Privacy in the Demovela preview
Session access
The studio uses a workspace cookie to associate requests with your session. Each automated flow creates a dedicated email identity. Login codes, raw email messages, passwords and magic-link tokens are not returned in ordinary workspace state or sent to the planning model.
Private login handling
The private inbox accepts matching active-session messages. Codes and links are consumed or removed when the inbox closes. The generated password identity has a maximum two-hour expiry to support a same-session recapture.
Recordings and outputs
Full recordings and generated edits are stored separately in Cloudflare R2. Ordinary media routes require the workspace cookie. Explicitly published example copies can be viewed without it. Avoid providing sensitive business data in a demo workspace.
This marketing site
This site does not install advertising or analytics scripts. Playing an example requests the media from Demovela's Cloudflare-hosted service. Opening the studio starts a separate application experience. Cloudflare processes requests to serve the site.
Preview limitation
This page describes current implementation behaviour. It is not a claim of certification, permanent retention or an enterprise data agreement. Review the suitability of the preview before using sensitive material.