← Back to home

Privacy Policy

Last updated: April 15, 2026

Uncut Gems LLC (“we,” “us,” or “our”) operates the RoughCut platform (roughcut.com, app.roughcut.com). This Privacy Policy describes how we collect, use, disclose, and protect your information.

1. Information We Collect

Account Information: Name, email address, password (stored only as a cryptographic hash — we never store or transmit your plaintext password), and billing information when you subscribe.

Audio & Video Content: Audio and video files you upload for transcription and processing. We process this content solely to provide the Service and do not use it for any other purpose, including model training.

Generated Content: Transcriptions, story scripts, translations, music analyses, and exports we generate from your uploaded content.

Usage Data: Log data, device information, IP addresses, browser type, pages visited, and feature usage patterns.

2. Cookies & Tracking Technologies

We use the following cookies and tracking technologies:

Strictly Necessary: httpOnly secure cookies for authentication (ug_access_token, ug_refresh_token) and error monitoring via Sentry. These are required for the Service to function and cannot be disabled.

Analytics: We use Google Analytics (GA4) and PostHog to understand how the Service is used, including page views and feature usage. These services set cookies such as _ga and related identifiers, and may use localStorage for event tracking.

Advertising & Measurement: We use Meta Pixel (Facebook) and Google Ads conversion tracking to measure the effectiveness of our advertising. These services set cookies such as _fbp, _fbc, and _gcl_au.

Support: We use Crisp for live chat support. Crisp may set cookies to maintain your chat session and identify returning visitors.

You can manage your cookie preferences using the consent banner that appears on your first visit, or at any time by clicking “Cookies” in the site footer or app sidebar.

3. How We Use Your Information

We use your information to: (a) provide, maintain, and improve the Service; (b) process your audio files and generate transcriptions, stories, and exports; (c) communicate with you about your account and the Service; (d) process payments and manage subscriptions; (e) measure advertising effectiveness and understand how the Service is used; (f) detect and prevent fraud, abuse, and security incidents; (g) comply with legal obligations.

4. Third-Party Services

We use the following third-party services to provide and improve the Service:

  • Cloud Infrastructure: Amazon Web Services (AWS) for file storage (S3), computing (ECS), and databases (RDS). Data is stored in the US (Ohio region).
  • AI Transcription: OpenAI for audio transcription (Whisper API) and music lyric extraction. Audio content is sent to OpenAI's API for processing.
  • AI Story Generation: Anthropic (Claude) for narrative story generation. Transcript text (not audio files) is sent to Anthropic's API for processing. Anthropic does not retain API inputs.
  • Database: MongoDB Atlas for document storage. Data is stored in the US.
  • Payments: Stripe for subscription billing. Payment card details are collected and processed directly by Stripe and never touch our servers.
  • Email: Resend for transactional and lifecycle emails (welcome emails, trial reminders, billing notifications).
  • Frontend Hosting: Vercel for frontend application hosting.
  • Error Monitoring: Sentry for application error tracking and performance monitoring. Error reports may include technical context such as API paths, browser information, and page URLs.
  • Analytics: Google Analytics (GA4) and PostHog for website and product usage analytics.
  • Advertising Measurement: Meta Pixel (Facebook) and Google Ads for measuring advertising campaign effectiveness.
  • Live Chat Support: Crisp for in-app customer support chat.

We do not sell, rent, or share your personal information or audio content with third parties for their marketing purposes. Your audio content is never used for model training by us or by our AI providers.

5. Audio Content & Intellectual Property

You retain all rights to the audio content you upload. We claim no ownership of your audio files, transcriptions, or generated story scripts. We process your content solely to provide the Service.

Audio files are stored in encrypted AWS S3 buckets. You may delete your projects and associated files at any time. Upon account deletion, we initiate removal of all associated files.

Music files: You are solely responsible for ensuring you have valid licenses for any music you upload to the platform. We do not verify music licenses and accept no liability for copyright infringement related to music you upload.

Music analysis: When you upload music, we perform technical analysis (tempo, key, energy, structure, lyrical content) solely to provide our music sync features. This analysis is stored within your project, is not shared with any third party beyond what is necessary for processing (OpenAI for lyric extraction), is not used for training, and is not redistributed. The original audio file remains unmodified. You may delete your music files and all associated analysis data at any time.

6. Data Security

We implement industry-standard security measures including: encryption at rest (AWS S3, RDS), encryption in transit (TLS 1.2+), httpOnly secure cookies for authentication, organization-scoped data isolation (every database query is scoped by organization ID), password hashing (bcrypt), and audit logging of sensitive operations.

7. Data Retention

We retain your account data for as long as your account is active. Audio files and generated content are retained for as long as the associated project exists. You may delete individual projects at any time. Upon account deletion, all your data is scheduled for permanent removal. Some third-party services (analytics platforms, error monitoring) may retain anonymized or aggregated data according to their own retention policies.

8. International Transfers

Our infrastructure and third-party service providers are located in the United States. If you are accessing the Service from outside the US, including from the European Economic Area (EEA) or the United Kingdom, your data will be transferred to and processed in the US. We rely on appropriate safeguards including the EU-US Data Privacy Framework and Standard Contractual Clauses where applicable.

9. Your Rights

Depending on your jurisdiction, you may have the right to: access your personal data; correct inaccurate data; request deletion of your data; object to or restrict certain processing; and lodge a complaint with a data protection authority.

You can delete your account and all associated data at any time from Settings → Account in the app. For other data rights requests, contact us at privacy@roughcut.com.

10. Children's Privacy

The Service is not intended for individuals under 18. We do not knowingly collect information from children. Wedding audio processed through the Service may incidentally contain voices of minors present at events; responsibility for appropriate consent rests with the uploading user.

11. Changes to This Policy

We may update this policy. Material changes will be communicated via email or in-app notification at least 30 days before taking effect.

12. Contact

Uncut Gems LLC
Email: privacy@roughcut.com