Privacy Policy
Last updated 9 October 2026
EBAC Studio ("the app") generates short videos and, when you ask it to, posts them to social accounts. This page explains exactly what it stores, who it sends data to, and how to get rid of it. It describes what the app actually does today rather than what it might do later.
Who runs this
EBAC Studio is operated by EBAC Group. Questions, requests and complaints go to markstock360@gmail.com.
What is collected
- Your identity. When you sign in, we receive your email address, your display name, and a stable account identifier from Microsoft Entra External ID. If you sign in with Google or Facebook, those providers pass the same details to Microsoft, which passes them to us.
- Never your password. Sign-in is handled entirely by Microsoft. The app never sees, receives or stores your password, and has no ability to.
- What you create. The topics, prompts, categories, schedules and notes you enter, and the videos generated from them.
- Anything you upload in Manual mode — images, audio and transcripts.
- Connected social accounts. To post for you, the app keeps the credential for each account you connect. For Instagram and Facebook this is the access token you provide. For TikTok you sign in on TikTok's own page and approve the app; TikTok gives us a token that lets the app post to that account on your behalf, along with your TikTok display name and profile picture, which we show so you can see which account is connected. We never receive your TikTok password. Credentials are encrypted before they are stored and are never shown back to you.
- Publishing records. If you post a video, we keep a record of when it was posted and whether it succeeded.
There is no analytics, advertising or tracking of any kind. No cookies are set for advertising. The only browser storage used is your sign-in session and a note of which section of the app you last visited.
Who your data is shared with
Generating a video means sending the text you provide to AI services. Specifically:
- Microsoft Azure — hosting, database, video storage, and sign-in (Microsoft Entra External ID).
- Google — Gemini writes scripts and scene plans; Veo animates images.
- OpenAI — image generation.
- ElevenLabs — narration audio and its timing.
- Meta — only if you choose to publish, and only the finished video and its caption.
- TikTok — only if you connect a TikTok account and choose to post: the finished video, its caption, and the token you approved.
Your data is not sold, and it is not shared with anyone beyond the services above and only for the purpose of producing what you asked for.
Where it is kept, and for how long
- Finished videos are deleted automatically after 48 hours. Download anything you want to keep.
- Your account record and the history of what was generated are kept until you ask for them to be deleted.
- App data is hosted in Microsoft Azure in the United States. Your sign-in account is held in a Microsoft Entra tenant located in Europe.
- Anything already posted to Instagram, Facebook or TikTok lives on those platforms under their terms, and deleting your data here does not remove it from there.
Your choices
- You can request a copy of your data, or its deletion, at any time — see Deleting your data.
- You can sign out at any time from inside the app.
- You can disconnect any social account under Social media in the app, which deletes the credential we stored for it. For TikTok you can also remove the app's access from TikTok's own settings, under the apps connected to your account.
- Nothing is ever posted to a social account unless you explicitly turn posting on.
Being straight with you about security
Data is encrypted in transit and at rest by the Azure services underneath, and each account can only see its own videos and history. That said, this is a small personal project rather than an audited commercial service, and it would be dishonest to imply otherwise. Please do not upload anything genuinely sensitive or confidential to it.
Changes
If this policy changes materially, the date at the top will change. The current version is always the one on this page.