Privacy Policy
Last updated: 2026-07-21
The short version
Your photo is processed entirely in your browser. Uploading, positioning, background removal, and exporting all happen on your device using client-side code — no photo, and no pixel data derived from it, is ever transmitted to or stored on our servers, regardless of whether you're signed in or on a paid plan.
What we do collect
To operate accounts and billing, we store:
- Account information: name, email address, and a hashed (never plaintext) password.
- Billing information: handled entirely by Stripe. We store your Stripe customer/subscription ID and plan tier, never your card number.
- Usage metadata: timestamps of when you exported a photo (used only to enforce plan limits), not the photo itself.
- Basic product analytics: which pages are visited and which product actions occur (e.g. "signed up", "exported a photo"), to understand and improve the product. If Plausible analytics is enabled, pageview analytics are cookieless and don't track you individually across sites.
Third parties we use
- Stripe — payment processing. See Stripe's privacy policy.
- Resend — transactional email delivery (account, billing, and sign-in emails).
- Plausible Analytics (if enabled) — privacy-friendly, cookieless website analytics.
- Google's MediaPipe (if reachable) — an on-device machine-learning model used for background removal. The model file is downloaded once and cached by your browser; your photo is never sent anywhere as part of this — the model runs locally.
Your rights
You can delete your account at any time from your account page, which removes your account and billing-linkage data. Because photos are never stored server-side, there is nothing photo-related to delete on our end.
Contact
Questions about this policy? Contact us at the support address listed in your account confirmation email.