How we handle your data and protect your information.
When you paste a URL, Demokaze takes a screenshot of the public page, sends it to our AI model to script a walkthrough, then records a real browser session. The output is an MP4 video stored temporarily on our servers.
All data is encrypted in transit via TLS 1.3. Videos are stored on encrypted persistent volumes. API requests are authenticated and validated before processing.
Generated videos are retained for 30 days, then automatically deleted. You can delete your videos at any time from the demo result page. Screenshots used during generation are cached in memory for up to one hour and are never persisted to disk.
Authentication is handled by Clerk. We never store passwords. Payment processing is handled by Stripe — we never see or store credit card numbers. API access is gated by authenticated keys, and all generation requests are validated and rate-limited.
| Service | Purpose | Data shared |
|---|---|---|
| Anthropic (Claude) | AI script generation | Page screenshots |
| Railway | Hosting & video storage | Generated videos |
| Clerk | Authentication | Email, OAuth profile |
| Stripe | Payment processing | Payment details (handled by Stripe) |
| Upstash | Rate limiting | Hashed IP addresses |
We process minimal personal data. Video generation requires only a public URL. We do not track users across sites. You can request data deletion at any time by emailing hello@demokaze.com.
If you discover a security vulnerability, please report it to hello@demokaze.com. We take all reports seriously and will respond within 48 hours.
If you have security questions or need a DPA for your organization, contact us at hello@demokaze.com