01 Who this policy covers
Projunity is used by two kinds of people, and this policy applies to both:
- Studios and their members — the creative studios, agencies, and independent professionals who sign up for a Projunity account to manage their projects and clients.
- Clients and invited guests — the people a studio invites into a project portal to view work, review deliverables, leave feedback, and approve.
When a studio uses Projunity to work with its own clients, the studio decides what projects and files to put into Projunity and who to invite. For that project information, the studio is the party that controls the data, and Projunity processes it on the studio's behalf to provide the service.
02 Information you provide
We collect the information you give us directly, including:
- Account details — your email address, display name, and (if you sign in with a password) a securely hashed version of that password. Passwords are hashed with bcrypt; we never store them in plain text.
- Profile information — optional details you choose to add, such as a headline, bio, availability, general region, avatar image, and links to your website, reel, or portfolio.
- Studio information — your studio's name, a chosen subdomain/slug, logo, and brand colors used to style your client-facing portal.
- Client records you create — when a studio adds a client, we store the client's name, company name, and email, and optionally a phone number.
- Inquiries and forms — information you submit through contact, intake, or enterprise inquiry forms (for example a name, email, company, phone number, and your message).
- Early-access registration — if you join our pre-launch waitlist on the marketing site, we collect your name, email, the type of work you do, how you heard about us, and any details you share.
03 Studio, member & client information
Projunity is built around studios inviting members and clients into shared workspaces. When you accept an invitation, we create an account tied to your email so you can sign in. Some accounts are created by invitation and have no password until you set one — those accounts sign in through a secure one-time login link sent to your email.
Information a studio enters about its members and clients (names, emails, company, phone) is visible within that studio's workspace to the people the studio has authorized. If you're a client, the studio that invited you controls your access and the project information shared with you; please direct requests about that information to the studio, and contact us if you need help.
04 Project content & uploaded files
Projunity stores the work you put into it: projects, deliverables, uploaded files and assets (images, video, audio, documents), version history, comments, review markups, approvals, and messages. For each file we also keep metadata such as the original filename, a display label, file type, size, upload time, and its visibility state (for example, internal, client-visible, or archived).
Uploaded files are stored using Cloudflare R2 object storage. Files are served through short-lived, signed links that expire, rather than being left openly accessible on the internet.
Your work stays yours. Uploading content to Projunity does not transfer ownership of it to us. We use it only to operate the service for you — we do not use your creative work, client files, or project content for advertising, and we do not use it to train artificial-intelligence models. See our Terms of Service for the ownership and content terms in full.
05 Usage, device & log information
When you use Projunity, our servers automatically record basic technical information needed to run and secure the service, such as your IP address, browser and device type, the pages or actions requested, and the date and time. We keep application logs for security, troubleshooting, and to keep the service reliable.
We also keep an activity history within a workspace (for example, that a file was shared or a deliverable was approved) so studios and clients have a clear record of what happened on a project.
06 Cookies & analytics
Cookies we use in the app
When you sign in to Projunity, we set a single essential session cookie so the app knows you're logged in as you move between pages. This cookie is necessary for the service to work and typically lasts up to 30 days unless you sign out. We don't use advertising cookies in the application.
Bot protection
On sign-in, sign-up, and certain public forms we use Cloudflare Turnstile to tell humans from bots. To do this, Turnstile receives information such as your IP address and a challenge token. It helps us prevent abuse and spam.
Analytics on our marketing website
Our public marketing website (projunity.com) uses Google Analytics to understand, in aggregate, how visitors find and use the site. This helps us improve it. Google Analytics uses cookies and collects information such as a pseudonymous identifier, pages viewed, and general location. You can opt out using Google's browser add-on or your browser's cookie controls. We do not run behavioral advertising or third-party ad tracking.
07 Payments & subscriptions
There are two kinds of payment in Projunity, and they involve different information. Your subscription is money you pay us. Payments between users — a client paying a studio, or a studio paying a collaborator — is money that moves between other people, with Projunity providing the software. Both run on Stripe, and neither puts your card number in our hands.
Your Projunity subscription
Paid Studio subscriptions are processed by Stripe, our payment processor. When you start a subscription or trial, you enter your payment details directly with Stripe on a Stripe-hosted checkout or billing page. Stripe handles the card transaction and, where applicable, the customer billing portal.
We do not store your full card details. Projunity does not receive or hold your card number, expiration, security code, or a payment token. We keep only what we need to manage your subscription — such as a Stripe customer and subscription identifier, the current plan and status, the current period end date, and whether a payment method is on file. Your actual card information stays with Stripe.
Stripe processes your payment information under its own terms and privacy policy. We share with Stripe the details needed to bill you, such as your email, name, and an internal studio identifier.
Payments between users (Stripe Connect)
If you use Projunity to be paid — a studio invoicing a client, or a collaborator invoicing a studio — you open a Stripe connected account through us and complete Stripe's onboarding on Stripe's own pages. The identity, business, and bank details Stripe asks for during that onboarding go to Stripe, not to us. Whoever pays an invoice enters their card details on a Stripe-hosted payment page, so those never reach Projunity either.
What we do receive and keep is the record of the transaction, which we need in order to show an invoice as paid, work out what each party kept, issue refunds and credit notes, and reconcile our own fees:
- Your connected-account identifier, and the status Stripe reports for it — whether it can accept payments, whether payouts are enabled, whether Stripe is waiting on something, and when we last checked.
- Stripe identifiers for each transaction: the checkout session, payment intent, charge, refund, and dispute.
- The money: the amount, the currency, our platform fee, Stripe's processing fee, and the net, along with any amounts refunded and the portion of our fee returned with them.
- Who and what it relates to: the invoice, the project where applicable, the studio or member being paid, and the account of the person who paid, when they were signed in.
- Payment status over time, including refunds and whether a payment has been disputed, the reason Stripe gives, and how the dispute was resolved.
Stripe holds the sensitive parts; we hold the record. Projunity does not receive or store card numbers, expiration dates, security codes, bank account or routing numbers, or the identity documents Stripe collects during onboarding. We keep transaction records and identifiers, which is a real amount of information about your business — we would rather say so plainly than tell you Stripe handles everything.
Information flows both ways with Stripe here: we send Stripe what it needs to create your connected account and process a payment, and Stripe sends us back account status and transaction results — partly as you use Projunity and partly through automatic notifications from Stripe — so our records stay in step with what actually happened. Stripe handles this information under its own terms and privacy policy, and as the merchant of record on your own payments you can see them in your Stripe dashboard as well as here.
08 Service providers we use
We rely on a small number of trusted service providers to operate Projunity. They may process information on our behalf only to provide their service to us, and are expected to protect it:
| Provider | What it does for Projunity |
|---|---|
| Railway | Application hosting and our PostgreSQL database, where account and project data is stored. |
| Cloudflare R2 | Storage for uploaded files and assets. |
| Cloudflare Turnstile | Bot and abuse protection on sign-in, sign-up, and public forms. |
| Stripe | Subscription billing, and — through Stripe Connect — payments between users, connected-account onboarding, and payouts (see Section 07). |
| Resend | Sending transactional email, such as login links, invitations, and notifications. |
| Optional "Sign in with Google" for accounts that choose it. |
If we add or change a core provider that handles personal information, we'll update this page.
09 How we use information
We use the information described above to:
- Provide, operate, and maintain Projunity and your workspace;
- Authenticate you, keep your account secure, and prevent fraud and abuse;
- Store and display your projects, files, feedback, and approvals to the people you've authorized;
- Process subscriptions, trials, and billing;
- Operate the payment features between users — creating and updating connected accounts, processing invoice payments and refunds, calculating and collecting our platform fee, and reconciling those transactions with Stripe;
- Send you service-related email such as login links, invitations, notifications, and receipts;
- Respond to your inquiries and provide support;
- Understand and improve how the product and website perform;
- Comply with legal obligations and enforce our terms.
We do not sell your personal information, and we do not use your uploaded creative work or client content for advertising or to train AI models.
10 When we share information
We share information only in these situations:
- Within your workspace — with the studio members, clients, and guests you or your studio have authorized to see a given project.
- With service providers — the providers listed in Section 08, acting on our behalf to run the service.
- For legal reasons — when we believe in good faith that disclosure is required to comply with the law, a valid legal request, or to protect the rights, safety, or property of Projunity, our users, or the public.
- In a business transfer — if Projunity is involved in a merger, acquisition, or sale of assets, information may transfer as part of that transaction, subject to this policy.
11 Security
We take reasonable measures to protect your information. Passwords are stored as bcrypt hashes, connections are encrypted in transit, uploaded files are served through short-lived signed links, sensitive operations are protected by bot detection, and access to production systems is limited. No method of transmission or storage is completely secure, so we can't guarantee absolute security, but we work to protect your information and to address issues promptly.
12 Data retention
We keep your information for as long as your account is active and as needed to provide the service. When content or an account is removed, we may retain some information for a limited period where necessary — for example, to keep an accurate project and approval history for the studio, to meet legal, tax, or accounting obligations, to resolve disputes, and to enforce our agreements.
When an account is deleted, related history that other people still rely on (such as a project's approval record) may be kept with personal identifiers removed. Backups and logs are cycled out over time in the normal course of operating the service.
13 Your choices & account deletion
You have choices about your information:
- Access and update — you can review and update much of your profile and studio information directly in the app.
- Account deletion — you can ask us to delete your account. Because studios, clients, and shared projects are connected, deleting an account that owns or is attached to shared work may be limited to protect other people's records; we'll explain the options when you ask. Where a full deletion isn't possible without harming others' records, we can remove or anonymize your personal details instead.
- Email preferences — you can opt out of non-essential emails. Some messages, such as login links, billing notices, and important service notices, are necessary to use Projunity.
- Clients — if a studio invited you and you want your information changed or removed, contact that studio, or reach out to us for help.
Depending on where you live, you may have additional rights over your personal information, such as the right to access, correct, or delete it. To make a request, contact us using the details below.
14 Communications
We send email through Resend to make the service work — for example, one-time login links, invitations to a project or studio, notifications about activity on your projects, and invoices or receipts. If you joined our early-access list, we may email you about the launch and product updates; you can opt out of those at any time.
15 Children's privacy
Projunity is a business tool intended for people who are at least 18 years old, or the age of majority where they live. It is not directed to children, and we do not knowingly collect personal information from children. If you believe a child has provided us information, please contact us and we'll remove it.
16 Changes to this policy
We may update this policy as Projunity evolves. When we make material changes, we'll revise the "Last updated" date above and, where appropriate, provide additional notice. Your continued use of Projunity after an update means you accept the revised policy.
17 Contact us
If you have questions about this policy or your information, contact us at privacy@projunity.com. Projunity is operated by Projunity LLC, located in Wisconsin, United States.
This Privacy Policy is provided for general informational purposes to describe our current practices and is not legal advice. As Projunity grows, these practices — and this page — may change.