Security & Acceptable Use
Last updated 15 August 2026
What this page covers
Recall is a private research and content-creation workspace built for creators. This page explains how we protect the service and the rules that keep it safe for everyone. For payment and refund rules, see our Terms of Service and Refund Policy.
Security practices
- Account protection — authentication is handled by Supabase Auth with secure password hashing and optional email-based one-time passcodes.
- Private workspace — every database query is scoped to your account using row-level security, and generated files are stored in private storage buckets.
- Encrypted keys — if you use Bring Your Own Key (BYOK), your provider key is encrypted server-side and never sent to the browser. Managed AI keys are handled as secrets and never exposed in the app.
- Encrypted in transit — all traffic to and from the app is sent over HTTPS/TLS.
- Rate limiting and abuse prevention — imports, Studio generation, and other AI actions are rate-limited to protect the service and control costs.
- No training on your library — we do not use your imported videos, transcripts, notes, or generated packs to train our own models.
What Recall is not
Recall is a subscription SaaS research and drafting workspace. It is not a YouTube downloader or ripper, a content redistribution service, an automated posting or scheduling tool, an engagement, follower or ranking manipulation service, or a professional advice service. It does not generate, buy, sell or exchange likes, views, clicks, reviews, followers, comments or rankings, and it never publishes anything on your behalf.
Prohibited uses
You may use Recall to research and create original content. You may not use Recall, or anything it generates, to:
- Infringe copyright, trademark or other rights; bypass another platform's terms; or scrape, download, redistribute or resell content.
- Copy another creator's script, thumbnail, voice, likeness, brand or channel identity, or pass yourself off as someone else.
- Automate posting or manipulate social engagement — including generating, buying, selling or exchanging likes, views, clicks, reviews, followers, comments, rankings, or spam.
- Create deepfakes, face swaps, voice impersonations, or any depiction of a real person or human likeness without explicit rights and consent.
- Present outputs as legal, medical, financial, investment, tax or other professional advice, or rely on them in high-stakes decisions without qualified human review.
- Create illegal, harmful, hateful, adult, regulated, fraudulent, deceptive, malware or security-abusing content.
- Import, analyse, or generate from content you do not have the right to use.
- Resell, reverse-engineer, or otherwise misuse access to the service.
We may remove content, filter or refuse outputs, and suspend or terminate accounts for material breach, non-payment, security or fraud risk, or repeated or serious policy violations.
Imported content and your rights
You choose which videos and URLs to import. You are responsible for having the right to import and analyse that material in your jurisdiction, for complying with the terms of the platforms you take it from, and for how you use anything Recall generates from it. Recall is not a YouTube downloader, redistribution tool, or way to bypass platform terms.
AI outputs and human review
Summaries, hooks, scripts, captions, angles, scores, and thumbnail images are generated by AI models and may be inaccurate, incomplete, or unsuitable for publication. They are drafts intended to help your own creative process. You are responsible for reviewing, editing, fact-checking, and deciding what to publish.
AI thumbnails and visuals
Thumbnail generation is opt-in and costs credits. Generated visuals must be original. They are informed by broad design patterns (composition, contrast, framing) and default to non-person directions — object hero, split-screen, symbolic prop, dashboard or screenshot metaphor, bold text composition, abstract graphics, product or workspace visuals, before/after objects.
You must not request, generate, or publish:
- copies or imitations of an existing thumbnail, creator brand or channel identity;
- real brand logos, trademarks or watermarks;
- celebrity, public-figure or private-person likenesses;
- face swaps, deepfakes, or voice or identity impersonation.
Assets you upload — photos, headshots, logos or brand images — may only be used if you own them or have explicit permission and any necessary consents. All generated images are drafts for human review before publication.
Copyright and takedowns
If you believe your copyright or other rights have been violated through Recall, contact us at support@recall.farm. Include the relevant URLs, a description of the issue, and a statement that you have a good-faith belief the use is not authorized. Repeat infringement or serious violations will result in account termination.
Report abuse
To report misuse, security concerns, or abuse, email support@recall.farm. We review reports as quickly as we can and take action when warranted.
Changes
We may update this page as Recall evolves. The date at the top of the page shows the latest revision. Continued use after a change means you accept it.