Need to delete your account? See How to delete your account (section 7 also summarises it).
\n\n1.1 Account information — email address (your login ID and the only way we can reach you), password (stored only as a salted hash, never in plain text), nickname, and an optional avatar image you choose to upload (JPEG, max 2 MB).
1.2 Content you create — the prompt text you type or select (style, subject, environment, lighting, camera, mood, quality, motion terms), generation settings (resolution, duration, loop, quality, reference-image mode), the optional reference photo you pick with the system photo picker, and the resulting video and cover image together with their owner.
1.3 Credits, purchases and referral records — your credit balance and every ledger entry (spend, refund on failure, reward, top-up, referral bonus); purchase orders (product ID, order ID, Google Play purchase token, state, verification result). We never see your payment details (card number, billing address) — payment is handled entirely by Google Play Billing.
1.4 Community and social data — works you publish to Discover (with tags and cover), follow relationships, friend relationships (only created with mutual consent) and friend requests, likes, and aggregated per-day usage of a work (how many times it was used and for how long it was on screen).
1.5 Usage statistics (used for levels and leaderboards) — number of creations, number of times you used someone else's wallpaper, number of likes, time in foreground, and time a wallpaper was displayed.
1.6 Crash logs (sent automatically so we can fix crashes) — timestamp, thread name, app package name and version, device brand and model, Android version and API level, exception type and stack trace. These are sent to our own server, not to any third-party crash analytics service, and they contain no email address, no account ID, no work content and no photos.
1.7 Server logs and generation audit — access logs (time, IP address, User-Agent, request path, status code) and a per-job generation audit (task ID, model, resolution, frame count, durations, status, source IP and User-Agent). Used only for security (credential-stuffing and abuse prevention), billing reconciliation and troubleshooting.
1.8 What we do NOT collect — advertising ID (GAID), Android ID / IMEI or any device unique identifier; contacts, SMS, call logs or precise location; microphone or camera (the app never requests those permissions); photos in your gallery that you did not select (the app uses the Android system photo picker, which hands over only the single image you choose). The app's permissions are limited to network, network state, notifications, foreground service, wake lock, setting wallpaper, and storage on Android 8 only (for exporting a video).
2. How we use it — to run the app's core features (generate a video from your prompt and reference photo, let you download it, set it as a live wallpaper, publish it to the community), to operate accounts and credits (login, credit spend and refunds, purchase verification), for community features (follows, friends, likes, usage stats and levels), for security and reliability (rate limiting, abuse prevention, troubleshooting), and for moderation (deciding whether a submission may be public). We do not use this information for advertising or profiling, sell or rent it to third parties, or reuse it for purposes unrelated to this policy.
3. Reference photos vs. results
3.1 Your reference photo is destroyed after use. The photo you upload is used for that single generation only. Once it has been delivered to a generation machine, the intermediate copy on our server is deleted immediately, and the copy on the generation machine is destroyed when the job ends (success or failure). If a machine becomes unreachable and destruction cannot be confirmed, the system retries until destruction is confirmed (each task's destruction state is visible in our internal audit). We read only the photo's orientation flag in order to rotate it correctly; we do not read or store its location or other metadata.
3.2 Your generated works stay on our servers as your wallpaper library until you delete them in the app (deleting also removes the files from our servers). You can export any video to your phone's gallery at any time, after which it lives on your own device. Un-sharing a public submission from Discover does not delete your files.
4. Where data lives and how long we keep it — our servers and our own generation GPU machines (a domain will replace the current IP address; the URL of this page is the canonical location). Reference photos: destroyed after use (see 3.1). Avatar: kept until you change or reset it, or ask us to delete it. Generated videos and covers: kept until you delete them in the app. Account, credit and audit records: kept while the account exists, then handled as described in section 7. Crash logs and access logs: kept for troubleshooting and security (crash logs carry no account identifier and cannot be linked back to you; ask us if you want a given period removed).
5. Who we share with — Google Play: payments are processed by Google Play; we receive the purchase token and verify the transaction (including refunds) with Google. Your card details never reach us. Our own GPU generation servers: prompts, settings and the reference photo are sent to these self-hosted machines to run inference; they are not sent to any third-party model API or cloud provider. Legal requirements: only in response to a legally binding request, and only to the minimum extent necessary. Beyond that we never sell, rent or hand your personal information to any third party, and we embed no advertising or analytics SDK.
6. Your rights — view and edit your nickname, avatar, level, credits and credit history in the Profile tab; delete an individual work from your library (files are removed from the server as well); export a video to your phone's gallery; change or reset your avatar; log out; delete your account (section 7); and ask questions or complain using the contact details in section 9.
7. Deleting your account (including when you cannot log in) — In the app: Me → Settings → Delete Account; this is the fastest route. If you cannot log in: email us from your registered address to [email protected] with the subject "Delete my account" and we will verify ownership and delete it. See the dedicated page How to delete your account. What is deleted: your email, nickname, avatar, referral code and password (the account row is irreversibly "tombstoned" — the email is replaced with a placeholder address and the password with an unusable value); all login tokens are invalidated so you can no longer sign in; your generation records (prompts, settings, reference-image features, generation audit) and all work files (videos, covers, thumbnails, reference-image folder, avatar); public submissions with their likes and moderation tags; favourites; follows, friends and friend requests; usage statistics and level data. What is kept in anonymised form: the credit ledger (reconciliation), completed purchase order records (reconciliation, anti-fraud, tax), the version record of the agreement you accepted at registration, referral reward attribution and work-usage audit — after deletion these hang off an internal ID only and contain no directly identifying information (no email, no nickname), and are deleted once the statutory period expires. You can register again with the same email afterwards, starting from scratch (past works, level and credit history are not restored).
8. Children — the app is not directed to children (under 13, or a higher age where your local law provides one). We do not knowingly collect children's personal information and will delete it if we learn we have. If you are a parent or guardian who believes a child has provided us with information, please contact us.
9. Updates and contact — when this policy changes we update the version and effective date at the top of this page; material changes are announced in the app. Contact: [email protected] (if no mailbox is shown here, use the developer contact address listed on our Google Play store page — that address is always up to date). Full deletion instructions: /delete-account.