← decks.studio

Trust & confidentiality

Trust & confidentiality

decks.studio turns your briefs, proposals and documents into decks. This page explains, plainly, how we keep that work confidential.

Your decks are yours.

Every deck you create is tied to your account. It is not listed publicly, not indexed, and not visible to other users.

Sharing is your choice.

Each deck has a private editing view and a separate share link built on an unguessable identifier. A deck is reachable by anyone else only if you give them that link.

Sent versions are sealed.

When you send a deck or document, that version is preserved as an immutable snapshot with a SHA-256 fingerprint — so your recipient can verify they are seeing exactly what was shared. Your drafts and unsent edits are never visible to recipients. Deleting a deck or document deletes its sealed versions with it, within the same 30-day window described below.

Viewing activity is visible to the sender.

When you open a shared deck or document, the sender can see viewing activity — opens, time spent, and how far you read. This needs no cookie: we store only a salted, per-item IP hash to count a device once, and it is anonymised after 90 days.

What we store.

Your account email; the text, links and files you submit to generate a deck; the generated deck and its rendered PDF; the sealed versions of anything you send; and any logo or images you add.

AI processing.

To generate, refine and translate decks, your content is sent to our AI providers (Anthropic and Google Gemini); voice notes are transcribed by OpenAI Whisper. Under those providers' API terms, content submitted through the API is not used to train their models.

Encrypted in transit.

All traffic between you and decks.studio is encrypted over HTTPS.

Hosted in the European Union.

Your account, the content you submit, and the files we generate are stored on infrastructure in Frankfurt, Germany (European Union).

Encrypted at rest.

Beyond HTTPS in transit, the databases and file storage that hold your content are encrypted at rest by the hosting infrastructure.

PDPL & GDPR rights.

You can request a copy of your personal data, or its erasure, at any time. Saudi PDPL and EU GDPR data-subject rights — access, export, and deletion — are supported.

Deletion within 30 days.

When you delete a deck or your account, it is permanently removed within 30 days. Share links you already distributed are handled separately, as described in the Terms.

Questions or removal.

To ask a privacy question, or to have a deck or your account removed, contact decks.studio support and we will help you.

Decks Studio

Trust & confidentiality — decks.studio · Decks.Studio