Moziflow
HomePricingFAQ
HomePricingFAQ
EnglishFrançaisDeutschItalianoPortuguêsРусскийEspañolहिन्दीالعربيةBahasa IndonesiaTiếng Việtไทย한국어日本語繁體中文简体中文
Download

Legal

Moziflow Privacy Policy

Version 1.2 · Effective September 8, 2026 · Last updated September 8, 2026

Moziflow respects your privacy. This Policy explains how Moziflow handles information when you visit the Moziflow website, create or use a Moziflow account, purchase or manage a subscription, request a refund, download or update the desktop software, use its features, or contact support.

The Moziflow desktop software is built around a local workspace. Your manuscript, characters, worldbuilding, and creative archive are stored on your device by default. During normal use, Moziflow does not automatically collect or transmit your model API keys and does not upload your work to train Moziflow models. When you use AI features, the instructions, manuscript excerpts, and creative context needed to complete your request are sent directly from the desktop software to the model provider you choose. Information contained in support material that you voluntarily send to Moziflow is an exception.

This version describes account, authentication, subscription, payment, refund, public website analytics, and software-update services and the providers that support them.

1. Scope

This Policy applies to:

  • the official Moziflow website and its language versions;
  • Moziflow account, authentication, and session services;
  • Moziflow subscriptions, billing, payment, and refund services;
  • Moziflow installers, downloads, and software-update services;
  • the Moziflow desktop software; and
  • support requests and diagnostic materials that you voluntarily send to Moziflow.

This Policy describes Moziflow’s handling of information, including information shared with service providers. Model providers you choose and third parties that process information for their own legal or business purposes, including payment services, also handle information under their own privacy policies.

2. Information Moziflow Handles

2.1 Website Connection and Security Information

When you visit the website or download an installer, website infrastructure may process your IP address, request time, browser or device type, User-Agent, requested path, referring page, downloaded file, and information associated with security events. This information is used to deliver pages and installers, maintain security, prevent abuse, and troubleshoot problems.

2.2 Local Browser Settings

The website stores the following settings in your browser:

  • the language you actively select is stored in local storage until you clear browser data or choose another language; and
  • your theme choice and page position during a language switch are stored in session storage and normally expire when the relevant browser tab or session ends.

Moziflow uses strictly necessary cookies and session information for sign-in, account access, human verification, and abuse prevention. Blocking these cookies can prevent account and payment features from working. Moziflow does not use advertising cookies, behavioral analytics cookies, or cross-site advertising tracking technologies.

2.3 Download and Update Information

When you download an installer, check for updates, or download an update, content-delivery and security infrastructure may process the requested installer or update file, operating system or architecture selection, IP address, request time, and security logs. This information is used to check release availability, deliver the requested files, protect distribution, and manage abnormal traffic.

2.4 Support Communications

When you contact Moziflow by email, we process your email address, message content, correspondence history, attachments, and other information you choose to provide. We use this information to respond, diagnose problems, maintain service security, and retain necessary communication records.

Do not include unrelated sensitive personal information, model API keys, access tokens, or other secrets in support messages.

2.5 Diagnostic Exports

Creating a diagnostic export in the desktop software only generates a local file on your device; it does not automatically transmit the file to Moziflow. Moziflow receives the export only if you separately send it through email or another support channel. A diagnostic export may contain application information, redacted runtime configuration, runtime logs, filenames, manuscript chapters, story settings, creative archive data, prompt context, or model-call records. The export process attempts to remove model API keys, access tokens, and some local paths, but it cannot guarantee detection of every sensitive detail that you placed in a manuscript, filename, or log.

Before sending a diagnostic export, inspect its files and remove anything you do not want to provide to Moziflow. Moziflow uses diagnostic material you send only to handle the associated support, security, or troubleshooting matter.

2.6 Account and Authentication Information

When you create or use a Moziflow account, Moziflow processes your account email, sign-in method and identifier, records of your acceptance of legal documents, session and device information, application version and platform, approximate country or region where available, and security records. Network and device information is also processed to secure sign-in and prevent abuse.

Verification codes and session credentials are used to authenticate sign-in, protect account access, and prevent unauthorized or repeated use of a sign-in request.

2.7 Subscription, Payment, and Refund Information

When you purchase or manage a subscription, Moziflow processes your account identifier, account email, selected plan, billing period, checkout language, checkout and order references, payment-provider subscription identifier, subscription status, paid-through date, and related event timestamps. We use these records to complete checkout, activate and maintain paid access, handle renewals and cancellation, prevent duplicate processing, and resolve billing issues.

Moziflow uses Waffo Pancake for hosted checkout and payment processing. To create checkout, we send Waffo Pancake your account identifier, account email, selected product, currency, checkout reference, language, and payment-return address. Waffo Pancake collects the payment-method, billing, and tax information required to complete your transaction and sends Moziflow the subscription and payment-status information needed to provide the service. Moziflow does not receive or store full payment-card numbers or card security codes.

When you request a refund or dispute a charge, we process the account email, order or transaction ID, payment date, reason, correspondence, and supporting information you provide. Necessary transaction references and request details are shared with Waffo Pancake to verify and process the refund or resolve the dispute. Waffo Pancake also handles payment information under its own privacy policy and applicable payment, tax, and recordkeeping requirements.

2.8 Public Website Analytics

On public marketing pages, Moziflow uses Cloudflare Web Analytics to understand page views and website performance. The browser sends page-load and performance information to Cloudflare. Cloudflare may process the page address, referring site, browser and device information, connection information, and timing metrics for this service. The analytics script is excluded from authentication, account, administration, and legal-document pages.

Cloudflare Web Analytics does not use analytics cookies or track individual visitors across websites. Moziflow does not send account identifiers, email addresses, manuscript content, or payment records to this analytics service. Moziflow retrieves only aggregate page-view counts for the current UTC day and the most recent 7 and 30 calendar days. These counts can be affected by sampling, browser blocking, and reporting delays and are not counts of unique people.

3. Information Kept on Your Device

The following information remains on your device by default and is not automatically uploaded to Moziflow merely because you use the desktop software:

  • novel text and chapters;
  • characters, worldbuilding, plot information, writing rules, and other creative archive data;
  • local workspace files;
  • model API keys; and
  • local desktop settings and runtime records.

Information included in support messages or diagnostic exports that you actively send is an exception. Information sent to your selected model provider when you use AI features is also outside Moziflow's local-storage boundary.

4. Third-Party Model Services

Moziflow lets you configure your own model service and API key. The desktop software sends the information required to complete a task directly to the service address you configure. Depending on the task, that information may include:

  • your instructions and prompts;
  • relevant manuscript excerpts;
  • characters, settings, outlines, and chapter summaries; and
  • other creative information needed to preserve context or perform generation, analysis, or revision.

Model providers may process and retain this information in different countries or regions. Their purposes, retention periods, training policies, and opt-out options are governed by your agreement with the provider and its privacy policy. Moziflow cannot access, correct, or delete this data on a provider’s behalf. Before using a model service, review its terms and privacy policy and select an account type and data settings appropriate for you.

5. Purposes and Legal Grounds

Moziflow handles information only as needed to:

  • provide the website, account, authentication, session, subscription, download, update, and support services you request;
  • process purchases, renewals, cancellation, refunds, and billing disputes and maintain accurate paid-access records;
  • remember interface settings you actively choose;
  • protect the website, downloads, and software against fraud, attacks, and abuse;
  • diagnose problems, maintain compatibility, improve stability, and understand aggregate public website usage;
  • establish, exercise, or defend legal claims; and
  • comply with applicable law.

Depending on applicable law, the legal grounds may include performing a service you request, Moziflow’s legitimate interests in operating and protecting the service, compliance with legal obligations, or your choice to submit optional materials. Moziflow does not use information supplied for support to build advertising profiles or train Moziflow models.

6. Disclosure of Information

Moziflow may disclose information:

  • to Google when you choose Google sign-in, for identity authentication under Google's terms and privacy policy;
  • to Cloudflare for website and download delivery, security protection, abuse prevention, Turnstile human verification, and public website analytics as described in Section 2.8;
  • to Resend for transactional verification codes and account security notices;
  • to Render for Account application and PostgreSQL hosting;
  • to Waffo Pancake for checkout, payment processing, subscription management, refunds, and billing disputes, as described in Section 2.7;
  • to other providers of installer storage and support email, to the extent necessary to provide those services;
  • to comply with applicable law, a court order, or a request from an authority with lawful jurisdiction;
  • to protect the rights, safety, and legitimate interests of Moziflow, users, or the public, or to investigate fraud, attacks, and abuse; and
  • in connection with a business transfer, restructuring, or service succession, subject to reasonable confidentiality and data-protection measures.

Moziflow does not sell personal information, share personal information for cross-context behavioral advertising, or use your manuscript to train Moziflow models.

7. Infrastructure and International Processing

Moziflow uses Cloudflare for website and download delivery, security, Turnstile human verification, and public website analytics; Render for Account application and PostgreSQL hosting; Resend for transactional email; Google for Google sign-in; and Waffo Pancake for checkout and payment services. These providers process the account, connection, authentication, delivery, subscription, payment, and security information needed for their services in countries or regions where they operate. Support email services may also involve international processing.

Your selected model provider determines its own processing locations under its terms. That model processing is triggered directly by your configuration and request and does not pass through a Moziflow model proxy.

Where required by applicable law, Moziflow uses appropriate contractual, technical, or organizational measures to protect international transfers controlled by Moziflow. Data-protection rules in another country or region may differ from those where you live.

8. Retention

Moziflow retains information for the following purposes and periods:

  • local browser settings are retained by your browser for the periods described in Section 2.2;
  • account, checkout, and subscription records are kept while your account exists and are removed when account deletion is completed, subject to the exceptions below;
  • short-lived sign-in verification data expires after use or the end of its validity period and is removed through routine cleanup; related verification-email records are normally retained for up to 7 days;
  • network and expired or revoked session records are normally retained for up to 30 days; inactive device records and ordinary account security records are normally retained for up to 90 days;
  • limited records needed to investigate high-risk security events or prevent duplicate payment processing may be retained for up to 180 days;
  • routine website, download, and security logs accessible to Moziflow are normally retained for no more than 30 days;
  • support emails, refund correspondence, and diagnostic material you send are normally deleted or anonymized within 12 months after the matter closes;
  • payment and tax records held by Waffo Pancake are retained under its privacy policy and applicable recordkeeping obligations; copies held by other infrastructure and email providers are subject to the applicable service configuration, provider agreements, and legal requirements;
  • local works and desktop settings remain under your control until you delete them; and
  • model-provider retention is governed by the provider’s terms and your account settings.

We delete or anonymize information when it is no longer needed for these purposes. Routine cleanup can occur after a record expires. Records needed for an unresolved dispute, security incident, or legal obligation may be retained for the time necessary to handle that matter. These exceptions do not authorize unrelated use of the retained information.

Minimized order, payment, and refund records are retained after account deletion for accounting, reconciliation, and dispute handling. The association with the deleted account is removed. These financial records currently have no automatic deletion period; they are not retained for advertising or unrelated profiling.

Moziflow stores only the latest three aggregate page-view snapshots, replacing them after successful refreshes. An earlier valid snapshot is kept if a refresh fails; individual analytics events, visitor identifiers, and IP addresses are not stored in the Account analytics database. Cloudflare processes its underlying analytics data under its own privacy policy and service retention settings.

9. Security

Moziflow uses reasonable technical and organizational measures appropriate to the product’s scale and risks to reduce unauthorized access, disclosure, alteration, and loss. These measures include minimizing server-side data, keeping secrets out of logs where practicable, encrypting data in transit, and redacting diagnostic material.

No storage or transmission method is completely secure. You should protect your device, model accounts, and API keys and maintain an independent backup of local works.

10. Your Rights and Choices

Depending on the law where you live, you may have the right to:

  • know whether Moziflow processes your personal information;
  • request access to or a copy of personal information held by Moziflow;
  • correct inaccurate information;
  • request deletion;
  • restrict or object to certain processing;
  • request data portability where applicable;
  • withdraw consent where processing relies on consent; and
  • complain to a competent data-protection or consumer-protection authority.

To submit a request, please see the contact details below. To protect your information, Moziflow may ask you to verify your identity through the original communication address or another reasonable method. Rights may be subject to conditions and exceptions under applicable law.

You can request account deletion from the account page after verifying your identity. If you have a subscription, cancel it and wait until it has ended before requesting deletion. An accepted deletion request signs you out of Web and Desktop and starts a 7-day period during which you can cancel the request. After that period, we process the deletion of your account and associated information, subject to the limited retention described in Section 8. Account deletion does not delete, upload, or lock books stored in your local workspace.

You manage local works directly on your device. For information held by a model provider, you must exercise your rights with that provider; Moziflow cannot complete the request on its behalf.

11. Children and Minors

Moziflow is not directed to children under 13 and does not knowingly collect their personal information. A person who has not reached the age to consent or contract independently where they live should use Moziflow only with the consent and supervision of a parent or legal guardian. If you believe a child provided personal information to Moziflow without appropriate authorization, please see the contact details below.

12. Changes to This Policy

Moziflow may update this Policy as the product, technology, or legal requirements change. An updated Policy will show a new version, effective date, and last-updated date. For changes that materially affect your rights or how information is used, Moziflow will provide a prominent notice on the website or in the software and obtain consent where applicable law requires it.

An update will not retroactively authorize Moziflow to use previously collected information for a purpose materially incompatible with the original disclosure.

13. Contact

Email: [email protected]

MoziflowFrom brilliant ideas to timeless stories
DownloadFAQPrivacyTerms
© 2026 Moziflow
Contact:support@moziflow.com