Draft. This text has not been reviewed by a lawyer and is not in effect. Items in [brackets] are waiting for details. Do not rely on it yet.
The short version
- We collect what we need to run your account and process the files you give us.
- We do not sell personal data, and we do not use your images to train models.
- We never receive your signing keys.
- A credential you publish is public by design. That is its job.
- You can export or delete your data at any time.
This preview build
The site you are using now is a preview. It has no server-side account or storage. Your sign-in, your uploads and their previews are kept in this browser's local storage and are not sent anywhere. Clearing your browser data removes them. The rest of this page describes how the service is intended to work at launch.
What we collect
- Account details. Your name and email address, and the sign-in records our authentication provider keeps.
- Files you upload. The images themselves, a preview, their dimensions, type, size and a SHA-256 hash, and the results of each scan.
- Credentials you publish. The manifest, your signer name, the time of signing and the public half of your key.
- Usage records. Which features were used and when, error reports, and basic device and browser information.
- Payment details. Handled by our payment processor. We receive a record of the payment, not your card number.
What we never do
- Sell or rent personal data.
- Train machine-learning models on your images.
- Receive, store or escrow your private signing keys.
- Show advertising, or share data with advertisers.
What is public
When you publish a credential, anyone who has the file, or a copy carrying your mark, can read it: your signer name, when you signed, and what the manifest declares. This is how a credential does its work. You choose the signer name, and you can revoke a published credential.
Your files are not public. Publishing a credential does not publish the image.
Why we use it
To provide the service you asked for, to keep it secure, to bill you if you are on a paid plan, and to meet legal obligations. [Lawful bases under GDPR to be confirmed with counsel.]
Who else handles it
We use a small number of providers to run the service, each under contract and only for that purpose: authentication ([Clerk, planned]), hosting and storage ([provider]), payments ([provider]) and error reporting ([provider]). The current list will be kept on this page.
How long we keep it
Files and scan results: until you delete them or close your account. Published credentials: until you revoke them, or as your plan describes. Account details: for the life of the account, then [30] days. Usage records: [12] months. [Retention periods to be confirmed.]
Your choices
You can see, export and delete your files and account from your dashboard. Depending on where you live you may also have the right to ask for a copy of your data, to have it corrected or erased, to object to or restrict how it is used, and to complain to a data protection authority. Write to privacy@deprint.example and we will answer within [30] days.
Cookies and local storage
We use only what the site needs to work: a session so you stay signed in, and your theme and colour preferences. There are no advertising or cross-site tracking cookies.
Who is responsible
[Legal entity], [registered address], is responsible for your data. Privacy questions go to privacy@deprint.example. If this policy changes in a way that matters, we will tell you before the change takes effect.