Privacy Policy

Your privacy is important to us. This policy explains how we collect, use, and protect your personal information.

Last updated: May 7, 2026

1. Introduction

TO SEE AS ("we," "our," or "us") is a Norwegian company with Norwegian organisation number 936 645 100. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our voice cloning and video generation services.

For account, billing, website, support, service telemetry, security, and platform operations data,TO SEE AS is normally the data controller under the General Data Protection Regulation (GDPR) and Norwegian data protection law. When we process customer workspace content, learner records, or training materials on a customer's documented instructions, we may act as a data processor under a data processing agreement. Our main infrastructure is hosted in Europe using Microsoft Azure.

2. Information We Collect

2.1 Personal Information You Provide

  • Account Information: Name, email address, password, and profile details
  • Google Sign-In Data: If you sign in with Google, we receive your Google account email address and basic profile information to create, authenticate, secure, and manage your TO SEE account
  • Audio Data: Voice recordings you upload for voice cloning (10-50 minutes)
  • Video Data: Video recordings you upload for avatar creation
  • Content Data: Scripts and text you provide for content generation
  • Communication Data: Messages you send to our support team

2.2 Information We Collect Automatically

  • Usage Data: How you interact with our services, features used, and time spent
  • Telemetry Data: Product events, workflow steps, feature usage, generation metadata, reliability signals, error traces, logs, and other diagnostics that help us understand platform behavior
  • Technical Data: IP address, browser type, device information, and operating system
  • Performance Data: Service performance metrics and error logs
  • Cookies and Tracking: Essential cookies for functionality and optional analytics cookies

3. How We Use Your Information

3.1 Primary Service Delivery

  • Creating and maintaining your voice model for text-to-speech generation
  • Generating lip-sync videos using your uploaded content
  • Providing customer support and technical assistance
  • Processing payments and managing your account
  • Authenticating Google sign-in users and securing TO SEE accounts

3.2 Service Improvement and Platform Telemetry

Telemetry data can be used to improve the service and analyze platform behavior. This includes:

  • Analyzing usage patterns, product flows, and feature adoption
  • Diagnosing performance, reliability, security, and error trends
  • Improving workflows, defaults, user experience, and service quality
  • Developing and evaluating new features and capabilities

We may use aggregated, de-identified, or pseudonymized telemetry and usage data for these purposes. We do not use private customer content, uploaded voice or video recordings, or generated training materials to train foundation models unless you separately enable that use or agree to it in writing. You may object to processing based on legitimate interests by contacting us.

Customer Content

Account settings, contracts, and written agreements may give you additional controls over model training, analytics, and retention. Where those controls apply, we honor the choices attached to your account or workspace.

3.3 Legal Basis for Processing

PurposeLegal BasisData Types
Service deliveryContract performanceAudio, video, account data
Account managementContract performanceAccount information
Service telemetry and improvementLegitimate interestTelemetry data, usage data, performance metrics
Legal complianceLegal obligationAll data types as required

4. Data Sharing and Third Parties

We do not sell, trade, or rent your personal information to third parties. We may share your information only in the following circumstances:

4.1 External Processing Partners

  • Microsoft Azure: Our primary cloud infrastructure provider (EU-based)
  • AI Processing Services: Third-party providers for inference processing (no data storage)
  • Payment Processors: For processing subscription payments
  • Analytics Services: For understanding service usage (anonymized data only)

4.2 Legal Requirements

  • When required by law or legal process
  • To protect our rights, property, or safety
  • To prevent fraud or security threats
  • In case of business transfers (with user notification)

Important: All third-party processors are bound by strict data processing agreements and are prohibited from using your data for any purpose other than providing services to us.

5. Data Security and Storage

5.1 Security Measures

  • Encryption: All data is encrypted in transit and at rest using industry-standard protocols
  • Access Controls: Strict access controls and authentication requirements
  • Regular Audits: Regular security assessments and penetration testing
  • Data Minimization: We only collect and retain data necessary for our services
  • Secure Infrastructure: Microsoft Azure's enterprise-grade security features

5.2 Data Retention

  • Account Data: Retained while your account is active and for 3 years after closure
  • Voice Models: Retained while your account is active, deleted within 30 days of account closure
  • Generated Content: Retained for 90 days unless you choose to delete it earlier
  • Usage and Telemetry Data: Aggregated, de-identified, or anonymized data may be retained for service improvement and platform analysis

5.3 Data Location

Your personal data is primarily stored and processed within the European Union using Microsoft Azure's EU data centers. Any international transfers are conducted under appropriate safeguards as required by GDPR.

6. Your Rights Under GDPR

As a data subject under GDPR, you have the following rights regarding your personal data:

6.1 Access and Portability

  • Right of Access: Request a copy of all personal data we hold about you
  • Data Portability: Receive your data in a structured, machine-readable format

6.2 Correction and Deletion

  • Right to Rectification: Correct inaccurate or incomplete personal data
  • Right to Erasure: Request deletion of your personal data ("right to be forgotten")

6.3 Processing Control

  • Right to Restrict Processing: Limit how we use your data in certain circumstances
  • Right to Object: Object to processing based on legitimate interests
  • Withdraw Consent: Withdraw consent for data processing at any time

6.4 Automated Decision Making

  • Right to Human Review: Request human review of automated decisions affecting you
  • Right to Explanation: Receive explanations of automated decision-making processes

How to Exercise Your Rights

To exercise any of these rights, contact us at [email protected]. We will respond to your request within 30 days and may require identity verification for security purposes.

7. Cookies and Tracking

7.1 Types of Cookies We Use

  • Essential Cookies: Required for basic website functionality and security
  • Performance Cookies: Help us understand how visitors use our website (anonymized)
  • Functional Cookies: Remember your preferences and settings

7.2 Cookie Management

You can control cookies through your browser settings. However, disabling essential cookies may affect the functionality of our services.

8. Children's Privacy

Our services are not intended for children under 16 years of age. We do not knowingly collect personal information from children under 16. If we become aware that we have collected personal data from a child under 16, we will take steps to delete such information promptly.

9. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will notify you of any material changes by:

  • Posting the updated policy on our website
  • Sending you an email notification (if you have an account)
  • Displaying a prominent notice on our services

Your continued use of our services after any changes constitutes acceptance of the updated policy.

Contact Information

If you have any questions about this Privacy Policy or our data practices, please contact us:

Company: TO SEE AS, Norwegian organisation number 936 645 100

Email: [email protected]

Privacy Contact: [email protected]

General Inquiries: [email protected]

Response Time: We will respond to all privacy-related inquiries within 30 days.

10. Supervisory Authority

TO SEE AS is based in Norway, where the Norwegian Data Protection Authority (Datatilsynet) supervises compliance with data protection law. If you are not satisfied with our response to your privacy concerns, you have the right to lodge a complaint with Datatilsynet or another competent data protection supervisory authority. https://www.datatilsynet.no/