Privacy Policy
Last updated September 2026
vyds is operated by Vyds LLC, a Delaware limited liability company ("vyds", "we", "our", or "us"). This policy explains what information we collect when you use vyds, why we collect it, who we share it with, how long we keep it, and the choices and rights you have. It covers the web application at vyds.io, video sharing links at vyds.app, the desktop applications for macOS and Windows, and the Chrome browser extension (together, the "Service").
If you have questions or want to exercise any right described here, email privacy@vyds.io.
1. A short version
- We collect what we need to run a screen recording service: your account details, your recordings and the information attached to them, billing status from Stripe, and technical data about how the Service is used.
- Your recordings belong to you. We do not sell your personal information, we do not use your recordings for advertising, and we do not use your content to train AI models.
- We use a small number of service providers to run vyds. Section 5 lists every one of them and what they receive.
- If you use vyds through a workspace, your workspace's administrators can act on your account. Section 4 explains what that means, including account locking.
- You can download your recordings at any time, and you can ask us to delete your account and everything in it.
2. Information we collect
Account information. When you sign in with Google, we receive your name, email address, and profile picture from Google. We never see your Google password.
Billing information. If you subscribe to a paid plan, Stripe collects your payment details directly on Stripe's pages. We receive your billing name and email, your subscription status, and your payment history. We never store card numbers.
Recordings and content. Everything you create with vyds: video and audio recordings, screenshots, thumbnails, titles, drawings and annotations you add in the editor, and the sharing settings you choose. Recordings made with the desktop app or extension also include a small file of cursor movement data used to render smooth zooms and cursor effects. If you are on a plan with AI features and you ask for a transcript, we store the transcript, including word timings. If you ask for a summary or document, we store what was generated.
Comments on shared videos. Anyone who can view a shared video can leave a comment or reaction. If you comment, we store the name you enter, the email address you enter if you choose to give one, the comment itself, and the point in the video it refers to. You do not need a vyds account to comment.
Viewing activity on shared videos. When someone watches a video you shared, we record that a view happened, how much of the video was watched, the page that linked to it, and the browser type. To count unique viewers without storing their address, we store a shortened, salted hash of the viewer's IP address rather than the address itself. This is pseudonymous, not anonymous: it cannot be turned back into an address, but it is consistent for the same viewer. We show video owners aggregate view counts and watch percentages, never a viewer's identity.
Workspace administration records. If you belong to a workspace, we keep a record of the administrative actions your workspace's administrators take on member accounts. For an account lock, that record includes the administrator's identity, the identity of the affected member, the email domain the administrator asserted authority over, the text of their attestation, and the time of the action. We keep this record when a lock goes through, and when one is refused for failing our email domain checks, and we keep it for as long as we may need it to answer a dispute about the action.
Support and bug reports. If you send a bug report from the desktop app, we receive the description you type, an optional screenshot, and a diagnostic log from the app. Before the log leaves your computer, the app removes email addresses and sign-in tokens from it. If you email us, we keep the correspondence.
Technical and usage data. Like every online service, we receive your IP address, browser and operating system information, and the time and pages of each request. We use this to run the Service, protect it from abuse, limit request rates, and fix errors. If you accept analytics cookies, we also collect usage data as described in section 9.
Google Drive. On the free plan, recordings are saved to your own Google Drive. If you connect Drive for saving, we ask Google for permission to create files in your Drive (the "drive.file" permission), which lets us see and manage the files vyds creates there. We store a token from Google so we can keep saving to your Drive without asking each time. If your workspace sets up Drive import, we ask separately for read access to Drive (the "drive.readonly" permission), described under "Importing recordings from Google Drive" below. You can revoke either permission at any time from your Google account settings or from vyds settings.
Importing recordings from Google Drive. A workspace can connect a Drive folder, such as a Google Meet recordings folder, so new meeting recordings appear in vyds automatically. This uses a broader Google permission ("drive.readonly"), and we ask for it only when you set up an import. Because of how Google's change feed works, Google notifies us about changes across the connected account's Drive, not only the chosen folder. We filter those signals on our servers, act only on video files in the folder you chose, and discard the rest without storing them. For each imported recording we store a link: the file's name, identifier, timestamps, and duration. The video itself stays in your Drive and is not copied to vyds. To create a transcript we read the video's content from your Drive; we keep the transcript, not the video. Imported recordings get a transcript, and a summary if requested, the same way recorded ones do, and they follow the same retention and deletion rules as other recordings in your workspace. Disconnecting the folder or revoking the permission stops the watching and importing. Recordings already imported stay in your workspace until they are deleted.
Recordings of other people. An imported meeting recording can include the voice, image, and words of people who are not vyds users and never agreed to our terms. The workspace that imports a recording is responsible for having the right to record and import it. If you appear in a recording that someone imported into vyds and you want it addressed, email privacy@vyds.io.
3. How we use information
We use the information we collect to:
- Provide, maintain, and improve the Service
- Store, play, and share your recordings the way you have chosen
- Process payments and manage subscriptions
- Send transactional email: welcome and setup messages, view notifications, reminders before recordings expire, billing and plan notices, and workspace invitations, and daily summaries of imported recordings (each has an unsubscribe link)
- Respond to support requests and bug reports
- Administer workspaces and teams, and carry out actions workspace administrators take on member accounts
- Detect, investigate, and prevent abuse, fraud, and security incidents
- Understand how the Service is used, in aggregate, so we can improve it
- Comply with legal obligations
AI features. Transcripts, summaries, and documents are generated only when you ask for them. To produce them we send your recording's audio to a speech recognition provider and, for summaries and documents, the resulting transcript to a language model provider. Both are listed in section 5. They process your content only to return the result to you. We do not use your recordings, transcripts, or generated content to train AI models, and we do not allow our providers to use them to train theirs.
Google user data. vyds' use of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements. In plain terms: we use Google user data only to provide the features you see in vyds; we never use it for advertising; we do not let humans read it except with your permission, for security, or where the law requires; we do not use it to train AI models; and we share it only with the service providers that deliver the feature you asked for (Deepgram for transcripts, Anthropic for summaries), under terms that limit them to that purpose.
We do not sell your personal information, and we do not share it for cross-context behavioral advertising. We do not use your recordings for advertising.
4. Workspace administration
Your administrator can act on your account. If you use vyds through a workspace, the administrators of that workspace can manage your seat and take the administrative actions described in our Terms of Service. When they do, we act on their instruction rather than yours.
Account locking. If your account is registered to an email domain that an organization owns, an administrator of that organization can lock the account when you leave. Locking disables sign-in, turns off sharing for the account's videos, and transfers those videos to a workspace member the administrator designates. The transfer covers every recording and screenshot stored with vyds on that account, including ones you never shared with your workspace. Items already in your Trash are not transferred; they are removed on the normal deletion schedule. Videos you exported to your own Google Drive are not transferred, because we cannot move files between Google Drive accounts. Sharing links stop working when the lock runs, though a viewer who loaded a video in the hour before the lock may be able to finish watching it. The same window applies to sign-in: someone already signed in when the lock runs can keep access for up to an hour before their session ends.
Before an administrator can do this, they must attest that their organization owns the email domain on the account and that they are authorized to revoke access for accounts on that domain. We record that attestation and rely on it. We do not independently verify domain ownership. Accounts on common consumer email providers such as gmail.com cannot be locked.
We will tell you. We email you at the address on the account when it is locked.
Keep personal recordings in a personal account. An account registered to an email address your employer controls can be taken over by your employer. If a recording matters to you personally, record it on an account registered to an email address you control.
Data processing agreements. If your organization needs a data processing agreement covering its workspace's use of vyds, email legal@vyds.io.
5. Who we share information with
We share personal information only as described here. We never sell it.
Service providers. These companies process data on our behalf to run vyds. Each processes it under terms that limit it to processing data for us and require it to protect that data.
| Provider | What it does for vyds | What it receives |
|---|---|---|
| Supabase | Sign-in and our main database | Account details, recording information, transcripts and generated content, comments, viewing activity, workspace records, support data |
| Vercel | Hosts the web application and API | Every request to vyds.io and vyds.app, including IP address and browser details |
| Cloudflare | Stores recordings and serves them to viewers (R2 storage) | Video and audio files, screenshots, thumbnails, cursor data, bug report screenshots, brand logos, and viewer IP addresses when a video is fetched |
| Stripe | Payments and subscriptions | Your email address, billing name, and payment details you enter on Stripe's pages; card numbers never touch vyds |
| Sign-in; saving recordings to your own Google Drive; importing recordings from Drive folders your workspace connects; site analytics if you accept analytics cookies | Sign-in: your name, email, and picture. Drive: the recordings you save there, to your own Drive; for imports, vyds reads video files from the folders your workspace connects. Analytics: see section 9 | |
| Deepgram | Speech-to-text for transcripts (AI features) | The audio of a recording you ask to transcribe, including recordings imported from Google Drive |
| Anthropic | Summaries and documents from transcripts (AI features) | The title and transcript of a recording you ask to summarize, including recordings imported from Google Drive |
| Resend | Sends our email | Your email address and name, plus the content of each message, which can include recording titles and view counts |
| Sentry | Error and crash monitoring for the web app and desktop app | Error reports with technical details about the failure, your device and operating system, and the app version. We configure Sentry not to collect personal details, but error reports from your browser go to Sentry directly, so Sentry sees your IP address. Desktop bug reports include the description you typed |
| Upstash | Rate limiting to protect against abuse | Your IP address and, when signed in, your account id, kept as short-lived counters |
| GitHub | Hosts desktop app updates | When the desktop app checks for or downloads an update, GitHub sees your IP address and app version |
People you share with. When you share a video by link, anyone with the link can watch it, and it may be viewed by people you did not anticipate if the link is forwarded. You can turn sharing off or set a password at any time. When you share a video with your workspace, its members can view it.
Your workspace. If you use vyds through a workspace, its administrators can see who is in the workspace, manage your seat, and take the actions described in section 4.
Legal reasons. We may disclose information if required by law, subpoena, or court order, or if we believe in good faith that disclosure is needed to protect the rights, property, or safety of vyds, our users, or others.
Business transfers. If vyds is acquired or merges with another company, or sells substantially all of its assets, your information may transfer as part of that transaction. We will tell you before your information becomes subject to a different privacy policy.
6. Where your information is stored and how we protect it
Vyds LLC is based in the United States, and our service providers store and process information in the United States and in other countries where they operate. If you use vyds from outside the United States, your information will be transferred to, stored in, and processed in the United States. For transfers from the European Economic Area, the United Kingdom, and Switzerland, we rely on the EU-US Data Privacy Framework and its UK and Swiss extensions where a provider is certified, and on Standard Contractual Clauses otherwise.
All connections to vyds use TLS. Recordings in Cloudflare R2 are encrypted at rest. Our database enforces row-level access rules so that one user's data is not visible to another. Access to production systems is limited to people who need it to operate the Service. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
7. How long we keep information
- Your account and recordings: for as long as your account is active, subject to the plan limits below.
- Recording lifetime by plan: on the Pro plan, recordings stored with vyds move to Trash after 365 days; on the Plus plan, after 90 days; starred recordings are exempt up to your plan's starred limit. Recordings saved to your own Google Drive on the free plan have no expiry because we do not hold them. Recordings imported from Google Drive follow the same lifecycle as recordings made with vyds; we hold the link details and the transcript, and the video stays in your Drive. We email you before a recording expires.
- Trash: a recording you delete, or that expires, sits in Trash for 30 days and can be restored. After 30 days it is permanently deleted from our systems, including the video file.
- Closed accounts: when you close your account, we delete your account information and recordings within 30 days. Workspace administration records, described in section 2, are kept after an account is deleted, with the deleted account's identity removed from them, because they are the evidence of what we were asked to do and on what basis.
- Billing records: kept for up to seven years as required by tax and accounting law.
- Technical logs and error reports: kept for a limited period, at most 90 days, then deleted.
- Rate-limit counters: minutes.
- Aggregated statistics that do not identify anyone may be kept after the underlying data is deleted.
8. Your choices and rights
Everyone can:
- Access the information in your account at any time by signing in, or ask us for a copy of the personal information we hold about you.
- Correct your account details in settings.
- Download your recordings at any time. They are standard video files.
- Turn off sharing or revoke a link at any time.
- Delete individual recordings, or close your account and have everything deleted as described in section 7.
- Withdraw analytics consent at any time using the "Cookie preferences" link in the footer.
- Unsubscribe from non-essential email using the link in any message. We will still send messages needed to run your account, such as billing notices and security alerts.
To exercise any of these rights, contact us at privacy@vyds.io. We may need to verify that a request comes from the account holder before we act on it. We will respond within 30 days.
If your account has been locked by a workspace administrator, you still have these rights, and you can still exercise them even though you can no longer sign in. Write to us at privacy@vyds.io from the email address on the locked account, or from another address if you can otherwise show the account was yours. We will act on your request for the personal information we hold about you. Videos that were transferred to your organization are held under that organization's control, so for those we will pass your request to the organization and confirm to you that we have done so.
If you are in the European Economic Area, the United Kingdom, or Switzerland (GDPR and UK GDPR). Vyds LLC is the controller of your personal information. We process it on these legal bases:
- To perform our contract with you: providing the Service, storing and sharing your recordings, billing, and sending service email.
- Our legitimate interests: keeping the Service secure, preventing abuse, fixing errors, understanding usage in aggregate, and administering workspaces, including an organization's interest in controlling accounts on its own email domain. When we rely on legitimate interests, we balance them against your rights.
- Your consent: analytics cookies, and any other optional feature where we ask first. You can withdraw consent at any time.
- Legal obligations: keeping billing records and responding to lawful requests.
In addition to the rights above, you have the right to object to processing based on legitimate interests, to ask us to restrict processing, to receive your personal information in a portable format, and to complain to your local data protection authority. We will respond to requests within one month.
If you are a California resident (CCPA/CPRA). In the last 12 months we have collected the categories of personal information described in section 2: identifiers (name, email, IP address, account id), commercial information (subscription and payment history), internet activity (usage and viewing data), audio and visual information (your recordings), and inferences we do not make. We collect it for the purposes in section 3 and share it with the service providers in section 5. We do not sell personal information and we do not share it for cross-context behavioral advertising, so there is nothing to opt out of. You have the right to know what personal information we collect, use, and disclose; to delete it; to correct it; and not to be discriminated against for exercising these rights. You may use an authorized agent to make a request. To make a request, email privacy@vyds.io; we will verify it using the email address on your account.
9. Cookies
We use essential cookies to keep you signed in and to maintain your session. These are always on, because the service does not work without them.
With your permission we also use Google Analytics to understand how visitors use our site. If you accept analytics cookies, Google Analytics sets first-party cookies that give your browser an identifier and keep it across visits, so we can tell a returning visitor from a new one. We use this in aggregate to see which pages and features get used.
Analytics is off until you turn it on. When you first visit, our cookie banner asks, and every storage category stays denied until you accept. You can change your mind at any time using the "Cookie preferences" link in the footer, which reopens the banner. Withdrawing consent stops further analytics collection. Cookies that were already set expire on their own schedule, or you can clear them in your browser.
We do not use advertising cookies, and we do not allow advertising or personalization use of this data. Advertising storage, ad user data, and ad personalization are all set to denied and we never turn them on.
10. Children
vyds is not intended for children under 16, and we do not knowingly collect personal information from them. If you believe a child under 16 has given us personal information, email privacy@vyds.io and we will delete it.
11. Changes to this policy
We may update this policy as the Service changes. We will post the new version here and update the date at the top. If a change materially affects how we use your personal information, we will tell you by email or in the Service before it takes effect.
12. Contact
Vyds LLC
privacy@vyds.io
If you are in the EEA or UK and we have not resolved your concern, you may contact your local data protection authority.