← back

napo data policy

last updated: october 2026

this data policy explains how napo technologies private limited ("napo", "we", "us", or "our") handles data that is created, uploaded, processed, stored or otherwise used when you use napo.

napo is an ai-powered video editing and video generation platform. because napo works with video, audio, images, text and other creative content, this policy explains how that data moves through our systems and how we handle it.

this policy should be read together with our privacy policy and terms of service.

1. what data napo processes

depending on how you use napo, we may process:

  • account data: name, email address, account information, organisation information, account preferences
  • creative content: uploaded videos, audio files, images, scripts, text, subtitles, transcripts, project files, reference videos, reference images, prompts, editing instructions, generated content
  • project data: project names, project settings, editing instructions, scene information, captions, transcripts, style references, generation settings, export information, processing history
  • technical data: ip address, browser information, device information, operating system, usage information, error logs, performance information, security information

2. how your content is processed

when you upload content to napo, our systems may process that content to perform the operation you requested.
for example, when you upload a video for ai editing, napo may:

  • receive and securely store the uploaded file;
  • analyse the video;
  • extract relevant visual or audio information;
  • send required information to an ai or processing service;
  • generate an edit or other requested output;
  • render the result;
  • make the result available to you; and
  • delete temporary processing files according to our retention rules.

the exact processing flow may differ depending on the feature you use.

3. ai providers

napo may use third-party ai and infrastructure providers to provide certain features.
depending on the feature, information sent to a provider may include:

prompts, text, video frames, images, audio, transcripts, project information, instructions, other information necessary to perform the requested operation

we aim to use providers that offer appropriate security and data handling controls. our list of material third-party providers may change as napo's technology stack changes.

4. your content remains yours

you retain ownership of content you upload to napo.
using napo does not transfer ownership of your videos, images, audio, scripts or other creative content to us.
napo receives only the permissions necessary to process your content and provide the service.

5. ai model training

napo does not use private customer content to train general-purpose ai models unless we separately inform you and obtain any consent or permission required by applicable law or your agreement.

we may use aggregated, anonymised or appropriately de-identified information for purposes such as: security, reliability, analytics, performance monitoring, product improvement.

if napo introduces a feature that uses customer content for model training, we will provide appropriate information and controls where required.

6. temporary processing data

video processing can create temporary files such as: extracted frames, audio files, proxy videos, intermediate renders, transcoded files, thumbnails, analysis results, temporary ai outputs.
these files may be automatically deleted after processing or after a defined operational period.

7. project storage

your active projects and associated content may remain stored while you continue using them.
you may be able to delete individual projects or your entire account through the available controls.
deletion may take some time to complete across all systems.

8. data deletion

when you delete content or request account deletion, napo will initiate deletion of applicable data according to our retention and deletion procedures.

some information may remain temporarily in: encrypted backups, security logs, legal records, financial records, fraud prevention systems. such information will be retained only where reasonably necessary or required by applicable law.

9. backups

backups exist to protect napo against accidental loss, infrastructure failure and security incidents.
deleted data may remain in backups until the applicable backup cycle expires.
deleted content will not be used for ordinary product operations after deletion.

10. security

napo uses reasonable technical and organisational measures designed to protect data.
these may include: access controls, authentication, encryption where appropriate, restricted infrastructure access, monitoring, logging, backup systems, security procedures.

no internet-based service can guarantee complete security.

11. employee access

napo employees and contractors are given access to user data only where reasonably necessary for their work.
access may be required for: technical support, security investigations, debugging, infrastructure management, abuse prevention, legal compliance.

access to sensitive systems is controlled according to internal security procedures.

12. data retention

different types of data may have different retention periods.
account data may be retained while your account is active. active project data may be retained while the relevant project exists. temporary processing files may be deleted after processing. billing records may be retained for accounting, tax and legal requirements. security logs may be retained for security and operational purposes.
the exact retention period may vary depending on the type of data and the reason it is being retained.

13. data deletion requests

you can request deletion of your account or applicable personal data by using the available account controls or contacting:
privacy@napo.si

we may need to verify your request before completing it.

14. data location and international processing

napo and its service providers may process data in countries other than the country where you live.
where required, napo will take appropriate measures for such processing in accordance with applicable law.

15. data incidents

if napo becomes aware of a security incident affecting personal data, we will assess the incident and take appropriate steps in accordance with applicable law.
this may include investigation, containment, remediation and notification where required.

16. third-party services

some services used by napo may have their own data handling practices.
these may include: cloud infrastructure, ai providers, payment providers, authentication providers, analytics providers, customer support platforms, email providers.
where appropriate, you should also review the privacy policies of those providers.

17. changes to this policy

we may update this data policy as our technology, infrastructure, products or legal requirements change.
the latest version will always be published on the napo website.

18. contact

for questions about data handling, deletion or security:

napo
privacy email: privacy@napo.si
security email: security@napo.si
hyderabad, india
website: www.napo.si