Last updated: 9 August 2026
FusedFrames Technologies Ltd ("FusedFrames", "we", "us") is a company registered in England and Wales under company number 17097980, with its registered office at 23 King Street, Suite 191, Cambridge, CB1 1AH, United Kingdom.
We provide a platform that records how work gets done on devices and turns those recordings into searchable documentation (the "Service"). The Service comprises our website at fusedframes.com, the FusedFrames desktop application and our API, CLI and MCP server.
For the personal data described in this policy, we are the controller under the UK GDPR and the EU GDPR. You can contact us at legal@fusedframes.com or at our registered office.
Content captured through the Service (recordings and the documents generated from them) belongs to the customer whose workspace it is stored in. We process that content as a processor, on the instructions of the workspace owner, under our data processing agreement.
If you use FusedFrames through your employer or another organisation, that organisation controls what is recorded in its workspace and who can see it. Requests about workspace content should be directed to your workspace administrator; we will support them in responding.
Account information. Your email address, first and last name, optional profile photo, language preference and sign-in security data: one-time sign-in codes, any two-factor authentication methods you register and a record of the browsers and devices you have signed in from. You need to provide account information to open and use an account; without it we cannot provide the Service.
Referral information. If you create a referral link, the link you chose and a record of sign-ups it produced; if you sign up through one, the link that referred you; and if you invite someone by email, the address you enter, which we use once to send that person a single invitation on your behalf.
Billing information. Billing name and address, business name and tax ID where you provide them and your subscription and invoice history. Full card details are collected directly by our payment provider and never touch our servers; we store only the card brand, last four digits and expiry date.
Workspace content. When recording is on, the desktop application captures work activity on the enrolled device. This can include: screenshots of your screen; keyboard and mouse input; clipboard content; the names of applications and titles of windows you use; the addresses of web pages you visit; changes you save to documents you edit; your typed or spoken answers to questions the app asks; and the documentation the Service generates from this material. Sensitive input such as passwords is excluded from capture, and common sensitive data formats are automatically redacted from captured text before it leaves your device. Screenshots may include anything visible on your screen when they are taken. While the desktop application is running, it also detects which application is in the foreground so that recording rules can work; that information is processed on your device.
Technical and security information. Your IP address, browser and device information and an approximate location (city and country) derived from your IP address when you sign in or use the Service. We use these to protect accounts (for example, alerting you to a sign-in from a new device) and to apply rate limits. We keep them only briefly, apart from a minimal record of the browsers and devices you have signed in from, which we keep for as long as your account exists so we can recognise them; it is deleted when you delete your account.
Communications. Information you send us through our contact, sales and support forms (such as your name, email address, phone number for sales enquiries, company details and your message) and feedback you submit in the product.
We do not use your information for advertising, we do not sell it and we do not make automated decisions about you that have legal or similarly significant effects.
The Service uses third-party AI providers to turn captured activity into written documentation, to index content for search and to transcribe spoken answers. These providers act as our processors: they may process content only to provide those functions to us and are not permitted to use it for their own purposes, including training their models.
A workspace can instead supply its own AI provider keys. Keys you supply are encrypted and used only for your workspace, and requests made with them fall under your own agreement with that provider.
We never sell personal data.
We are a UK company, and most of our sub-processors are located in the United States. Where personal data is transferred outside the UK or the European Economic Area, we rely on adequacy decisions (including the UK-US Data Bridge and the EU-US Data Privacy Framework where the recipient is certified) or on standard contractual clauses together with the UK International Data Transfer Addendum. You can request a copy of the relevant safeguards by contacting us.
Residual copies may persist for a short period in the encrypted backups operated by our hosting providers before being cycled out.
Under the UK GDPR and the EU GDPR you have the right to access your personal data and to have it corrected, deleted or ported to you; the right to restrict or object to our processing; and the right to withdraw consent where consent is our basis, without affecting processing that happened before withdrawal.
To exercise any of these rights, email legal@fusedframes.com or support@fusedframes.com from the address associated with your account, or write to our registered office. We respond within one month, which the law allows us to extend for particularly complex requests. If you are unhappy with how we handle your data, you can complain to the UK Information Commissioner's Office (ico.org.uk) or to your local supervisory authority in the EEA.
We do not sell personal information, share it for cross-context behavioural advertising or use it for targeted advertising, and we treat universal opt-out signals accordingly. We do not track visitors over time across third-party websites, so we do not respond to Do Not Track signals. Depending on where you live, you may have additional rights to access, correct or delete personal information; contact us as described above and we will honour them.
The Service is not directed at children under 16, and we do not knowingly collect their personal data. If you believe a child has provided us with personal data, contact us and we will delete it.
We protect personal data with technical and organisational measures that include encryption of data in transit, encryption of sensitive data at rest, isolation between workspaces, role-based access controls and two-factor authentication, which is available to every account and can be enforced across a workspace. No system is perfectly secure, so we cannot guarantee security absolutely; we will notify you and any relevant regulator of a personal data breach where the law requires it.
Our use of cookies and similar browser storage is described in the Cookie Policy.
We will post any changes on this page and update the date above. If a change materially affects how we handle your personal data, we will notify you by email or through the Service before it takes effect.
FusedFrames Technologies Ltd
23 King Street, Suite 191
Cambridge, CB1 1AH, United Kingdom
legal@fusedframes.com
Our data protection officer can be contacted at support@fusedframes.com. We are registered with the UK Information Commissioner's Office under registration reference ZC195987.