Home

Security & Privacy

Your trust is our foundation. This policy details how Ball Engine Studios protects and handles your personal information on ballengine.app.

Last Updated: July 10, 2026Version 2.3

1. Introduction and Scope

Ball Engine Studios ("we", "us", or "our") is committed to protecting your privacy. Ball Engine Studios operates ballengine.app as a website and brand entity. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website at ballengine.app and use our Creator Studio simulation software (collectively, the "Services").

This policy applies to all users of our Services globally, including those in the United Kingdom (UK), European Economic Area (EEA), and the United States (US). We process personal data in accordance with the GDPR, the UK GDPR, the Data Protection Act 2018, and relevant US state privacy laws (such as the CCPA/CPRA).

2. Information We Collect

A. Account & Newsletter Information

  • Basic CredentialsEmail address, username, display name, and passwords provided during registration.
  • Account SettingsAccount type, active plan, billing status, and profile preferences.
  • Consent DataNewsletter subscription status (opt-in/opt-out preferences), consent timestamps, consent sources (e.g. signup flow, settings panel, wishlist), and communication preferences.
  • Uploaded Creator AssetsPhysics project configuration files, custom audio files, MIDI sequences, and exported video metadata.

B. Technical & Program Information

  • Network & Location MetadataIP addresses and corresponding approximate geographic regions (country/state/city).
  • Device & Browser detailsUser agent, browser type, operating system, screen resolution, and hardware capabilities.
  • Referral & Origin DataReferrer headers, UTM marketing tags, and source paths (e.g., direct, YouTube, Instagram).
  • Beta Tester DataBeta enrollment status, diagnostic reports, hardware configuration details, testing usage metrics, and survey responses (followers, platform preferences, creator experience).

3. How & Why We Use Your Data

We process your personal information for the following specific and transparent reasons:

Deliver Simulation CoreTo compile, render, save, and export your physics simulation loops.
Manage SubscriptionsTo handle subscription access tiers, trial configurations, and invoices via PayPal.
Transactional MessagingTo send one-time passcodes, security notifications, invoice receipts, and beta invites via Resend.
Marketing CommunicationsTo distribute newsletters, product upgrades, and beta program announcements (strictly subject to optional user opt-in).
Beta Quality AssuranceTo evaluate candidate profiles from wishlist surveys and analyze client-side hardware/software diagnostics to fix physics bugs.
Security & Abuse PreventionTo verify sessions with CAPTCHA validation (Cloudflare Turnstile), track geographic origin to detect double-login exploits, and prevent automated spam.
🤖 We never use your uploaded audio, MIDI files, project configurations, or exported videos to train generalized machine-learning or AI models without your explicit consent.

4. Legal Basis (UK/EEA/Global)

Contractual Necessity

Required to initialize accounts, process premium subscriptions, and host projects.

Legal Obligation

Required for tax tracking, invoicing standards, and anti-fraud protocols under corporate law.

Legitimate Interests

To monitor system loads, enhance the rendering engine, optimize frame rates, and defend the network.

Consent

Where you have explicitly opted into email marketing campaigns or wishlist surveys. You may withdraw consent at any time.

5. Data Sharing & Third Parties

We share specific information with trusted third-party service providers solely to operate our software. We only document services actually integrated and active on the platform.

Cloudflare Pages & R2

Web hosting, serverless edge functions, and secure storage for simulation saves, custom audio, and video exports.

Cloudflare Turnstile

Non-intrusive CAPTCHA checks to block bots on login, sign-up, and password reset screens.

PayPal

Payment processor handling checkout, subscriptions, security checks, and billing queries.

Resend

Transactional email infrastructure, delivering OTPs, invoice details, and opt-in updates.

Google OAuth API

Authentication service enabling secure, passwordless account creation and profile details mapping.

YouTube API Services

Optional, user-authorized integration to upload and schedule your rendered videos to your own YouTube channel. See Section 11 for full details.

TikTok API Services

Optional, user-authorized integration to publish your rendered videos to your own TikTok account. See Section 12 for full details.

Meta Graph API (Facebook)

Optional, user-authorized integration to publish your rendered videos to your own Facebook Pages. See Section 13 for full details.

Instagram API (Instagram Login)

Optional, user-authorized integration to publish your rendered videos to your own Instagram Business/Creator account, separate from Facebook, no Page required. See Section 13b for full details.

Threads API (Meta)

Optional, user-authorized integration to publish your rendered videos to your own Threads profile, you sign in directly with Threads. See Section 13c for full details.

Pinterest API

Optional, user-authorized integration to publish your rendered videos as video pins to your own Pinterest boards. See Section 13d for full details.

X API (Twitter)

Optional, user-authorized integration to publish your rendered videos as video posts to your own X (formerly Twitter) profile. See Section 13e for full details.

Snapchat Marketing API (Public Profile)

Optional, user-authorized integration to publish your rendered videos as Spotlights to your own Snapchat Public Profile. See Section 13f for full details.

6. Data Retention Policies

We store collected information for varying durations depending on utility, legal requirements, and account status:

Data CategoryRetention DurationPurpose & Trigger
Account DataLifetime of the AccountRetained to provide services. Deleted within 30 days of explicit account closure requests.
Project Configs & AssetsActive Account TermCloud saves are preserved. Inactive accounts (no logins for 18 months) may have projects archived or deleted.
Invoices & Billing Info7 YearsMandated for corporate accounting, audits, and VAT taxation audits.
Technical & IP Logs90 DaysDeleted automatically. Kept for traffic monitoring, security logs, and rate-limiting diagnostics.
Consent & Preference Records5 Years post-account closureRetained to prove regulatory compliance (GDPR/CCPA opt-in consent histories).
Beta & Survey Submissions2 Years post-program closeKept for development feedback analysis and product optimization history.

7. Your Rights (GDPR, UK GDPR & US State Laws)

Access

Request a copy of all personal information we store about you in a clear format.

Rectification

Correct inaccurate username details, display names, or preference parameters.

Erasure

Request deletion of your profile, projects, and email records where no legal override exists.

Opt-out

Decline marketing newsletters, or withdraw consent to wishlist survey data processing.

Data Portability

Export raw simulation project files and account history logs for portability.

Non-Discrimination

US residents will not face service throttling or price hikes for exercising privacy rights.

Email [email protected] featuring "Data Rights Request" to exercise these rights.

8. Cookies & Local Storage Policy

We use cookies and local storage (such as IndexedDB and localStorage) to run core session features, remember simulation configuration presets, verify payments with our billing processor, and analyze origin traffic parameters.

Essential login tokens, anti-CSRF protections, and checkout verification cannot be disabled. To learn more about how we utilize cookies and how you can manage your preferences, please consult our detailed Cookie Policy.

9. Beta Tester Data & Diagnostics

By participating in our Beta Program, we collect supplementary demographic information (demographics, followers, creator platforms) and technical runtime data (average frame rates, canvas WebGL memory logs, physics calculation thread timeouts) to debug simulation engines.

For comprehensive information regarding beta program terms, responsibilities, and data collection procedures, please view our full Beta Testing Terms page.

9b. Affiliate Program Data

If you join our affiliate program, we process the information in your application (age confirmation, social platform links, follower counts, country) and, upon approval, your PayPal email to send payouts. When you share your referral link, a first-party ball_ref cookie records the referral: it is only set after you accept cookies, and the referral is permanently associated with the new account at signup.

We share aggregate statistics (counts and earnings) with affiliates; we never disclose the personal information of referred users to them. For full details on commissions, payouts, and your obligations, see the Affiliate Program Terms.

10. Children's Privacy

Service Audience: BallEngine is a software platform. Our Services are not directed to, or intended for, children under the minimum age required to consent to data processing in their jurisdiction (such as children under 13 in the United States, or under 16 in certain European jurisdictions). Users must meet these age requirements to create an account or use our Services.

Data Collection and Account Removal: We do not knowingly collect, store, or process personal information from children below the applicable age threshold. If we discover that a minor under the minimum age has provided us with personal data, we will take steps to delete that information and close the associated account as quickly as possible.

Parent and Guardian Rights: If you are a parent or legal guardian and believe your child has provided us with personal information without your consent, please contact us immediately at [email protected]. We will investigate reasonable requests and take appropriate actions to purge the data and close any corresponding account.

YouTube

11. YouTube API Services & Google User Data

BallEngine integrates with YouTube API Services to let you publish and schedule your rendered videos directly to your own YouTube channel. This integration is entirely optional. You may choose to connect your YouTube account, and you may use every other feature of BallEngine without ever connecting it.

BallEngine only accesses your YouTube information after you explicitly authorize it through Google's OAuth 2.0 consent screen, and only accesses the specific permissions (scopes) you grant during that flow. We never receive or store your Google password. By using the YouTube integration, you agree to be bound by the YouTube Terms of Service.

A. YouTube & Google Data We Access

We only access and store the information necessary to provide the publishing feature you request:

  • Google Account IdentifierYour Google account email address and profile name (via the userinfo.email and userinfo.profile scopes), used to identify the connected account.
  • Channel InformationYour YouTube channel ID and channel title, retrieved once at connection to display which channel is linked.
  • OAuth Access & Refresh TokensThe OAuth access token, refresh token, token type, granted scopes, and expiry timestamp issued by Google, required to perform uploads on your behalf without re-prompting each time.
  • Upload & Scheduling MetadataFor each video you choose to publish: the video title, description, tags, scheduled publish date/time, privacy status (private / unlisted / public), and the resulting YouTube video ID and API response.

We do not request, download, or store your existing video library, analytics, comments, subscribers, or watch history. We only access what is required to upload and schedule the specific videos you submit.

B. How We Use This Data

Uploading and scheduling videos to your channel
Setting titles, descriptions, tags, and publish dates
Applying your chosen privacy status when publishing
Displaying your connected channel name in the app
Managing and listing your recent uploads and schedules
Maintaining application functionality and improving your publishing experience

C. Storage & Security of Google Data

OAuth credentials are stored securely in our access-controlled database and are transmitted only over encrypted HTTPS/TLS connections. Tokens are kept encrypted at rest wherever supported by our infrastructure, access is restricted to the systems and personnel required to operate the publishing feature, and Google user data is never intentionally exposed publicly or made available to other users.

D. Data Refresh & 30-Day Retention

In line with the YouTube API Services Developer Policies (Section III.E.4), we do not store or display data retrieved from the YouTube API for longer than 30 days without refreshing it:

  • Your authorized channel information (channel ID and title) is automatically re-fetched from the YouTube API and refreshed at least once per day whenever the integration is in use, so the data you see is always current.
  • Records derived from the API for videos you publish or schedule (including the returned YouTube video ID and API response) are automatically and permanently deleted from our systems once they are older than 30 days.
  • We do not retain YouTube view counts, subscriber counts, or other statistics as Authorized or Non-Authorized Data beyond this 30-day window.

You can remove all stored YouTube data at any time by disconnecting your account (see Section E below), which takes effect immediately.

E. Limited Use & Data Sharing Commitment

BallEngine's use of information received from Google APIs adheres to the Google API Services User Data Policy , including its Limited Use requirements. We only use Google user data to provide and improve the features you explicitly request, and never for unrelated purposes.

  • We do not sell YouTube user data.
  • We do not share YouTube data with advertisers or use it to build advertising profiles.
  • We do not use Google user data to train generalized AI/ML models.
  • We do not use it for unauthorized analytics or transfer it except as permitted under Google's policies.
  • We only share it when legally required, to provide the service you requested, or with the infrastructure providers strictly necessary to operate the feature (see Section 5).

F. Your Control, Revoking Access & Deletion

You remain in full control of the connection at all times. You may:

  • Disconnect your YouTube account from within the BallEngine YouTube Publishing page, which removes the stored tokens and channel details for that connection.
  • Reconnect later at any time by re-authorizing through Google's consent screen.
  • Revoke BallEngine's access directly with Google at any time by visiting myaccount.google.com/permissions . Revoking access immediately prevents any further API access by BallEngine.
  • Request permanent deletion of all stored YouTube/Google data, or of your entire BallEngine account, by emailing [email protected] with the subject "YouTube Data Deletion".

When you disconnect, or when you delete your BallEngine account, the associated OAuth tokens and connection records are deleted from our active systems within 30 days. Residual copies may persist in encrypted backups for up to 90 days before they are automatically overwritten, after which they are permanently unrecoverable. Deleting data from BallEngine does not delete videos already published to your YouTube channel, those remain under your control on YouTube.

Your use of Google and YouTube services through BallEngine is also governed by the Google Privacy Policy. Questions about the YouTube integration or Google data can be sent to [email protected].

12. TikTok API Services & User Data

BallEngine integrates with the TikTok Content Posting API to let you schedule and publish your rendered videos directly to your own TikTok account. This integration is entirely optional.

BallEngine only accesses your TikTok information after you explicitly authorize it through TikTok's OAuth consent screen, and only accesses the specific permissions you grant during that flow. By using the TikTok integration, you agree to be bound by the TikTok Terms of Service and TikTok Privacy Policy .

A. TikTok Data We Access

We only access and store the information necessary to provide the publishing feature:

  • TikTok Account IdentifierYour TikTok display name and profile info used to identify the connected account.
  • OAuth Access TokensThe OAuth tokens issued by TikTok, required to perform uploads on your behalf.
  • Upload MetadataThe video title, scheduled time, hashtags, and resulting TikTok video ID.

We do not request, download, or store your existing TikTok video library, analytics, comments, or direct messages.

B. How We Use This Data

Uploading and scheduling videos
Setting captions and privacy statuses

C. Data Refresh & 30-Day Retention

We do not store or display data retrieved from the TikTok API for longer than 30 days without refreshing it. Your authorized profile information is automatically re-fetched and refreshed at least once per day while the integration is in use, and records we derive from the API for videos you publish (including the returned TikTok video ID and API response) are automatically and permanently deleted once they are older than 30 days.

D. Your Control, Revoking Access & Deletion

You may disconnect your TikTok account from BallEngine at any time. When you disconnect, the associated OAuth tokens are deleted from our systems. You can also revoke access directly from your TikTok account's security settings. Deleting data from BallEngine does not delete videos already published to your TikTok account.

To request permanent deletion of all stored TikTok data, email [email protected] with the subject "TikTok Data Deletion".

Facebook

13. Facebook (Meta Graph API) API Services & User Data

BallEngine integrates with the Meta Graph API to let you publish and schedule your rendered videos directly to your own Facebook Pages. This integration is entirely optional and is separate from the Instagram integration described in Section 13b below, connecting Facebook does not connect Instagram, and vice versa.

BallEngine only accesses your Facebook information after you explicitly authorize it through Facebook's OAuth consent screen, and only accesses the specific permissions you grant during that flow. By using this integration, you agree to be bound by the Meta Terms and Meta Privacy Policy .

A. Facebook Data We Access

We only access and store the information necessary to provide the publishing feature:

  • Pages You ManageThe IDs and names of the Facebook Pages you manage, used to let you choose which Page to publish to.
  • OAuth Access & Page TokensThe long-lived user access token and Page access tokens issued by Meta, required to perform uploads on your behalf.
  • Upload MetadataThe video caption, target Page, and the resulting Facebook post ID and API response.

We do not request, download, or store your existing Facebook content library, analytics, comments, or direct messages.

B. How We Use This Data

Uploading videos to your Facebook Page (Reels)
Setting captions and selecting the target Page

C. Data Refresh & 30-Day Retention

We do not store or display data retrieved from the Meta Graph API for longer than 30 days without refreshing it. Your authorized Pages are automatically re-fetched and refreshed at least once per day while the integration is in use, and records we derive from the API for videos you publish (including the returned post IDs and API responses) are automatically and permanently deleted once they are older than 30 days.

D. Your Control, Revoking Access & Deletion

You may disconnect your Facebook account from BallEngine at any time, which deletes the stored tokens and Page details. You can also revoke BallEngine's access directly from your Facebook Business Integrations settings. Deleting data from BallEngine does not delete content already published to your Facebook Page.

To request permanent deletion of all stored Facebook data, email [email protected] with the subject "Meta Data Deletion", or see our Data Deletion page.

Instagram

13b. Instagram (Instagram API with Instagram Login) & User Data

BallEngine integrates with the Instagram API with Instagram Login to let you publish your rendered videos directly to your own Instagram account as Reels. This integration is entirely optional and completely separate from the Facebook integration above, you authenticate directly with Instagram, and no Facebook account or Facebook Page is required or connected. It requires an Instagram Business or Creator account, and only connects when you explicitly click "Connect Instagram".

BallEngine only accesses your Instagram information after you explicitly authorize it through Instagram's own login/consent screen, and only accesses the specific permissions you grant. We never receive your Instagram password. By using this integration, you agree to be bound by the Instagram Terms of Use and Instagram Privacy Policy .

A. Instagram Data We Access

We only access and store the information necessary to provide the publishing feature:

  • Instagram Account IdentityYour Instagram professional account's user ID, username, and account type (Business or Creator), used to confirm the connection, display which account is linked, and target it when publishing.
  • OAuth Access TokenThe long-lived Instagram access token issued to us when you authorize the connection, required to publish on your behalf without re-prompting each time.
  • Upload MetadataThe video caption and the resulting Instagram media ID and API response for each Reel you choose to publish.

We do not request, download, or store your existing Instagram media library, followers, insights, comments, or direct messages.

B. How We Use This Data

Publishing videos to your Instagram account as Reels
Setting the caption and displaying your connected @username

C. Data Refresh & 30-Day Retention

We do not store or display data retrieved from the Instagram API for longer than 30 days without refreshing it. Your authorized account information is kept current while the integration is in use, and records we derive from the API for videos you publish (including the returned Instagram media ID and API response) are automatically and permanently deleted once they are older than 30 days.

D. Your Control, Revoking Access & Deletion

You may disconnect your Instagram account from BallEngine at any time from the Publish page, which immediately deletes the stored access token and account details. You can also revoke BallEngine's access directly from your Instagram Apps and Websites settings. Deleting data from BallEngine does not delete content already published to your Instagram account.

To request permanent deletion of all stored Instagram data, email [email protected] with the subject "Instagram Data Deletion", or see our Data Deletion page.

Threads

13c. Threads (Threads API by Meta) & User Data

BallEngine integrates with the Threads API by Meta to let you publish your rendered videos directly to your own Threads profile as video posts. This integration is entirely optional and completely separate from the Facebook and Instagram integrations above, you authenticate directly with Threads, and no Facebook or Instagram connection inside BallEngine is required. It only connects when you explicitly click "Connect Threads".

BallEngine only accesses your Threads information after you explicitly authorize it through Threads' own login/consent screen, and only accesses the specific permissions you grant (basic profile and content publishing). We never receive your Threads password. By using this integration, you agree to be bound by the Threads Terms of Use and the Meta Privacy Policy .

A. Threads Data We Access

We only access and store the information necessary to provide the publishing feature:

  • Threads Account IdentityYour Threads account's user ID and username, used to confirm the connection, display which account is linked, and target it when publishing.
  • OAuth Access TokenThe long-lived Threads access token issued to us when you authorize the connection, required to publish on your behalf without re-prompting each time.
  • Upload MetadataThe post text and the resulting Threads media ID and API response for each video you choose to publish.

We do not request, download, or store your existing Threads posts, followers, insights, replies, or direct interactions.

B. How We Use This Data

Publishing videos to your Threads profile as video posts
Setting the post text and displaying your connected @username

C. Data Refresh & 30-Day Retention

We do not store or display data retrieved from the Threads API for longer than 30 days without refreshing it. Your authorized account information is kept current while the integration is in use, and records we derive from the API for videos you publish (including the returned Threads media ID and API response) are automatically and permanently deleted once they are older than 30 days.

D. Your Control, Revoking Access & Deletion

You may disconnect your Threads account from BallEngine at any time from the Publish page, which immediately deletes the stored access token and account details. You can also revoke BallEngine's access directly from your Threads account settings . Deleting data from BallEngine does not delete content already published to your Threads profile.

To request permanent deletion of all stored Threads data, email [email protected] with the subject "Threads Data Deletion", or see our Data Deletion page.

Pinterest

13d. Pinterest (Pinterest API) & User Data

BallEngine integrates with the Pinterest API to let you publish your rendered videos directly to your own Pinterest boards as video pins. This integration is entirely optional and only connects when you explicitly click "Connect Pinterest" and authorize BallEngine on Pinterest's own consent screen.

BallEngine only accesses the specific permissions you grant (reading your profile and boards, and creating pins). We never receive your Pinterest password. By using this integration, you agree to be bound by the Pinterest Terms of Service and Pinterest Privacy Policy .

A. Pinterest Data We Access

We only access and store the information necessary to provide the publishing feature:

  • Pinterest Account IdentityYour Pinterest username, used to confirm the connection and display which account is linked.
  • Board List (not stored)The names and IDs of your boards, fetched live each time the publish screen loads so you can choose which board a pin goes to. We do not store your board list at rest.
  • OAuth Access & Refresh TokensThe Pinterest tokens issued when you authorize the connection, required to publish on your behalf without re-prompting each time.
  • Upload MetadataThe pin title/description, target board ID, and the resulting Pinterest pin ID and API response for each video pin you choose to publish.

We do not request, download, or store your existing pins, followers, analytics, or messages.

B. How We Use This Data

Publishing videos as video pins to the board you choose
Listing your boards in the picker and displaying your connected @username

C. Data Refresh & 30-Day Retention

We do not store or display data retrieved from the Pinterest API for longer than 30 days without refreshing it. Board data is fetched live and never stored. Records we derive from the API for pins you publish (including the returned pin ID and API response) are automatically and permanently deleted once they are older than 30 days.

D. Your Control, Revoking Access & Deletion

You may disconnect your Pinterest account from BallEngine at any time from the Publish page, which immediately deletes the stored tokens and account details. You can also revoke BallEngine's access directly from your Pinterest connected apps settings. Deleting data from BallEngine does not delete pins already published to your boards.

To request permanent deletion of all stored Pinterest data, email [email protected] with the subject "Pinterest Data Deletion", or see our Data Deletion page.

X

13e. X (X API, formerly Twitter) & User Data

BallEngine integrates with the X API (formerly the Twitter API) to let you publish your rendered videos directly to your own X profile as video posts. This integration is entirely optional and only connects when you explicitly click "Connect X" and authorize BallEngine on X's own consent screen.

BallEngine only accesses the specific permissions you grant (reading your basic profile, uploading media, and creating posts). We never receive your X password. By using this integration, you agree to be bound by the X Terms of Service and the X Privacy Policy .

A. X Data We Access

We only access and store the information necessary to provide the publishing feature:

  • X Account IdentityYour X account's user ID and username, used to confirm the connection and display which account is linked.
  • OAuth Access & Refresh TokensThe X tokens issued when you authorize the connection, required to publish on your behalf without re-prompting each time. X access tokens are short-lived and are refreshed automatically while the connection is in use.
  • Upload MetadataThe post text and the resulting X post ID and API response for each video you choose to publish.

We do not request, download, or store your existing posts, followers, timelines, direct messages, or analytics.

B. How We Use This Data

Publishing videos to your X profile as video posts
Setting the post text and displaying your connected @username

C. Data Refresh & 30-Day Retention

We do not store or display data retrieved from the X API for longer than 30 days without refreshing it. Your authorized account information is kept current while the integration is in use, and records we derive from the API for videos you publish (including the returned X post ID and API response) are automatically and permanently deleted once they are older than 30 days.

D. Your Control, Revoking Access & Deletion

You may disconnect your X account from BallEngine at any time from the Publish page, we revoke the token with X and immediately delete the stored tokens and account details. You can also revoke BallEngine's access directly from your X connected apps settings. Deleting data from BallEngine does not delete posts already published to your X profile.

To request permanent deletion of all stored X data, email [email protected] with the subject "X Data Deletion", or see our Data Deletion page.

Snapchat

13f. Snapchat (Marketing API, Public Profile) & User Data

BallEngine integrates with the Snapchat Marketing API (Public Profile) to let you publish your rendered videos directly to your own Snapchat Public Profile as Spotlight videos. This integration is entirely optional and requires a Snapchat Business account with a Public Profile. It only connects when you explicitly click "Connect Snapchat".

BallEngine only accesses your Snapchat information after you explicitly authorize it through Snapchat's own login/consent screen, and only accesses the specific permissions you grant. We never receive your Snapchat password. By using this integration, you agree to be bound by the Snap Business Services Terms and the Snap Privacy Policy .

A. Snapchat Data We Access

We only access and store the information necessary to provide the publishing feature:

  • Public Profile IdentityYour Snapchat Public Profile ID and display name (and, where applicable, your Business organization ID), used to confirm the connection, display which profile is linked, and target it when publishing.
  • OAuth Access & Refresh TokensThe OAuth tokens issued by Snapchat when you authorize the connection, required to publish on your behalf without re-prompting each time.
  • Upload MetadataThe Spotlight description and the resulting Snapchat media ID, Spotlight ID, and API response for each video you choose to publish.

We do not request, download, or store your friends list, chats, Snaps, Memories, existing Spotlight or Story content, or analytics.

B. How We Use This Data

Publishing videos to your Snapchat Public Profile as Spotlights
Setting the Spotlight description and displaying your connected profile name

C. Data Refresh & 30-Day Retention

We do not store or display data retrieved from the Snapchat API for longer than 30 days without refreshing it. Your authorized profile information is kept current while the integration is in use, and records we derive from the API for videos you publish (including the returned Snapchat media ID, Spotlight ID, and API response) are automatically and permanently deleted once they are older than 30 days.

D. Your Control, Revoking Access & Deletion

You may disconnect your Snapchat account from BallEngine at any time from the Publish page, which immediately deletes the stored tokens and connection details. You can also revoke BallEngine's access directly from your Snapchat account permissions . Deleting data from BallEngine does not delete Spotlights already published to your Public Profile.

To request permanent deletion of all stored Snapchat data, email [email protected] with the subject "Snapchat Data Deletion", or see our Data Deletion page.

14. Contact Information

Questions about your data, security, YouTube / TikTok / Meta API access, or a data deletion request? Our dedicated team is ready to assist you at [email protected].

Cookie Preferences

We use cookies that are necessary for the site to work, and, only with your consent, cookies for preferences, analytics and attribution. You can change or withdraw your choice at any time. Cookie Policy · Privacy Policy

Compliant with GDPR (EU), DPDPA (India), CCPA (California) and the ePrivacy Directive.