to charge accurately and resolve uncertain results; and support messages to respond to requests. Hosting and security systems also process technical information such as network details, request timing and errors.

We record the terms revision and adult eligibility declaration associated with an account. This is not identity-document verification and we do not ask for a birth date for this declaration. Payment-card entry occurs in Stripe Checkout; our application keeps transaction identifiers, amounts and statuses needed for accounting and support.

Providers and processing locations

Our Providers page identifies the services used for hosting, identity, storage, payments, inference, rendering and operational communications. A requested AI action can transmit relevant prompts, media, audio or project context to the provider serving it. Open-weight model availability does not mean processing stays on your device.

We use Sentry for technical error reports and PostHog for limited service-usage statistics, including account growth, production outcomes, token counts, credit consumption and payment amounts. Usage statistics use a derived account identifier rather than your email address or sign-in provider identifier; they remain pseudonymous personal information. These reporting paths are configured to exclude prompts, briefs, media, email addresses, authentication credentials, page URL query strings, fragments and user-specific paths. Providers may process connection metadata needed to receive a request; IP-address retention is disabled in the reporting projects.

Browser usage measurement starts only for signed-in accounts that have acknowledged the current policy version. It uses no analytics cookies or persistent browser storage and respects Global Privacy Control and Do Not Track for browser measurement. Necessary service, security and accounting records are maintained separately. Contact us to ask about or object to usage reporting; applicable privacy rights remain available. Better Stack checks public service availability and receives service-completion heartbeats without customer records.

Provider retention and training rules can differ by API and endpoint. We do not promise universal zero retention, universal no-training terms or US-only processing. In particular, fal identifies exceptions for some third-party model APIs. Review the selected model and provider information before submitting sensitive material.

Private projects are not automatically published as a public gallery. Account-authorized users and personnel or providers with a service, security, support or legal need may access relevant information. Access controls and private storage reduce risk but cannot eliminate it. A download or temporary media link should still be treated as sensitive.

Retention and requests

We keep active project data to provide the service and retain relevant job, payment, consent and security records for reconciliation, disputes and legal obligations. The beta does not promise a universal fixed deletion deadline or automatic expiry of every uploaded object. Archiving a project is not complete erasure: recovery audio, unresolved-job evidence and backups may remain.

You may email us to request access, correction, export or deletion of your information, or to close your account. We will verify account control, review the request, and explain any records that must remain and why. Applicable legal response deadlines and rights still apply. A request is handled by support, not by an automatic deletion button. Do not assume that restoring or deleting a project immediately removes all copies held by service providers or backups.

If you believe a child has supplied information or you need to report an unauthorized image or voice use, contact us with enough information to locate the material, without resending sensitive media unnecessarily. Depending on your location, you may also have rights to complain to a privacy regulator.

Browser storage and updates

The application uses local browser storage for language and interface preferences and session storage for submission recovery. Sign-in and security services use necessary authentication and protection technologies. Clearing browser storage can remove a local recovery record without cancelling the server-side job. Global Privacy Control and Do Not Track disable our browser usage measurement; they do not remove necessary service, security or accounting records. You can contact us about other applicable choices.

We date this notice and will provide appropriate notice of material changes. A notice update does not substitute for consent or another lawful basis where one is required. Please contact the operator below with a privacy question.

View the current catalog · Your account