Apple iOS Application

Privacy Policy

Story Flow — Auto Story Generator
Effective Date: June 26, 2026 · Last Updated: June 26, 2026

Developer: Cyborgate
Bundle ID: com.cyborgate.videogenerator.aivideo.storyflow
Platform: Apple iOS (iPhone & iPad)
Contact: support@cyborgate.com

Section 1

Introduction

Welcome to Story Flow ("we," "us," "our," or the "App"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our iOS mobile application, Story Flow Auto Story Generator, available on the Apple App Store.

We are committed to protecting your privacy and handling your data in an open and transparent manner. Please read this Privacy Policy carefully. By downloading, accessing, or using Story Flow, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy. If you do not agree with the terms of this Privacy Policy, please do not access or use the App.

This Privacy Policy complies with the Apple App Store Review Guidelines (Section 5.1 — Privacy), Apple's requirements for apps that use Sign in with Apple, and applicable data protection regulations.

Section 2

Information We Collect

We collect information in the following categories depending on how you interact with Story Flow:

2.1 Account & Authentication Data

Data TypeWhen CollectedPurpose
Apple Sign-In token & relay emailWhen you sign in with AppleAccount creation & authentication
Email address & password hashWhen you sign up via emailAccount creation & authentication
Anonymous Firebase user IDWhen you use the app as a guestSession management & data association
Firebase Authentication UIDOn sign-in (all methods)Unique user identification across sessions

2.2 User-Generated Content & Activity

  • Text prompts and generation settings you submit (style, duration, number of characters, aspect ratio, model selection)
  • AI-generated scripts, character descriptions, character portrait images, and video files
  • Generation history metadata (timestamps, job status, job IDs)
  • Likes and interactions on the Discover public feed
  • Notification preference settings (on/off toggle)

2.3 Purchase & Financial Data

  • Apple App Store transaction identifiers and product identifiers for in-app credit purchases (storyflow300, storyflow800, storyflow1800)
  • Credit balance, credit adjustments, and daily gift claim timestamps stored in Firebase Realtime Database
Important: All payments are processed by Apple through the App Store. We never receive, store, or have access to your credit card number, bank account details, or any payment instrument information.

2.4 Device & Technical Data

  • Device type, operating system version, and app version
  • Firebase Analytics events (screen views, feature usage, crash diagnostics)
  • Push notification token (if you enable notifications)
  • IP address (collected automatically by our server and Firebase)

2.5 Information We Do NOT Collect

  • We do not access, scan, or upload your photo library, contacts, calendar, microphone, or camera
  • We do not use the Identifier for Advertisers (IDFA) or participate in ad-tracking
  • We do not collect location data (GPS, Wi-Fi, or Bluetooth)
  • We do not collect health, fitness, financial, or biometric data
Section 3

How We Use Your Information

We use the information we collect for the following purposes:

  • Account Management: To create and maintain your account, authenticate your identity, and manage your sign-in sessions via Firebase Authentication and Apple Sign-In
  • AI Content Generation: To process your prompts and settings through our AI pipeline and deliver generated scripts, character portraits, and videos
  • Credits & Purchases: To manage your credit balance, process daily gift claims, verify in-app purchases through Apple, and restore previously purchased credit packs
  • History & Continuity: To store your generation history so you can revisit, resume, or retry past jobs
  • Discover Feed: To power the public Discover feed where users can browse and like community-created videos (only content you choose to publish)
  • Notifications: To send you push notifications when background generation tasks complete or fail (only when you have enabled notifications)
  • Analytics & Improvement: To understand how the App is used, identify bugs, improve performance, and develop new features
  • Security & Compliance: To detect fraud, abuse, or unauthorized access and to comply with applicable legal obligations
Section 4

AI Processing & Prompt Data

Story Flow uses artificial intelligence to generate story scripts, character portraits, and videos from text prompts you provide. When you submit a prompt, it is transmitted to our backend server, where it is processed by third-party AI models to produce your content.

Your prompts, generation settings, and resulting output (scripts, images, videos) are stored on our servers so that you can:

  • View and manage your generation history
  • Resume or retry failed generation jobs
  • Optionally publish finished videos to the Discover feed
User Responsibility: Do not include sensitive personal information (such as Social Security numbers, medical data, financial account numbers, or passwords) in your prompts. Any information you submit in a prompt may be processed by AI systems and stored in connection with your account.

We do not use your prompts or generated content to train AI models. Your content is processed solely to fulfill your generation request and provide the App's services to you.

Section 5

Apple Sign-In & Authentication Methods

Sign in with Apple

When you use Sign in with Apple, we receive only the information Apple shares based on your Apple ID privacy settings. This may include your name and either your real email address or Apple's private relay email address. We use this information solely for account creation and authentication. We respect Apple's "Hide My Email" feature and will communicate with you through the relay address if you choose to hide your email.

Email & Password

If you sign up with email, your password is handled by Firebase Authentication and is never stored in plaintext. We do not have access to your raw password.

Guest / Anonymous Access

You may use Story Flow without creating an account. In this case, an anonymous Firebase user ID is generated. Data created during a guest session is associated with that anonymous ID. If you later sign in with Apple or email, your data may be linked to your permanent account. Guest data is retained until you sign out, delete the app, or it is removed according to our retention practices.

Section 6

In-App Purchases & Credits

Story Flow uses a credit-based system. Credits are consumable digital tokens used to generate scripts, characters, and videos. You receive a starter balance of free credits upon account creation and can claim additional free credits daily.

Credit packs are available as one-time, non-recurring in-app purchases processed entirely by Apple through the App Store. The available credit packs are:

PackCreditsPrice (USD)
Starter300$5.99
Popular800$12.99
Studio1,800$19.99

We store your credit balance and transaction metadata (product ID, transaction ID, and timestamp) in our Firebase Realtime Database to prevent duplicate crediting and to support purchase restoration. We do not store Apple payment credentials or billing information.

Credits have no monetary value, are non-transferable, non-refundable (except as required by Apple's refund policies or applicable law), and cannot be exchanged or cashed out. All billing inquiries, refund requests, and payment disputes should be directed to Apple through your App Store account settings.

Section 7

Photo Library Access (iOS Permission)

Story Flow requests access to your iOS photo library only when you choose to save a generated video to your device. This permission is used exclusively to write (save) the video file to your Camera Roll or Photos library.

  • We do not read, scan, index, or upload any existing photos or videos from your library
  • We do not access your library in the background
  • You may deny or revoke this permission at any time in iOS Settings → Story Flow → Photos

The permission prompt reads: "Allow StoryFlow to save generated videos to your photo library."

Section 8

Push Notifications

Story Flow may request permission to send push notifications. If you grant permission, we use Apple Push Notification Service (APNs) to notify you when:

  • A background script or character generation job has completed
  • A background video rendering job has completed or failed

We do not send marketing, promotional, or advertising notifications. You can disable notifications at any time from within the App (Profile → Notifications toggle) or in iOS Settings → Story Flow → Notifications.

Your notification preference (enabled/disabled) is synced to your account in Firebase so it persists across devices.

Section 9

Third-Party Services & Data Sharing

We integrate with the following third-party services to operate Story Flow. Each service processes your data according to its own privacy policy:

ServiceProviderData SharedPurpose
Firebase AuthenticationGoogle LLCAuth tokens, email, UIDUser authentication & session management
Firebase Realtime DatabaseGoogle LLCCredits, preferences, gift statusReal-time data sync & storage
Firebase AnalyticsGoogle LLCApp events, device infoUsage analytics & crash diagnostics
Apple App Store / StoreKitApple Inc.Transaction & product IDsIn-app purchase processing
Apple Sign-InApple Inc.Auth token, name, emailAccount creation via Apple
AI Generation BackendCyborgate (self-hosted)Prompts, settings, generated mediaScript, character & video generation

We Do NOT:

  • Sell your personal information to any third party
  • Share your data with advertising networks or data brokers
  • Use third-party tracking SDKs, IDFA, or fingerprinting
Section 10

Discover Feed & Public Content

Story Flow features a "Discover" feed where completed videos may be browsed by other users. Content that appears in Discover is publicly visible, including:

  • The generated video
  • Character portrait images
  • The story title
  • Style and aspect ratio metadata
  • Like count

Your email address, account name, Firebase UID, and other personally identifiable information are not displayed publicly in the Discover feed. Only the content itself and aggregate engagement data (like count) are visible.

Section 11

Data Storage & Retention

Your data is stored in the following locations:

  • Firebase (Google Cloud): Account data, credit balances, notification preferences, daily gift timestamps
  • Our Backend Server: Generation history, scripts, character images, rendered videos, job metadata
  • Your Device (Local): Cached videos, onboarding state, active job state, notification preferences (local copy)

We retain your account and generation data for as long as your account is active or as needed to provide the services, comply with legal obligations, resolve disputes, and enforce our agreements.

You may clear local generation history from within the App. For full account-level data deletion, contact us at support@cyborgate.com and we will process your request within 30 days.

Section 12

Data Security

We implement reasonable administrative, technical, and organizational security measures designed to protect your personal information from unauthorized access, alteration, disclosure, or destruction. These measures include:

  • Firebase Authentication with secure token handling
  • Encrypted data transmission (HTTPS/TLS) between the App and our servers
  • Firebase Security Rules limiting data access to authenticated users
  • Server-side validation of purchase receipts to prevent fraud

However, no method of electronic transmission or storage is 100% secure. While we strive to use commercially acceptable means to protect your information, we cannot guarantee its absolute security.

Section 13

Your Rights & Choices

You have the following rights and choices regarding your data:

ActionHow
Sign out of your accountProfile tab → Sign Out
Toggle push notificationsProfile tab → Notifications toggle, or iOS Settings
Clear local generation historyProfile tab → Clear History
Revoke photo library accessiOS Settings → Story Flow → Photos
Revoke notification permissioniOS Settings → Story Flow → Notifications
Restore App Store purchasesCredits paywall → Restore Purchases
Request data access or portabilityEmail support@cyborgate.com
Request data correctionEmail support@cyborgate.com
Request account & data deletionEmail support@cyborgate.com

Depending on your jurisdiction, you may have additional rights under applicable data protection laws, including the right to lodge a complaint with a supervisory authority.

Section 14

Children's Privacy

Story Flow is not directed to children under the age of 13 (or the applicable age of digital consent in your jurisdiction). We do not knowingly collect, solicit, or maintain personal information from children under 13.

If you are a parent or guardian and believe that your child has provided personal information to us, please contact us at support@cyborgate.com. If we learn that we have collected personal information from a child under 13, we will promptly take steps to delete that information.

Users between 13 and 18 must have the permission of a parent or legal guardian to use Story Flow.

Section 15

International Data Transfers

Story Flow is operated from servers that may be located in different countries. If you use the App from outside the country where our servers are located, your information may be transferred to, stored in, and processed in countries with data protection laws that differ from those in your country of residence.

By using Story Flow, you consent to the transfer of your information to these countries. We take steps to ensure that your data is treated securely and in accordance with this Privacy Policy regardless of where it is processed.

Section 16

Additional Rights for EU/EEA Users (GDPR)

If you are located in the European Union or European Economic Area, you have the following additional rights under the General Data Protection Regulation (GDPR):

  • Right of Access: Request a copy of the personal data we hold about you
  • Right to Rectification: Request correction of inaccurate personal data
  • Right to Erasure: Request deletion of your personal data ("right to be forgotten")
  • Right to Restrict Processing: Request that we limit the processing of your data
  • Right to Data Portability: Receive your data in a structured, commonly used, machine-readable format
  • Right to Object: Object to the processing of your personal data
  • Right to Withdraw Consent: Withdraw consent at any time where processing is based on consent

Our legal bases for processing your data include: performance of a contract (providing App services), legitimate interests (improving the App, ensuring security), and consent (where applicable). To exercise any of these rights, contact us at support@cyborgate.com.

Section 17

Additional Rights for California Users (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):

  • Right to Know: Request disclosure of the categories and specific pieces of personal information we have collected about you
  • Right to Delete: Request deletion of personal information we have collected from you
  • Right to Non-Discrimination: We will not discriminate against you for exercising your CCPA rights

We do not sell personal information as defined by the CCPA. We do not share personal information for cross-context behavioral advertising. To submit a CCPA request, email support@cyborgate.com.

Section 18

Apple-Specific Provisions

In accordance with Apple's requirements for apps distributed through the App Store:

  • This Privacy Policy is between you and Cyborgate, not Apple Inc. Apple is not responsible for the App or its privacy practices
  • We comply with Apple's App Store Review Guidelines Section 5.1 (Privacy) including data collection transparency, purpose limitation, and user consent requirements
  • We honor Apple's "Hide My Email" and private relay features for Sign in with Apple users
  • The App does not use App Tracking Transparency (ATT) or the IDFA, as we do not track users across other companies' apps or websites
  • All in-app purchases use Apple's StoreKit framework and are subject to Apple's terms and privacy practices
  • Apple and its subsidiaries are third-party beneficiaries of our Terms of Service and may enforce applicable provisions
Section 19

Apple App Privacy Details ("Nutrition Labels")

The following summarizes the data we report to Apple for the App Privacy section on the App Store:

CategoryData TypesLinked to Identity?Used for Tracking?
Contact InfoEmail addressYesNo
IdentifiersUser ID (Firebase UID)YesNo
PurchasesPurchase history (credit packs)YesNo
User ContentPrompts, generated scripts & mediaYesNo
Usage DataProduct interaction (analytics events)NoNo
DiagnosticsCrash data, performance dataNoNo

Data used to track you: None. Story Flow does not track you across other companies' apps or websites.

Section 20

Cookies & Similar Technologies

Story Flow is a native iOS application and does not use browser cookies. Firebase and our backend server may use standard server-side session identifiers and authentication tokens to manage your sessions. These are functional in nature and are not used for advertising or tracking purposes.

Section 21

Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make material changes:

  • We will update the "Last Updated" date at the top of this policy
  • We may provide notice within the App (such as an in-app dialog or banner)
  • We will post the updated policy at the same URL

Your continued use of Story Flow after the revised Privacy Policy becomes effective constitutes your acceptance of the changes. We encourage you to review this policy periodically.

Section 22

Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

  • Email: support@cyborgate.com
  • Developer: Cyborgate
  • App Name: Story Flow — Auto Story Generator
  • Bundle ID: com.cyborgate.videogenerator.aivideo.storyflow
  • Platform: Apple iOS (iPhone & iPad)

We will respond to all privacy-related inquiries within 30 days. For data access, correction, or deletion requests, we may need to verify your identity before processing your request.