VinnerVi has one purpose: translating or generating subtitles for a video
you choose. To provide that feature, the extension handles the current
video's URL, title, duration, available caption-track information, your
language and display choices, and the subtitle text and timing data needed
for the translation you request.
Before a translation: the extension reads the current page only to find the video and available captions and to place the subtitle controls and overlay. It does not collect your general browsing history or unrelated page content.
When you request Subtitle Translation: the selected video's URL, selected languages, caption-track details, and, when captured in the browser, the selected subtitle text and timing cues are sent to VinnerVi over HTTPS.
When you request Speech Translation: the selected video's URL and your language choices are sent to VinnerVi over HTTPS. Our service retrieves the media from that URL and processes its audio to create subtitles; the extension does not upload your microphone audio.
On your device: the extension stores your sign-in session, preferences, job status, video URLs for requested jobs, and completed subtitles in browser storage so it can restore your settings and show subtitles when you revisit that video.
Subtitle text captured from a signed-in streaming service is sent only
after you press the translate control and confirm the request. We do not
transmit video files, DRM keys, cookies, passwords for video sites, or
unrelated page content.
2. Data We Collect
Account and authentication data: email address, optional display name, internal account identifier, authentication provider, Google or Apple account identifier when you use those providers, email-verification status, and a securely hashed password when you create an email/password account. We never receive your Google or Apple password.
Translation content and website data: the video URL you submit; video title and duration where available; source and target language; selected time range and caption track; source subtitle or transcript text and timing; generated translation; and job identifier, status, timestamps, errors, and credit usage.
Payments and credits: purchase and subscription identifiers, product and payment status, credit grants, debits, refunds, balance adjustments, and related timestamps. Payment-card details are collected directly by Stripe or Apple and are not stored by VinnerVi.
Product analytics: a resettable installation identifier, session identifier, internal account identifier when signed in, extension or app version, browser, operating system, interface language, named product actions, feature settings, translation mode, supported-site category, and purchase outcome. We do not send Google Analytics your email address, full video URL, subtitle text, audio, or payment-card details.
Technical and support data: standard server-request information such as IP address, user agent, request time, requested endpoint, and security or error logs; plus any information you choose to include when contacting support.
3. How We Handle and Use Data
We use the data described above only to:
Authenticate you, secure your session, and provide account recovery.
Find the video you selected, retrieve its captions or audio, transcribe or translate it, deliver the result, and display or export subtitles.
Estimate and charge credits, process purchases, prevent duplicate charges, issue refunds, and maintain required transaction records.
Remember your settings and completed subtitles on your device.
Send requested or essential service communications, such as verification, password-reset, receipt, and job-status messages.
Measure feature reliability and use, troubleshoot failures, prevent abuse and fraud, and improve the subtitle service.
VinnerVi does not sell user data, use it for advertising, use it to
determine creditworthiness or lending eligibility, or collect browsing
activity for an unrelated purpose. Human access is limited to what is
necessary for support you request, security and abuse investigation,
legal compliance, or internal operations, subject to confidentiality and
access controls.
4. How and Where We Store Data
Browser storage: authentication session data, preferences, job tracking, requested video URLs, translated subtitle caches, and analytics identifiers are stored locally by the extension. They remain until you sign out, use the extension's clear-local-data control, clear browser data, or uninstall the extension, depending on the item.
VinnerVi service storage: account, job, credit, payment, subscription, and support records are stored in our service database. Translation result files are stored temporarily so you can retrieve them. Passwords are stored only as one-way hashes, not as readable passwords.
Temporary processing: retrieved media and extracted audio are working files used to complete your request. They are deleted after processing; automated cleanup removes any leftover temporary working files within 24 hours.
Backups: access-controlled backups may contain account and service records and are automatically rotated.
5. Data Retention
Server-side subtitle result files are available for up to 3 days, then deleted. A copy saved in your browser remains as described above.
Temporary media and audio working files are deleted after processing, with leftover temporary files removed within 24 hours.
Account, job metadata, credit-ledger, purchase, and subscription records are retained while your account is active and then deleted or de-identified when the account is deleted, except where records must be kept for tax, accounting, fraud-prevention, dispute-resolution, security, or other legal obligations.
After an Apple account is deleted, we retain only Apple's stable Sign in with Apple subject identifier, without the account's email or profile data, for as long as needed to recognize prior use and prevent repeat welcome-credit grants.
Service backups are retained for up to 30 days before rotation. Deletions therefore may take up to 30 days to disappear from backups.
Analytics and processor logs are retained according to our configured retention periods and the applicable processor terms.
6. How We Share Data
We share only the data needed for the purposes below. Our current service
providers and the data they may process are:
Google OAuth — sign-in authorization; Google processes the OAuth request and provides an account identifier, email address, and basic profile information.
Apple — Sign in with Apple and App Store payments; Apple processes signed account and transaction identifiers.
Google Gemini — subtitle and transcript text, timing context, and selected language needed for AI translation.
Groq — temporary audio segments and language context needed for speech-to-text transcription.
Google Analytics — the product-analytics fields listed in Section 2.
Stripe — email address, purchase selection, transaction identifiers, and payment information that you provide directly to Stripe for web payments and subscription management.
Google Cloud — application hosting and processing; it may process translation content, job data, and technical logs.
Supabase — hosted database infrastructure for account, job, credit, purchase, and subscription records.
Cloudflare — DNS, network delivery, security, and backup storage; it may process IP addresses, request metadata, service data, and backup copies.
Sentry — error and performance monitoring when enabled; it may receive an internal user ID, email address, job ID/type, submitted video URL, error details, and technical request context.
Google Workspace/Gmail — delivery of verification, password-reset, job-status, support, and other service emails; it processes the recipient address and message content.
The video platform, content delivery network, or network provider used to retrieve the video you selected — receives the ordinary request details needed to retrieve that URL. The provider varies with the site you ask VinnerVi to process.
We may also disclose data when required by law, to protect users or the
service, or as part of a merger, financing, acquisition, or sale of assets,
subject to appropriate confidentiality and notice obligations. We do not
sell, rent, or trade personal information.
7. Security
User data transmitted by the extension is sent over HTTPS. We use access
controls, one-way password hashing, restricted production credentials,
backups, and security monitoring to protect stored data. No method of
electronic transmission or storage is completely secure, so we cannot
guarantee absolute security.
8. Website Cookies and Local Storage
The VinnerVi website uses local storage for authentication and service
preferences. Google Analytics may store analytics identifiers; where
consent is legally required, website analytics remains disabled until
consent is provided. The browser extension uses extension storage as
described in Section 4. Firefox users can disable optional technical and
interaction analytics in the extension's permission settings.
9. Your Choices and Rights
You may delete your account and associated data from Account settings in
the Apple app, or request deletion by contacting us at
support@vinnervi.com. We will
process emailed deletion requests within 30 days. We may retain limited
records where required by law or necessary to resolve fraud or disputes.
You can clear locally stored subtitles, job tracking, and preferences
from the extension's Settings. Depending on your location, you may also
have rights to access, correct, export, restrict, object to, or delete
personal data. Contact us to exercise those rights.
10. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will
revise the "Effective date" at the top of this page. Continued use of the
Service after changes are posted constitutes your acceptance of the revised
policy.
11. Contact and Data Controller
VinnerVi is operated by SK95 Engineering AB, organization number
559587-8363, Torsbyslingan 10, 139 51 Värmdö, Sweden. If you have
questions about this Privacy Policy, please contact us at
support@vinnervi.com.