Skip to content
DER.run

Privacy Policy

Effective October 1, 2026Last updated October 5, 2026

This policy explains what personal data DER collects when you use der.run, the studio, the API and the MCP server, what we use it for, who helps us process it and the choices you have.

On this page · 12 sections

In short

  • We collect what DER needs to run: your sign-in, what you create, your payments and request logs.
  • No ads and no advertising cookies. We use Google Analytics to count visits and feature use — never your prompts or your files.
  • We don’t sell your data or use your content to train models of our own.
  • Delete your account yourself in the studio, or email support@der.run to see, correct or delete your data.

01Who we are

DER.run (“DER”, “we”, “us”) runs der.run, the studio, the DER API and the MCP server, and is responsible for the personal data described here. You can reach us at support@der.run.

02What we collect

  • Account details: an account ID and, depending on how you sign in, your Google account ID and email address, the email address you sign up with, or your wallet address. If you set a password we store only a hash of it, never the password itself. We note which sign-in methods are linked to your account, whether your email address has been confirmed, and how you signed in on each device.
  • Sign-up and security emails: when you sign up with email or reset a password we email you a short code, and we email you a notice when your password is set or changed. We store a hash of each code, not the code itself.
  • Sessions and API keys: the session that keeps you signed in, and the API keys you create. For each key we keep only a hash and its last four characters.
  • What you create: your prompts and settings, the files you upload and their names, the results we make for you, and what you save — Library items, characters, and the samples you use to train a voice or an avatar.
  • The links you paste into the video downloader.
  • Payments: for each top-up, the amount, coin and network, the order’s status and what our payment provider reports back, such as the amount received and the transaction ID. Blockchain transactions are public by nature.
  • Your preferences, such as Simple or Advanced, and when you agreed to the Face Swap rules.
  • Logs: your IP address, request IDs, times and basic details of each request.
  • Country or region: when you sign in, we record the country or region that Cloudflare infers from your IP address, as a two-letter code, to understand where our users are.
  • Usage statistics: through Google Analytics we collect page views and feature-use events — for example that a sign-in, an upload, a run, a download or a top-up happened, which tool and model it used, and how long a run took. Google Analytics also receives the standard details your browser sends with a request, such as its type, language and screen size, and estimates your approximate location from your IP address. These events never include your prompts, your files or their names, your email address, your wallet address or your account ID, and we strip page addresses down to the page itself, the tool, mode and model you picked, and campaign tags before they are sent.

We don’t ask for your name, your phone number or card details.

03Connected apps

You can let an AI app, such as Claude or Cursor, use your account through the MCP server by signing in and clicking Allow. For each app you allow, we keep:

  • the app’s name and the host it sends your answer back to;
  • when you allowed it and when it last used DER;
  • a hash of the tokens we gave it — never the tokens themselves.

Those tokens work only with the MCP server, not with the rest of the API or your account settings. You can disconnect an app at any time in Account → Connected apps, and it stops working right away. Deleting your account disconnects all of them. Signing out of every device doesn’t disconnect them.

04How we use it

  • To run DER: sign you in, run the jobs you ask for, store and deliver your files and results, and keep your credits and tier.
  • To process top-ups and keep payment records.
  • To keep DER safe: prevent abuse and fraud, enforce limits and investigate problems.
  • To understand how DER is used and make it better: which pages and tools people use, where visitors come from, and where things fail.
  • To answer you when you write to us.
  • To meet our legal obligations.

We don’t sell your personal data, we don’t show ads, and we don’t use your content to train models of our own.

05Who processes it for us

A few service providers help us run DER. Each gets only what it needs for its part:

  • Model providers — the companies that run the AI models. They receive the prompts, settings and files of the runs you start and return the results; training samples go to the provider that trains your voice or avatar.
  • A link service that reads the share links you paste into the video downloader.
  • Cloudflare — the network in front of der.run and the API (DNS, encryption and protection from abuse), and the storage for uploads, results and backups.
  • DigitalOcean — hosts the server that runs DER, with its database and logs.
  • NOWPayments — processes crypto top-ups. It receives the order ID, amount and coin; the payment itself happens between you and them.
  • Google — for Sign in with Google. We check your Google sign-in on our own server. The sign-in button is loaded from Google, so Google sees that request.
  • Google Analytics — measures visits and feature use on der.run. Google processes the usage statistics described above on our behalf. We’ve turned off Google signals and ad personalization, and we don’t use this data for advertising.
  • Resend — sends our emails: sign-up and password-reset codes, and security notices about your password. It receives your email address and the content of those emails.

The model providers that ran your jobs may keep their own records of them under their own policies; deleting your DER account doesn’t remove those.

Wallet sign-in and passwords are checked on our own server, with no one else involved. Preview images of the system avatars in the studio also come through our server, so your browser doesn’t contact the avatar provider.

Our servers are in Singapore. To provide DER, our storage, network and model providers may process your data in other countries.

We may also share data when the law requires it, or to protect DER, our users or others.

06Cookies

We use one necessary cookie to keep you signed in. It’s HTTP-only, so scripts on the page can’t read it.

When you’re not signed in, a small cookie remembers whether you chose Simple or Advanced. Your browser also keeps a few settings for DER on your device, such as the sidebar layout, your recent searches, your 18+ confirmation, an unfinished top-up, and a note of which of your runs and top-ups our statistics have already counted.

Google Analytics sets two kinds of cookies, _ga and ones that start with _ga_, to tell one visit from another. They last up to two years.

If you visit from the European Economic Area, the United Kingdom or Switzerland, we don’t set these analytics cookies. Google Analytics then receives only cookieless signals that don’t tell your visits apart, and uses them for aggregate estimates.

If your browser sends the Global Privacy Control signal, we don’t load Google Analytics at all.

To opt out, turn on Global Privacy Control in your browser, block or delete these cookies in your browser settings, or install the Google Analytics Opt-out Browser Add-on from Google.

We don’t use advertising cookies.

07How long we keep it

  • Results and uploads are kept for 7 days, then deleted automatically.
  • Anything you keep in your Library stays until you remove it — up to 200 items.
  • Your account details, prompts, settings and job history stay until you delete your account.
  • Database backups are deleted after 30 days. Logs are kept for a limited time, then deleted.

We keep the payment records — including on-chain transaction hashes — and the credit history that our accounting needs, no longer linked to you.

08Your rights

You can ask to see, correct or delete your personal data: email support@der.run and tell us which account it is — the email address on the account or your wallet address. We check that a request comes from the account’s owner before acting on it.

In the studio you can remove things from your Library, delete characters and your trained voices and avatars, unlink a sign-in method, change your password, revoke API keys, disconnect connected apps, sign out of every device and delete your whole account.

You can delete your account yourself under Account in the studio. It happens right away and can’t be undone: we delete your sign-in methods, sessions and API keys, your email or wallet address, and your files, results, Library, AIdols and trained voices and avatars.

09Security

Every connection is encrypted, your session stays in an HTTP-only cookie, and each account can reach only its own data. No system is perfectly secure; if a breach affects your data, we’ll tell you.

10Children

DER is only for people aged 18 or older.

We don’t knowingly collect data from anyone younger. If you think someone under 18 is using DER, email support@der.run and we’ll close the account.

11Changes to this policy

We’ll update this policy when DER changes — for example when we add a provider. The effective date at the top always shows the current version.

12Contact

Questions or requests about your data: support@der.run.

© 2026 DER.run. Questions: support@der.run