Viralio

Privacy Policy

Last updated: July 1, 2026

Viralio ("Viralio", "we", "us") helps creators turn trends into short-form videos, game concepts and community campaigns, and — where you connect an account and the platform allows — helps you publish that content. This policy explains what data we collect, how we use it, and your choices.

1. Information we collect

  • Account data: your email and basic profile when you sign up (directly or via Google sign-in).
  • Content you create: the trends, prompts, scripts, video specifications and rendered videos you generate in the app.
  • Connected accounts: when you link a social platform (e.g. YouTube), we store the authorization tokens needed to act on your behalf, plus your public channel/handle name.
  • Usage data: basic logs needed to operate and secure the service.

2. Google / YouTube data and Limited Use

When you connect your YouTube channel, we request the scopes youtube.readonly and youtube.upload only to:

  • display your channel name so you can confirm the right account is connected, and
  • upload the videos you explicitly choose to publish or schedule from Viralio.

Viralio's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We do not use Google user data for advertising, we do not sell it, and we do not allow humans to read it except as needed for security, to comply with the law, or with your explicit consent. Our use of YouTube API Services is also subject to the YouTube Terms of Service and the Google Privacy Policy.

2b. Instagram / Meta data

When you connect Instagram, we request only instagram_business_basic and instagram_business_content_publish, used solely to (a) show your Instagram username so you can confirm the right account is linked, and (b) publish the videos you explicitly choose to publish from Viralio to your own Instagram account. We access only your own account's data via your authorization, never other users' data. Our use of the Instagram Platform complies with Meta's Platform Terms and Developer Policies. You can remove Viralio's access anytime from Instagram → Settings → Apps and websites, or see our Data Deletion instructions.

3. How we use your information

  • To generate content and render your videos.
  • To publish or schedule content to the accounts you connect, when you ask us to.
  • To operate, secure, and improve the service.

4. Sub-processors

We rely on trusted providers strictly to run the service: Supabase (database, auth, storage), Vercel (hosting), Anthropic (AI text), Microsoft Azure (text-to-speech), and image generation providers. They process data only to provide their function and are bound by their own terms.

5. Storage and security

Data is stored on Supabase with access controls (row-level security). Connected-account tokens are kept server-side only and are never exposed to the browser or committed to code. We take reasonable measures to protect your data, though no method of transmission or storage is 100% secure.

6. Data retention and deletion

You can disconnect a linked account at any time, which revokes our stored tokens. You may also revoke access directly from your Google account permissions. To delete your account and associated data, email us at josech0191@gmail.com and we will remove it within 30 days, except where retention is required by law.

7. Your rights

Depending on your location, you may have rights to access, correct, export, or delete your personal data. Contact us to exercise them.

8. Children

Viralio is not directed to children under 13 (or the minimum age in your country), and we do not knowingly collect their data.

9. Changes

We may update this policy; material changes will be reflected by the "Last updated" date above.

10. Contact

Questions or requests: josech0191@gmail.com.