Security & Privacy
Your trust is our foundation. This policy details how Ball Engine Studios protects and handles your personal information on ballengine.app.
1. Introduction and Scope
Ball Engine Studios ("we", "us", or "our") is committed to protecting your privacy. Ball Engine Studios operates ballengine.app as a website and brand entity. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website at ballengine.app and use our Creator Studio simulation software (collectively, the "Services").
This policy applies to all users of our Services globally, including those in the United Kingdom (UK), European Economic Area (EEA), and the United States (US). We process personal data in accordance with the GDPR, the UK GDPR, the Data Protection Act 2018, and relevant US state privacy laws (such as the CCPA/CPRA).
2. Information We Collect
A. Account & Newsletter Information
- Basic CredentialsEmail address, username, display name, and passwords provided during registration.
- Account SettingsAccount type, active plan, billing status, and profile preferences.
- Consent DataNewsletter subscription status (opt-in/opt-out preferences), consent timestamps, consent sources (e.g. signup flow, settings panel, wishlist), and communication preferences.
- Uploaded Creator AssetsPhysics project configuration files, custom audio files, MIDI sequences, and exported video metadata.
B. Technical & Program Information
- Network & Location MetadataIP addresses and corresponding approximate geographic regions (country/state/city).
- Device & Browser detailsUser agent, browser type, operating system, screen resolution, and hardware capabilities.
- Referral & Origin DataReferrer headers, UTM marketing tags, and source paths (e.g., direct, YouTube, Instagram).
- Beta Tester DataBeta enrollment status, diagnostic reports, hardware configuration details, testing usage metrics, and survey responses (followers, platform preferences, creator experience).
3. How & Why We Use Your Data
We process your personal information for the following specific and transparent reasons:
4. Legal Basis (UK/EEA/Global)
Required to initialize accounts, process premium subscriptions, and host projects.
Required for tax tracking, invoicing standards, and anti-fraud protocols under corporate law.
To monitor system loads, enhance the rendering engine, optimize frame rates, and defend the network.
Where you have explicitly opted into email marketing campaigns or wishlist surveys. You may withdraw consent at any time.
5. Data Sharing & Third Parties
We share specific information with trusted third-party service providers solely to operate our software. We only document services actually integrated and active on the platform.
Web hosting, serverless edge functions, and secure storage for simulation saves, custom audio, and video exports.
Non-intrusive CAPTCHA checks to block bots on login, sign-up, and password reset screens.
Payment processor handling checkout, subscriptions, security checks, and billing queries.
Transactional email infrastructure, delivering OTPs, invoice details, and opt-in updates.
Authentication service enabling secure, passwordless account creation and profile details mapping.
Optional, user-authorized integration to upload and schedule your rendered videos to your own YouTube channel. See Section 11 for full details.
Optional, user-authorized integration to publish your rendered videos to your own TikTok account. See Section 12 for full details.
Optional, user-authorized integration to publish your rendered videos to your own Facebook Pages. See Section 13 for full details.
Optional, user-authorized integration to publish your rendered videos to your own Instagram Business/Creator account, separate from Facebook, no Page required. See Section 13b for full details.
Optional, user-authorized integration to publish your rendered videos to your own Threads profile, you sign in directly with Threads. See Section 13c for full details.
Optional, user-authorized integration to publish your rendered videos as video pins to your own Pinterest boards. See Section 13d for full details.
Optional, user-authorized integration to publish your rendered videos as video posts to your own X (formerly Twitter) profile. See Section 13e for full details.
Optional, user-authorized integration to publish your rendered videos as Spotlights to your own Snapchat Public Profile. See Section 13f for full details.
6. Data Retention Policies
We store collected information for varying durations depending on utility, legal requirements, and account status:
| Data Category | Retention Duration | Purpose & Trigger |
|---|---|---|
| Account Data | Lifetime of the Account | Retained to provide services. Deleted within 30 days of explicit account closure requests. |
| Project Configs & Assets | Active Account Term | Cloud saves are preserved. Inactive accounts (no logins for 18 months) may have projects archived or deleted. |
| Invoices & Billing Info | 7 Years | Mandated for corporate accounting, audits, and VAT taxation audits. |
| Technical & IP Logs | 90 Days | Deleted automatically. Kept for traffic monitoring, security logs, and rate-limiting diagnostics. |
| Consent & Preference Records | 5 Years post-account closure | Retained to prove regulatory compliance (GDPR/CCPA opt-in consent histories). |
| Beta & Survey Submissions | 2 Years post-program close | Kept for development feedback analysis and product optimization history. |
7. Your Rights (GDPR, UK GDPR & US State Laws)
Request a copy of all personal information we store about you in a clear format.
Correct inaccurate username details, display names, or preference parameters.
Request deletion of your profile, projects, and email records where no legal override exists.
Decline marketing newsletters, or withdraw consent to wishlist survey data processing.
Export raw simulation project files and account history logs for portability.
US residents will not face service throttling or price hikes for exercising privacy rights.
8. Cookies & Local Storage Policy
We use cookies and local storage (such as IndexedDB and localStorage) to run core session features, remember simulation configuration presets, verify payments with our billing processor, and analyze origin traffic parameters.
Essential login tokens, anti-CSRF protections, and checkout verification cannot be disabled. To learn more about how we utilize cookies and how you can manage your preferences, please consult our detailed Cookie Policy.
9. Beta Tester Data & Diagnostics
By participating in our Beta Program, we collect supplementary demographic information (demographics, followers, creator platforms) and technical runtime data (average frame rates, canvas WebGL memory logs, physics calculation thread timeouts) to debug simulation engines.
For comprehensive information regarding beta program terms, responsibilities, and data collection procedures, please view our full Beta Testing Terms page.
9b. Affiliate Program Data
If you join our affiliate program, we process the information in your application (age confirmation, social platform links, follower counts, country) and, upon approval, your PayPal email to send payouts. When you share your referral link, a first-party ball_ref cookie records the referral: it is only set after you accept cookies, and the referral is permanently associated with the new account at signup.
We share aggregate statistics (counts and earnings) with affiliates; we never disclose the personal information of referred users to them. For full details on commissions, payouts, and your obligations, see the Affiliate Program Terms.
10. Children's Privacy
Service Audience: BallEngine is a software platform. Our Services are not directed to, or intended for, children under the minimum age required to consent to data processing in their jurisdiction (such as children under 13 in the United States, or under 16 in certain European jurisdictions). Users must meet these age requirements to create an account or use our Services.
Data Collection and Account Removal: We do not knowingly collect, store, or process personal information from children below the applicable age threshold. If we discover that a minor under the minimum age has provided us with personal data, we will take steps to delete that information and close the associated account as quickly as possible.
Parent and Guardian Rights: If you are a parent or legal guardian and believe your child has provided us with personal information without your consent, please contact us immediately at support@ballengine.app. We will investigate reasonable requests and take appropriate actions to purge the data and close any corresponding account.
11. YouTube API Services & Google User Data
BallEngine integrates with YouTube API Services to let you publish and schedule your rendered videos directly to your own YouTube channel. This integration is entirely optional. You may choose to connect your YouTube account, and you may use every other feature of BallEngine without ever connecting it.
BallEngine only accesses your YouTube information after you explicitly authorize it through Google's OAuth 2.0 consent screen, and only accesses the specific permissions (scopes) you grant during that flow. We never receive or store your Google password. By using the YouTube integration, you agree to be bound by the YouTube Terms of Service.
A. YouTube & Google Data We Access
We only access and store the information necessary to provide the publishing feature you request:
- Google Account IdentifierYour Google account email address and profile name (via the userinfo.email and userinfo.profile scopes), used to identify the connected account.
- Channel InformationYour YouTube channel ID and channel title, retrieved once at connection to display which channel is linked.
- OAuth Access & Refresh TokensThe OAuth access token, refresh token, token type, granted scopes, and expiry timestamp issued by Google, required to perform uploads on your behalf without re-prompting each time.
- Upload & Scheduling MetadataFor each video you choose to publish: the video title, description, tags, scheduled publish date/time, privacy status (private / unlisted / public), and the resulting YouTube video ID and API response.
We do not request, download, or store your existing video library, analytics, comments, subscribers, or watch history. We only access what is required to upload and schedule the specific videos you submit.
B. How We Use This Data
C. Storage & Security of Google Data
OAuth credentials are stored securely in our access-controlled database and are transmitted only over encrypted HTTPS/TLS connections. Tokens are kept encrypted at rest wherever supported by our infrastructure, access is restricted to the systems and personnel required to operate the publishing feature, and Google user data is never intentionally exposed publicly or made available to other users.
D. Data Refresh & 30-Day Retention
In line with the YouTube API Services Developer Policies (Section III.E.4), we do not store or display data retrieved from the YouTube API for longer than 30 days without refreshing it:
- Your authorized channel information (channel ID and title) is automatically re-fetched from the YouTube API and refreshed at least once per day whenever the integration is in use, so the data you see is always current.
- Records derived from the API for videos you publish or schedule (including the returned YouTube video ID and API response) are automatically and permanently deleted from our systems once they are older than 30 days.
- We do not retain YouTube view counts, subscriber counts, or other statistics as Authorized or Non-Authorized Data beyond this 30-day window.
You can remove all stored YouTube data at any time by disconnecting your account (see Section E below), which takes effect immediately.
E. Limited Use & Data Sharing Commitment
BallEngine's use of information received from Google APIs adheres to the Google API Services User Data Policy , including its Limited Use requirements. We only use Google user data to provide and improve the features you explicitly request, and never for unrelated purposes.
- ✕ We do not sell YouTube user data.
- ✕ We do not share YouTube data with advertisers or use it to build advertising profiles.
- ✕ We do not use Google user data to train generalized AI/ML models.
- ✕ We do not use it for unauthorized analytics or transfer it except as permitted under Google's policies.
- ✓ We only share it when legally required, to provide the service you requested, or with the infrastructure providers strictly necessary to operate the feature (see Section 5).
F. Your Control, Revoking Access & Deletion
You remain in full control of the connection at all times. You may:
- Disconnect your YouTube account from within the BallEngine YouTube Publishing page, which removes the stored tokens and channel details for that connection.
- Reconnect later at any time by re-authorizing through Google's consent screen.
- Revoke BallEngine's access directly with Google at any time by visiting myaccount.google.com/permissions . Revoking access immediately prevents any further API access by BallEngine.
- Request permanent deletion of all stored YouTube/Google data, or of your entire BallEngine account, by emailing support@ballengine.app with the subject "YouTube Data Deletion".
When you disconnect, or when you delete your BallEngine account, the associated OAuth tokens and connection records are deleted from our active systems within 30 days. Residual copies may persist in encrypted backups for up to 90 days before they are automatically overwritten, after which they are permanently unrecoverable. Deleting data from BallEngine does not delete videos already published to your YouTube channel, those remain under your control on YouTube.
Your use of Google and YouTube services through BallEngine is also governed by the Google Privacy Policy. Questions about the YouTube integration or Google data can be sent to support@ballengine.app.
12. TikTok API Services & User Data
BallEngine integrates with the TikTok Content Posting API to let you schedule and publish your rendered videos directly to your own TikTok account. This integration is entirely optional.
BallEngine only accesses your TikTok information after you explicitly authorize it through TikTok's OAuth consent screen, and only accesses the specific permissions you grant during that flow. By using the TikTok integration, you agree to be bound by the TikTok Terms of Service and TikTok Privacy Policy .
A. TikTok Data We Access
We only access and store the information necessary to provide the publishing feature:
- TikTok Account IdentifierYour TikTok display name and profile info used to identify the connected account.
- OAuth Access TokensThe OAuth tokens issued by TikTok, required to perform uploads on your behalf.
- Upload MetadataThe video title, scheduled time, hashtags, and resulting TikTok video ID.
We do not request, download, or store your existing TikTok video library, analytics, comments, or direct messages.
B. How We Use This Data
C. Data Refresh & 30-Day Retention
We do not store or display data retrieved from the TikTok API for longer than 30 days without refreshing it. Your authorized profile information is automatically re-fetched and refreshed at least once per day while the integration is in use, and records we derive from the API for videos you publish (including the returned TikTok video ID and API response) are automatically and permanently deleted once they are older than 30 days.
D. Your Control, Revoking Access & Deletion
You may disconnect your TikTok account from BallEngine at any time. When you disconnect, the associated OAuth tokens are deleted from our systems. You can also revoke access directly from your TikTok account's security settings. Deleting data from BallEngine does not delete videos already published to your TikTok account.
To request permanent deletion of all stored TikTok data, email support@ballengine.app with the subject "TikTok Data Deletion".
13. Facebook (Meta Graph API) API Services & User Data
BallEngine integrates with the Meta Graph API to let you publish and schedule your rendered videos directly to your own Facebook Pages. This integration is entirely optional and is separate from the Instagram integration described in Section 13b below, connecting Facebook does not connect Instagram, and vice versa.
BallEngine only accesses your Facebook information after you explicitly authorize it through Facebook's OAuth consent screen, and only accesses the specific permissions you grant during that flow. By using this integration, you agree to be bound by the Meta Terms and Meta Privacy Policy .
A. Facebook Data We Access
We only access and store the information necessary to provide the publishing feature:
- Pages You ManageThe IDs and names of the Facebook Pages you manage, used to let you choose which Page to publish to.
- OAuth Access & Page TokensThe long-lived user access token and Page access tokens issued by Meta, required to perform uploads on your behalf.
- Upload MetadataThe video caption, target Page, and the resulting Facebook post ID and API response.
We do not request, download, or store your existing Facebook content library, analytics, comments, or direct messages.
B. How We Use This Data
C. Data Refresh & 30-Day Retention
We do not store or display data retrieved from the Meta Graph API for longer than 30 days without refreshing it. Your authorized Pages are automatically re-fetched and refreshed at least once per day while the integration is in use, and records we derive from the API for videos you publish (including the returned post IDs and API responses) are automatically and permanently deleted once they are older than 30 days.
D. Your Control, Revoking Access & Deletion
You may disconnect your Facebook account from BallEngine at any time, which deletes the stored tokens and Page details. You can also revoke BallEngine's access directly from your Facebook Business Integrations settings. Deleting data from BallEngine does not delete content already published to your Facebook Page.
To request permanent deletion of all stored Facebook data, email support@ballengine.app with the subject "Meta Data Deletion", or see our Data Deletion page.
13b. Instagram (Instagram API with Instagram Login) & User Data
BallEngine integrates with the Instagram API with Instagram Login to let you publish your rendered videos directly to your own Instagram account as Reels. This integration is entirely optional and completely separate from the Facebook integration above, you authenticate directly with Instagram, and no Facebook account or Facebook Page is required or connected. It requires an Instagram Business or Creator account, and only connects when you explicitly click "Connect Instagram".
BallEngine only accesses your Instagram information after you explicitly authorize it through Instagram's own login/consent screen, and only accesses the specific permissions you grant. We never receive your Instagram password. By using this integration, you agree to be bound by the Instagram Terms of Use and Instagram Privacy Policy .
A. Instagram Data We Access
We only access and store the information necessary to provide the publishing feature:
- Instagram Account IdentityYour Instagram professional account's user ID, username, and account type (Business or Creator), used to confirm the connection, display which account is linked, and target it when publishing.
- OAuth Access TokenThe long-lived Instagram access token issued to us when you authorize the connection, required to publish on your behalf without re-prompting each time.
- Upload MetadataThe video caption and the resulting Instagram media ID and API response for each Reel you choose to publish.
We do not request, download, or store your existing Instagram media library, followers, insights, comments, or direct messages.
B. How We Use This Data
C. Data Refresh & 30-Day Retention
We do not store or display data retrieved from the Instagram API for longer than 30 days without refreshing it. Your authorized account information is kept current while the integration is in use, and records we derive from the API for videos you publish (including the returned Instagram media ID and API response) are automatically and permanently deleted once they are older than 30 days.
D. Your Control, Revoking Access & Deletion
You may disconnect your Instagram account from BallEngine at any time from the Publish page, which immediately deletes the stored access token and account details. You can also revoke BallEngine's access directly from your Instagram Apps and Websites settings. Deleting data from BallEngine does not delete content already published to your Instagram account.
To request permanent deletion of all stored Instagram data, email support@ballengine.app with the subject "Instagram Data Deletion", or see our Data Deletion page.
13c. Threads (Threads API by Meta) & User Data
BallEngine integrates with the Threads API by Meta to let you publish your rendered videos directly to your own Threads profile as video posts. This integration is entirely optional and completely separate from the Facebook and Instagram integrations above, you authenticate directly with Threads, and no Facebook or Instagram connection inside BallEngine is required. It only connects when you explicitly click "Connect Threads".
BallEngine only accesses your Threads information after you explicitly authorize it through Threads' own login/consent screen, and only accesses the specific permissions you grant (basic profile and content publishing). We never receive your Threads password. By using this integration, you agree to be bound by the Threads Terms of Use and the Meta Privacy Policy .
A. Threads Data We Access
We only access and store the information necessary to provide the publishing feature:
- Threads Account IdentityYour Threads account's user ID and username, used to confirm the connection, display which account is linked, and target it when publishing.
- OAuth Access TokenThe long-lived Threads access token issued to us when you authorize the connection, required to publish on your behalf without re-prompting each time.
- Upload MetadataThe post text and the resulting Threads media ID and API response for each video you choose to publish.
We do not request, download, or store your existing Threads posts, followers, insights, replies, or direct interactions.
B. How We Use This Data
C. Data Refresh & 30-Day Retention
We do not store or display data retrieved from the Threads API for longer than 30 days without refreshing it. Your authorized account information is kept current while the integration is in use, and records we derive from the API for videos you publish (including the returned Threads media ID and API response) are automatically and permanently deleted once they are older than 30 days.
D. Your Control, Revoking Access & Deletion
You may disconnect your Threads account from BallEngine at any time from the Publish page, which immediately deletes the stored access token and account details. You can also revoke BallEngine's access directly from your Threads account settings . Deleting data from BallEngine does not delete content already published to your Threads profile.
To request permanent deletion of all stored Threads data, email support@ballengine.app with the subject "Threads Data Deletion", or see our Data Deletion page.
13d. Pinterest (Pinterest API) & User Data
BallEngine integrates with the Pinterest API to let you publish your rendered videos directly to your own Pinterest boards as video pins. This integration is entirely optional and only connects when you explicitly click "Connect Pinterest" and authorize BallEngine on Pinterest's own consent screen.
BallEngine only accesses the specific permissions you grant (reading your profile and boards, and creating pins). We never receive your Pinterest password. By using this integration, you agree to be bound by the Pinterest Terms of Service and Pinterest Privacy Policy .
A. Pinterest Data We Access
We only access and store the information necessary to provide the publishing feature:
- Pinterest Account IdentityYour Pinterest username, used to confirm the connection and display which account is linked.
- Board List (not stored)The names and IDs of your boards, fetched live each time the publish screen loads so you can choose which board a pin goes to. We do not store your board list at rest.
- OAuth Access & Refresh TokensThe Pinterest tokens issued when you authorize the connection, required to publish on your behalf without re-prompting each time.
- Upload MetadataThe pin title/description, target board ID, and the resulting Pinterest pin ID and API response for each video pin you choose to publish.
We do not request, download, or store your existing pins, followers, analytics, or messages.
B. How We Use This Data
C. Data Refresh & 30-Day Retention
We do not store or display data retrieved from the Pinterest API for longer than 30 days without refreshing it. Board data is fetched live and never stored. Records we derive from the API for pins you publish (including the returned pin ID and API response) are automatically and permanently deleted once they are older than 30 days.
D. Your Control, Revoking Access & Deletion
You may disconnect your Pinterest account from BallEngine at any time from the Publish page, which immediately deletes the stored tokens and account details. You can also revoke BallEngine's access directly from your Pinterest connected apps settings. Deleting data from BallEngine does not delete pins already published to your boards.
To request permanent deletion of all stored Pinterest data, email support@ballengine.app with the subject "Pinterest Data Deletion", or see our Data Deletion page.
13e. X (X API, formerly Twitter) & User Data
BallEngine integrates with the X API (formerly the Twitter API) to let you publish your rendered videos directly to your own X profile as video posts. This integration is entirely optional and only connects when you explicitly click "Connect X" and authorize BallEngine on X's own consent screen.
BallEngine only accesses the specific permissions you grant (reading your basic profile, uploading media, and creating posts). We never receive your X password. By using this integration, you agree to be bound by the X Terms of Service and the X Privacy Policy .
A. X Data We Access
We only access and store the information necessary to provide the publishing feature:
- X Account IdentityYour X account's user ID and username, used to confirm the connection and display which account is linked.
- OAuth Access & Refresh TokensThe X tokens issued when you authorize the connection, required to publish on your behalf without re-prompting each time. X access tokens are short-lived and are refreshed automatically while the connection is in use.
- Upload MetadataThe post text and the resulting X post ID and API response for each video you choose to publish.
We do not request, download, or store your existing posts, followers, timelines, direct messages, or analytics.
B. How We Use This Data
C. Data Refresh & 30-Day Retention
We do not store or display data retrieved from the X API for longer than 30 days without refreshing it. Your authorized account information is kept current while the integration is in use, and records we derive from the API for videos you publish (including the returned X post ID and API response) are automatically and permanently deleted once they are older than 30 days.
D. Your Control, Revoking Access & Deletion
You may disconnect your X account from BallEngine at any time from the Publish page, we revoke the token with X and immediately delete the stored tokens and account details. You can also revoke BallEngine's access directly from your X connected apps settings. Deleting data from BallEngine does not delete posts already published to your X profile.
To request permanent deletion of all stored X data, email support@ballengine.app with the subject "X Data Deletion", or see our Data Deletion page.
13f. Snapchat (Marketing API, Public Profile) & User Data
BallEngine integrates with the Snapchat Marketing API (Public Profile) to let you publish your rendered videos directly to your own Snapchat Public Profile as Spotlight videos. This integration is entirely optional and requires a Snapchat Business account with a Public Profile. It only connects when you explicitly click "Connect Snapchat".
BallEngine only accesses your Snapchat information after you explicitly authorize it through Snapchat's own login/consent screen, and only accesses the specific permissions you grant. We never receive your Snapchat password. By using this integration, you agree to be bound by the Snap Business Services Terms and the Snap Privacy Policy .
A. Snapchat Data We Access
We only access and store the information necessary to provide the publishing feature:
- Public Profile IdentityYour Snapchat Public Profile ID and display name (and, where applicable, your Business organization ID), used to confirm the connection, display which profile is linked, and target it when publishing.
- OAuth Access & Refresh TokensThe OAuth tokens issued by Snapchat when you authorize the connection, required to publish on your behalf without re-prompting each time.
- Upload MetadataThe Spotlight description and the resulting Snapchat media ID, Spotlight ID, and API response for each video you choose to publish.
We do not request, download, or store your friends list, chats, Snaps, Memories, existing Spotlight or Story content, or analytics.
B. How We Use This Data
C. Data Refresh & 30-Day Retention
We do not store or display data retrieved from the Snapchat API for longer than 30 days without refreshing it. Your authorized profile information is kept current while the integration is in use, and records we derive from the API for videos you publish (including the returned Snapchat media ID, Spotlight ID, and API response) are automatically and permanently deleted once they are older than 30 days.
D. Your Control, Revoking Access & Deletion
You may disconnect your Snapchat account from BallEngine at any time from the Publish page, which immediately deletes the stored tokens and connection details. You can also revoke BallEngine's access directly from your Snapchat account permissions . Deleting data from BallEngine does not delete Spotlights already published to your Public Profile.
To request permanent deletion of all stored Snapchat data, email support@ballengine.app with the subject "Snapchat Data Deletion", or see our Data Deletion page.
14. Contact Information
Questions about your data, security, YouTube / TikTok / Meta API access, or a data deletion request? Our dedicated team is ready to assist you at support@ballengine.app.