Legal
Privacy Policy
Effective July 29, 2026
Local motion analysis
Motion Lab opens source videos and images directly from your device. Analysis, tracking, measurements, graphs, and most exports run in your browser. BioSystems One Inc. does not receive source media through the Motion Lab analysis workflow.
Account information
If you create an account, we store your name, email address, authentication method, verification state, session records, and subscription status. Google authentication is governed by Google’s privacy terms. Email authentication uses time-limited verification and reset tokens. Resend processes the destination address and transactional message needed to deliver verification and password-reset email.
Projects and refresh recovery
Projects saved to this browser or a selected folder remain on your device. Motion Lab also keeps a local recovery snapshot of the active analysis so a refresh does not discard work. This snapshot can include calibration, markers, coordinates, measurements, events, settings, the source filename, and a browser-managed local file handle where supported; it does not copy source media. If you explicitly choose the Motion Lab workspace, we store project JSON containing calibration, markers, coordinates, measurements, events, and settings. We reject embedded media in synced project payloads.
Billing
Stripe processes subscription payments, cards, invoices, and billing-portal activity. We store Stripe customer and subscription identifiers, plan, status, renewal date, and cancellation state. We do not store complete payment-card information.
Analytics
The current application does not load a third-party analytics SDK. If privacy-conscious product analytics are introduced, Motion Lab will not record source videos, frames, filenames, measurement coordinates, project content, participant information, or exported data.
Security, operations, and retention
Session tokens are stored as hashes and sent in secure, HTTP-only cookies. Project records are scoped to the authenticated user. Cloudflare processes ordinary network and security metadata needed to deliver and protect the service. Motion Lab’s application error logs are limited to a request identifier, HTTP method, API route, and error type; they are designed not to contain source media, filenames, project JSON, coordinates, reset tokens, or exported data. Account deletion removes account records and synced project JSON; billing records retained by Stripe remain subject to Stripe and legal retention requirements.
Contact
Questions or requests can be sent to support@biosystemsone.com.