Privacy Policy
Last updated: June 26, 2026
This Privacy Policy explains how Senuto ('we', 'us', 'our') processes personal data when you visit our website, create an account, or use the Senuto platform (the 'Service').
1. Who we are
Senuto is the data controller for personal data processed through the Service. For any privacy request you can reach us at [email protected].
2. What data we collect
- Account data — name, email, password hash, billing details.
- Content data — projects, prompts, generated content, integrations you connect.
- Usage data — pages visited, features used, credits consumed, device and browser metadata.
- Support data — messages you send to our team and attachments.
3. How we use your data
We process personal data to:
- Provide, secure and maintain the Service and your account.
- Process payments and prevent fraud.
- Communicate about updates, security, and customer support.
- Improve product quality through aggregated, de-identified analytics.
- Meet legal obligations (tax, accounting, lawful requests).
4. Legal bases (GDPR)
We rely on (a) performance of a contract to operate the Service, (b) legitimate interests for product analytics and abuse prevention, (c) consent for optional cookies and marketing emails, and (d) legal obligations for accounting and compliance.
5. Sharing and subprocessors
We use trusted subprocessors to operate the Service — including cloud hosting, payment processing, transactional email, customer support, and product analytics. Each subprocessor is bound by a data processing agreement and Standard Contractual Clauses where required. A current subprocessor list is available on request.
6. International transfers
Data may be processed in the EU and the United States. Where data is transferred outside the EEA / UK, we rely on Standard Contractual Clauses and additional safeguards required by GDPR.
7. Retention
We retain account and content data while your account is active and for a limited period afterwards to meet legal, tax and security obligations (typically up to 7 years for billing records). You can request earlier deletion at any time.
8. Your rights
Subject to applicable law, you have the right to access, correct, delete, restrict or object to processing, withdraw consent, and request data portability. You may also lodge a complaint with your local supervisory authority.
9. Security
We apply industry-standard administrative, technical and organisational measures — encryption in transit, encryption at rest at the storage layer, access controls, and audit logging. No system is 100% secure; we encourage strong, unique passwords.
10. Children
The Service is not directed to children under 16, and we do not knowingly collect data from them.
11. Changes to this policy
We may update this policy from time to time. Material changes will be announced in the app or by email at least 14 days before they take effect.
12. Contact
Privacy questions: [email protected].