RealVideoCreator Supervisory Authority & Privacy Regulator Directory
Effective Date: August 6, 2026 Version: 1.0 Last Verified: August 6, 2026
This directory identifies data-protection, privacy, and related regulatory authorities that may be relevant to users of RealVideoCreator.
It supplements the:
- RealVideoCreator Global Privacy Policy;
- RealVideoCreator Regional Privacy & Consumer Rights Addendum;
- RealVideoCreator Terms of Service;
- RealVideoCreator Service Providers, Subprocessors & Transfer Locations page; and
- VoiceLab 18+ Consent, Biometric & Voice Data Notice, and Permitted Use.
This directory is provided for convenience and transparency.
The regulator legally responsible for a particular complaint depends on:
- Where you live;
- Where you work;
- Where an alleged privacy violation occurred;
- Which privacy law applies;
- The organization or activity involved; and
- The regulator's legal jurisdiction.
Regulatory names, contact information, complaint procedures, and jurisdiction may change.
Users should confirm current filing requirements through the applicable regulator's official website before submitting a complaint.
1. Contacting Real Labs First
Privacy and data-protection concerns may be submitted directly to:
Real Labs Development 1043 Pinegrove Dr Holland, MI 49423 United States
Privacy and Data Protection: legal@realvideocreator.com
Depending on applicable law and the regulator involved, you may be encouraged or required to raise your concern with Real Labs before asking a regulator to intervene.
Nothing in this directory requires you to surrender a legal right to contact a regulator directly where applicable law permits you to do so.
PART I — EUROPEAN UNION AND EUROPEAN ECONOMIC AREA
2. EEA Data Protection Authorities
Under the EU General Data Protection Regulation ("GDPR"), individuals generally have the right to lodge a complaint with a competent national Data Protection Authority ("DPA").
A complaint may generally be made to the DPA in the country of:
- Your habitual residence;
- Your place of work; or
- The place where the alleged infringement occurred.
Each European Economic Area country has its own independent supervisory authority.
The European Data Protection Board maintains the authoritative current directory of EEA supervisory authorities.
Important: The EDPB Does Not Handle Individual Complaints
The European Data Protection Board ("EDPB") coordinates and promotes consistent application of European data-protection law.
The EDPB itself is not the national supervisory authority responsible for handling ordinary individual complaints against private companies.
Users seeking to file a GDPR complaint should generally contact the competent national authority listed below.
3. Austria
Primary Authority: Österreichische Datenschutzbehörde Austrian Data Protection Authority
Austria may have more than one competent supervisory body for particular processing. Users should consult the current EDPB authority directory to determine the appropriate authority.
4. Belgium
Authority: Autorité de la protection des données / Gegevensbeschermingsautoriteit APD-GBA
5. Bulgaria
Authority: Commission for Personal Data Protection
6. Croatia
Authority: Agencija za zaštitu osobnih podataka AZOP
7. Cyprus
Authority: Office of the Commissioner for Personal Data Protection Cypriot Data Protection Authority
8. Czech Republic
Authority: Office for Personal Data Protection
9. Denmark
Authority: Datatilsynet Danish Data Protection Authority
10. Estonia
Authority: Andmekaitse Inspektsioon Estonian Data Protection Inspectorate
11. Finland
Authority: Office of the Data Protection Ombudsman
12. France
Authority: Commission Nationale de l'Informatique et des Libertés CNIL
13. Germany
Federal Authority: Die Bundesbeauftragte für den Datenschutz und die Informationsfreiheit BfDI
Germany also has state-level data-protection supervisory authorities.
The correct German authority may depend on the organization, establishment, processing activity, and German federal state involved.
Users should consult the official German supervisory-authority directory when filing a complaint.
14. Greece
Authority: Hellenic Data Protection Authority
15. Hungary
Authority: Hungarian National Authority for Data Protection and Freedom of Information
16. Ireland
Authority: Data Protection Commission DPC
17. Italy
Authority: Garante per la protezione dei dati personali
18. Latvia
Authority: Data State Inspectorate
19. Lithuania
Authority: State Data Protection Inspectorate
20. Luxembourg
Authority: Commission Nationale pour la Protection des Données CNPD
21. Malta
Authority: Office of the Information and Data Protection Commissioner IDPC
22. Netherlands
Authority: Autoriteit Persoonsgegevens Dutch Data Protection Authority
23. Poland
Authority: Urząd Ochrony Danych Osobowych Personal Data Protection Office UODO
24. Portugal
Authority: Comissão Nacional de Proteção de Dados CNPD
25. Romania
Authority: National Supervisory Authority for Personal Data Processing
26. Slovakia
Authority: Úrad na ochranu osobných údajov Slovenskej republiky Office for Personal Data Protection of the Slovak Republic
27. Slovenia
Authority: Information Commissioner of the Republic of Slovenia
28. Spain
Authority: Agencia Española de Protección de Datos AEPD
29. Sweden
Authority: Integritetsskyddsmyndigheten Swedish Authority for Privacy Protection IMY
EEA / EFTA AUTHORITIES
30. Iceland
Authority: Persónuvernd Icelandic Data Protection Authority
31. Liechtenstein
Authority: Data Protection Authority, Principality of Liechtenstein
32. Norway
Authority: Datatilsynet Norwegian Data Protection Authority
PART II — UNITED KINGDOM
33. United Kingdom
Authority: Information Commissioner's Office ICO
The ICO is the United Kingdom's primary independent regulator for data protection and information-rights matters.
Users may contact the ICO concerning issues involving matters such as:
- Access to personal information;
- Improper handling of personal data;
- Privacy rights;
- Cookies and electronic communications;
- Data-protection complaints; and
- Other matters within the ICO's jurisdiction.
Complaining to Real Labs First
UK law now requires organizations handling personal data to maintain a process for receiving and addressing data-protection complaints.
Real Labs accepts such complaints at:
In many cases, the ICO may expect an individual to raise the concern with the organization first before asking the ICO to consider it.
Nothing in this provision removes a right to contact the ICO where UK law permits.
PART III — SWITZERLAND
34. Switzerland
Authority: Federal Data Protection and Information Commissioner FDPIC
The FDPIC supervises matters under Switzerland's federal data-protection framework.
Users concerned about a possible significant violation may submit a report or complaint through the FDPIC's official procedures.
The FDPIC generally recommends contacting the data controller first where appropriate.
The FDPIC does not act as a private individual's attorney and does not award private compensation.
PART IV — CANADA
35. Canada — Federal
Authority: Office of the Privacy Commissioner of Canada OPC
The OPC oversees federal private-sector privacy matters within its jurisdiction, including matters governed by applicable federal privacy legislation.
Canadian users may contact the OPC for:
- Privacy information;
- Questions concerning privacy rights;
- Concerns about an organization's handling of personal information; or
- Complaints within the OPC's jurisdiction.
Certain Canadian provinces have their own private-sector privacy laws and regulators.
Depending on your province, a provincial regulator may be the more appropriate authority.
36. Québec
Authority: Commission d'accès à l'information du Québec CAI
The CAI supervises Québec privacy and access-to-information requirements within its jurisdiction, including requirements applying to private enterprises.
37. Alberta
Authority: Office of the Information and Privacy Commissioner of Alberta OIPC Alberta
The OIPC can address privacy matters involving private-sector organizations subject to Alberta's Personal Information Protection Act.
Individuals are generally expected to raise the issue with the organization before submitting a privacy complaint to the OIPC.
38. British Columbia
Authority: Office of the Information and Privacy Commissioner for British Columbia OIPC BC
The OIPC BC supervises private-sector organizations subject to British Columbia's Personal Information Protection Act.
Individuals are generally expected to attempt to resolve a privacy concern directly with the organization before filing a complaint with the OIPC.
PART V — LATIN AMERICA
39. Brazil
Authority: Agência Nacional de Proteção de Dados ANPD
The ANPD is Brazil's national data-protection regulator responsible for administration and enforcement of Brazil's data-protection framework, including the LGPD.
Depending on the issue, Brazilian users may also have rights involving consumer-protection authorities or courts.
Privacy requests concerning RealVideoCreator may first be directed to:
Nothing prevents a person from petitioning the ANPD where Brazilian law permits.
PART VI — AUSTRALIA AND NEW ZEALAND
40. Australia
Authority: Office of the Australian Information Commissioner OAIC
The OAIC handles privacy matters involving organizations and Australian Government agencies covered by the Privacy Act 1988.
Complaint Procedure
The OAIC generally requires an individual to complain to the organization first.
RealVideoCreator privacy complaints may be submitted to:
If the issue is not resolved, or Real Labs does not respond within the applicable period, an eligible individual may submit a complaint to the OAIC.
The OAIC currently considers approximately 30 days a reasonable period for an organization to respond before escalation in ordinary circumstances.
41. New Zealand
Authority: Office of the Privacy Commissioner of New Zealand OPC New Zealand
The New Zealand Privacy Commissioner handles privacy matters under the Privacy Act 2020.
Individuals are generally encouraged to make reasonable efforts to resolve a privacy concern with the organization first.
Complaints concerning RealVideoCreator may initially be submitted to:
An eligible person may subsequently use the Privacy Commissioner's complaint process where appropriate.
PART VII — ASIA
42. India
Authority: Data Protection Board of India DPBI
The Data Protection Board of India was established under India's Digital Personal Data Protection Act.
The Board is intended to act as an independent adjudicatory body for matters including:
- Personal-data breaches;
- Certain failures to comply with the DPDP framework;
- Applicable complaints and grievances; and
- Monetary penalties where authorized by law.
Real Labs will update this directory as the Board's digital filing systems, leadership, procedures, and public contact channels continue to become operational.
Users should use the current official DPBI / Ministry of Electronics and Information Technology filing or Digital Office channel for the most current procedure.
Privacy requests to Real Labs may be submitted to:
43. Japan
Authority: Personal Information Protection Commission PPC
The PPC is Japan's national privacy regulator responsible for the Act on the Protection of Personal Information.
The PPC provides information concerning the APPI and supervises covered organizations.
For an individual complaint involving a specific company's handling of personal information, Japanese procedures may direct the individual first toward:
- The company holding the information;
- An accredited personal-information-protection organization;
- A local consumer center; or
- Another appropriate complaint mechanism.
The PPC remains Japan's primary national personal-information regulator.
44. Singapore
Authority: Personal Data Protection Commission PDPC
The PDPC administers and enforces Singapore's Personal Data Protection Act within its jurisdiction.
The PDPC provides:
- Privacy guidance;
- Complaint channels;
- Enforcement information;
- Data-protection resources; and
- Information concerning Singapore's data-protection obligations.
RealVideoCreator privacy concerns may also be submitted directly to:
PART VIII — UNITED STATES
45. United States — Federal
The United States does not currently have a single general-purpose national data-protection authority equivalent to an EEA Data Protection Authority.
Different federal and state authorities may have jurisdiction depending on the law and conduct involved.
46. Federal Trade Commission
Authority: Federal Trade Commission FTC
The FTC enforces federal consumer-protection requirements concerning unfair or deceptive business practices and has brought enforcement actions involving:
- Consumer privacy;
- Data security;
- Misrepresentations concerning privacy practices;
- Children's privacy;
- Sensitive-data practices; and
- Other matters within its statutory authority.
Consumers may report fraud, scams, and certain harmful or deceptive business practices through the FTC's consumer-reporting systems.
The FTC generally does not act as an attorney for an individual consumer or resolve every individual dispute.
47. California
Authority: California Privacy Protection Agency CPPA
The CPPA administers and enforces the California Consumer Privacy Act and its implementing regulations within its authority.
California residents who believe their privacy rights have been violated may submit a complaint to the CPPA.
The CPPA does not act as an individual's private attorney.
California Attorney General
The California Attorney General may also have enforcement authority under applicable California privacy and consumer-protection laws.
48. Other U.S. States
Many U.S. state privacy laws are enforced by:
- A state Attorney General;
- A dedicated state privacy regulator;
- Another state consumer-protection authority; or
- A combination of authorities.
The appropriate regulator depends on:
- Your state;
- The privacy law involved;
- Whether the law applies to Real Labs;
- The processing involved; and
- The authority granted by state law.
This directory does not imply that every state comprehensive privacy statute applies to Real Labs regardless of its statutory thresholds.
Where applicable law gives an individual the right to submit a complaint or appeal to a state regulator, nothing in RealVideoCreator's policies limits that right.
PART IX — BIOMETRIC AND VOICELAB COMPLAINTS
49. VoiceLab Privacy and Biometric Matters
VoiceLab is subject to heightened privacy protections.
Depending on the jurisdiction, VoiceLab information may fall within laws governing:
- Biometric identifiers;
- Biometric information;
- Voiceprints;
- Biometric data;
- Sensitive personal information;
- Special-category personal data; or
- Other protected information.
A VoiceLab privacy concern may be submitted directly to:
Users may also contact the regulator legally responsible for the applicable biometric or privacy law.
Nothing in the VoiceLab consent process prevents an individual from exercising a regulatory complaint right provided by applicable law.
50. Illinois Biometric Matters
Where the Illinois Biometric Information Privacy Act applies, certain rights may also be enforceable through mechanisms provided by Illinois law.
The Illinois Attorney General may have consumer-protection authority over certain practices, while BIPA also provides rights and remedies defined by the statute.
This directory does not limit any statutory private right or remedy that applicable law provides.
PART X — WHICH REGULATOR SHOULD I USE?
51. EEA Users
Generally contact the national DPA for:
- Your habitual residence;
- Your place of work; or
- The place of the alleged GDPR infringement.
Do not send an ordinary individual GDPR complaint to the EDPB itself.
52. UK Users
Contact the ICO.
In many cases, raise the issue with Real Labs first:
53. Swiss Users
Contact the FDPIC for matters within its federal jurisdiction.
54. Canadian Users
Depending on the issue and province, contact:
- Office of the Privacy Commissioner of Canada;
- Commission d'accès à l'information du Québec;
- OIPC Alberta;
- OIPC British Columbia; or
- Another applicable provincial authority.
55. Brazilian Users
Contact the ANPD where the matter falls within its jurisdiction.
56. Australian Users
Raise the concern with Real Labs first where appropriate, then contact the OAIC if the issue remains unresolved and the OAIC has jurisdiction.
57. New Zealand Users
Attempt to resolve the concern with Real Labs where appropriate, then use the Office of the Privacy Commissioner complaint process if necessary.
58. Indian Users
Use the current official Data Protection Board of India complaint or Digital Office process as it becomes applicable to the matter.
59. Japanese Users
Use the appropriate company, accredited privacy organization, consumer-center, or PPC channel depending on the nature of the complaint.
60. Singapore Users
Contact the PDPC where the matter falls within Singapore's Personal Data Protection Act.
61. United States Users
Depending on applicable law, users may contact:
- The Federal Trade Commission;
- California Privacy Protection Agency;
- A state Attorney General;
- A dedicated state privacy regulator; or
- Another regulator with jurisdiction.
PART XI — REGULATORY COMPLAINTS DO NOT REPLACE REALVIDEO CREATOR RIGHTS REQUESTS
62. Exercising a Privacy Right
Requests involving your RealVideoCreator account may be submitted directly to Real Labs for matters including:
- Access;
- Correction;
- Deletion;
- Erasure;
- Data portability;
- Consent withdrawal;
- VoiceLab deletion;
- Objection;
- Restriction;
- Information concerning international transfers;
- Privacy complaints; and
- Other applicable privacy rights.
Submit requests to:
Contacting Real Labs is often the fastest method of addressing an account-specific privacy issue.
However, where applicable law gives you an independent right to contact a regulator, that right remains available.
63. No Retaliation
Real Labs will not unlawfully discriminate against or retaliate against an individual because the individual:
- Exercised a privacy right;
- Submitted a privacy complaint;
- Contacted a supervisory authority;
- Contacted a privacy commissioner;
- Contacted an Attorney General;
- Contacted a consumer-protection regulator; or
- Otherwise exercised a right protected by applicable law.
64. Authority Information May Change
Privacy authorities may:
- Change names;
- Change addresses;
- Change websites;
- Change complaint portals;
- Change telephone numbers;
- Change jurisdiction;
- Change filing requirements; or
- Be reorganized by legislation.
For that reason, users should confirm current information using the regulator's official government website before filing a complaint.
Real Labs will periodically review this directory and update material information when appropriate.
65. Contact Real Labs
Real Labs Development 1043 Pinegrove Dr Holland, MI 49423 United States
Privacy and Data Protection: legal@realvideocreator.com
VoiceLab Reminder
VoiceLab is strictly 18+ and strictly self-voice only.
Privacy and biometric complaint rights remain available regardless of VoiceLab's self-voice-only restriction.
Another person's permission or consent never permits that person's voice to be enrolled, cloned, synthesized, processed, or generated through VoiceLab.