Trust centre

Clear claims. Visible limits.

How StudioFlow handles security, privacy, subprocessors, AI and service continuity. We do not claim certifications, verified recovery targets or guarantees that have not been evidenced.

Current controls, not an independent certification

Security overview

How StudioFlow protects accounts, workspaces, integrations and payments, including current limitations.

Read document

Draft for Tanzanian legal review

Privacy notice

How Code Studios Ltd processes personal data when operating the StudioFlow website and service.

Read document

Unexecuted template; publication does not bind either party

Data Processing Agreement

The proposed controller-processor terms for customer personal data handled through StudioFlow.

Read document

Draft inventory; active production vendors and regions must be verified

Subprocessors

Services that may process customer data for StudioFlow and the checks still required before contractual reliance.

Read document

Proposed schedule; not every purge is verified as automated

Data retention policy

Proposed retention periods, deletion limits and legal-hold rules for StudioFlow data.

Read document

Draft plan; no verified RTO or RPO is promised

Business continuity and disaster recovery

How StudioFlow prioritises recovery and what evidence is required before recovery commitments are offered.

Read document

Public summary of a draft internal runbook

Incident response

How Code Studios triages, contains, assesses and communicates security or availability incidents affecting StudioFlow.

Read document

Draft commercial schedule; not active by publication

Enterprise Service Level Agreement

Proposed enterprise support and availability terms that apply only through a signed order.

Read document

Draft policy

AI data governance

Rules for optional StudioFlow AI features, human review, provider transparency and sensitive data.

Read document

Draft public policy; no monetary bounty is promised

Vulnerability disclosure

How security researchers can report StudioFlow vulnerabilities safely and in good faith.

Read document