Glowora
Privacy policy
Last updated: 24 September 2026
Glowcut is the internal content library of Glowora. It stores raw creator videos, cuts them into short clips and labels them, so the Glowora team and invited editors can find and use the right footage. This policy explains what personal data Glowcut processes, why, and what your rights are. Glowora is the controller of this data.
Who can use Glowcut
Glowcut is not a public service. Only people who are invited by a Glowora admin can log in: Glowora employees and the editors, freelancers and agencies we work with.
What we collect
- Account data: your name, email address, role (owner, admin or editor) and, if you add one, a profile photo. If you choose a password, we store only a secure hash of it.
- Sign-in with Google: when you choose "Continue with Google" we receive your name, email address and Google profile picture. We use these only to check that you were invited and to log you in. We do not receive your Google password and we do not access your mailbox, contacts or other Google data.
- Usage data: which clips you edited, approved, shared or downloaded, and when you logged in. We keep this so the team can see who changed what.
- Content: raw videos from creators who work with Glowora, the clips cut from them, AI-generated descriptions and labels (for example scene, product, age group, setting), and creator names and photos added by the team.
- Cookies: one essential session cookie that keeps you logged in. We do not use tracking or advertising cookies.
How we use it
- To give you access to the library and keep it secure.
- To organize, analyze and label creator content so it can be used for Glowora's marketing.
- To send you invitations and login links by email.
We process this data because it is necessary to provide Glowcut to you and our team (contract), and because we have a legitimate interest in organizing our own marketing content efficiently. Content from creators is used under the agreements Glowora has with them.
Google user data
Glowcut's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
- Sign-in: we only use your basic profile (name, email address, profile picture) to identify you.
- Google Drive: a Glowora admin can connect Google Drive with read-only access, so Glowcut can import videos from the folders that admin selects. Glowcut does not change or delete anything in Drive.
- We do not sell Google user data, do not use it for advertising, and do not share it with third parties except the service providers listed below that are needed to run Glowcut. People do not read this data unless that is needed for security, to fix a problem, or to comply with the law.
Service providers
We use a small number of providers who process data on our behalf, under a data processing agreement:
- Railway: hosting of the application and storage of videos and data.
- Anthropic: AI analysis of still frames from videos to generate clip descriptions and labels. Anthropic does not use this data to train its models.
- Google (sign-in, Google Drive) and Adobe Frame.io: sources the videos are imported from.
- Resend: sending invitation and login emails.
Some of these providers are located outside the European Economic Area. In that case the transfer is covered by the European Commission's standard contractual clauses or an equivalent safeguard.
How long we keep data
Account data is kept while you have access and deleted within 90 days after your access ends. Videos and clips are kept as long as Glowora needs them for its marketing, or until a creator's agreement requires removal. Login links and invitations expire automatically.
Your rights
You can ask us to see, correct, delete or export your personal data, or object to how we use it. Email support@glowora.nl and we will respond within one month. If you are not satisfied, you can file a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens) or the authority in your own country.
Security
Access is by invitation only, all traffic is encrypted (HTTPS), passwords are stored as hashes, and roles limit what each person can see and change.
Changes
If we change this policy, we will update the date at the top of this page.
Contact
Glowora · support@glowora.nl