ShotStudio

Privacy Policy

Last updated: August 7, 2026

1. Controller

ShotStudio is operated by PRIMECODE SOLUTIONS SRL, CUI 50939602, Trade Register No. J2024044285005, registered office Str. Gramont 38, Sector 4, Bucharest, Romania. It is the data controller for the processing described here. Contact: primecodesolution@gmail.com.

2. What we collect

3. Why we process it

4. Processors we use

Transfers outside the EEA rely on the processors' standard contractual clauses and equivalent safeguards. We may change processors; this page always lists the current ones. We do not sell personal data and we do not use automated decision-making that produces legal effects.

5. Retention

6. Your rights

Under the GDPR you can request access, rectification, erasure, portability of your data, and object to or restrict processing. Write to primecodesolution@gmail.com and we will respond within 30 days. You can also lodge a complaint with the Romanian supervisory authority (ANSPDCP) or the authority in your country of residence.

To leave the waitlist or stop product updates, email us from the address you submitted with the subject “Remove me from the ShotStudio waitlist”.

7. Cookies and local storage

Strictly necessary storage runs without consent: authentication state, abuse protection, and local copies of projects (IndexedDB) in your browser. Firebase App Check may process technical signals to distinguish genuine requests from automated abuse. Google Analytics cookies are set only after you choose "Allow analytics" in the cookie banner; choosing "Essential only" (or ignoring the banner) never loads analytics. You can change your mind any time by clearing this site's data in your browser. We use no advertising or cross-site tracking cookies.

8. Security

All traffic is encrypted (TLS). Data access is isolated per account, agent tokens are stored hashed, and payment data never touches our servers. No method of transmission or storage is 100% secure; we cannot guarantee absolute security, but we notify affected users and authorities of breaches as required by the GDPR.

9. Children

The service is not directed at children under 16.

10. Changes

We may update this policy; the date above reflects the current version. Material changes will be announced in the product.