Privacy
In force from 25 September 2026
10xvid is run by Core Habits, MB, which decides what happens to your data and answers for it. This says what we hold about you, why we hold it, and what you can do about it. We hold as little as we can, and we have never sold anybody's data.
What we hold
- Your account. Your email address, your name if you give one, the link to your app or site, and which of our ads or links brought you, if one did. If you set a password we store a one way scramble of it, never the password itself.
- Your work. The screens, logos, footage and text you upload, and the strategies, blueprints and ads we build from them.
- Your plan. Which plan you are on, when it renews, and how much of your allowance you have used.
- Signing in with Google. If you use the Google button we receive your email address, your name and a stable id from Google. Nothing else, and never your Google password.
We do not hold your card. Payment happens at Stripe, and what comes back to us is your email address, what you bought, and whether it is paid.
Why we hold it
- To give you what you paid for. That is the contract between us.
- To keep the service safe: limiting sign-in tries, spotting abuse.
- To meet the law, which in Lithuania means keeping invoices for ten years.
- To write to you about your own account. We do not add you to a marketing list because you bought something.
- To see which of our own ads bring people to 10xvid. You can turn this off below.
Cookies
Signing in. Once you sign in, one cookie holds a random token that says this browser is signed in. No script can read it, and it is gone when you sign out.
Our ads. A Meta cookie lets Meta, the company behind Facebook and Instagram, tell us when someone who saw one of our ads visits, creates an account or buys a plan, so we spend on the ads that work and stop the ones that do not. It is on unless you turn it off here. A small cookie of ours remembers that choice, and holds nothing else.
During checkout Stripe sets its own cookies to stop card fraud.
Who else sees it
- Stripe takes the payment and holds the payment record.
- Cloudflare runs the site, the accounts database, the network in front of both, and carries the messages you send us from the contact form.
- Resend sends the few emails we send: confirming your address, and setting a password.
- Meta, unless you turned its cookie off above: that you visited, and when you create an account, confirm it, start your free ad or buy a plan, with what you paid. Your email address reaches Meta only as a one way scramble (a hash), which it uses to match the visit to one of its own users.
- Anthropic models do part of the research and the writing inside our system. Your work is not used to train anybody's model.
That is the whole list. We do not sell or rent your data. The only advertising use is the Meta measurement above, for our own ads.
Where it lives, and for how long
Accounts and work are held on Cloudflare, in Europe. Some of the services above are based outside the EU and move data under the European Commission standard contractual clauses.
We keep your account and your work while your account is open, and for 90 days after you close it so an accident can be undone. Invoices are kept for ten years because Lithuanian law says so. Records of sign-in tries are kept for an hour.
What you can ask for
Under the GDPR you can ask us for a copy of what we hold, ask us to correct it, ask us to delete it, ask us to stop using it in a particular way, or ask for it in a portable form. Write to us and we answer within 30 days, usually the same week.
If you think we have handled your data badly you can complain to the State Data Protection Inspectorate of Lithuania, at vdai.lrv.lt. We would rather you told us first.
Children
10xvid is for businesses. It is not meant for anybody under 16, and we do not knowingly hold their data.
Changes
If we change this notice in a way that matters, we email you before it takes effect. The date at the top always says which version you are reading.