This policy explains what Screenshot Studio collects when you use the app, why we collect it, how long we keep it, and the choices you have. It applies to the Screenshot Studio website and editor, on both the Free plan and the paid Pro subscription.
Who is responsible. Techmanu Pvt. Ltd. (“we”, “us”), [Registered address pending], is the controller of your personal data. Contact us at support@screenshotstudio.example.
Information we collect
Account information. When you create an account we store your email address and a securely hashed password. If you choose to sign in with Google instead, we receive your email address, name and profile photo from Google and never see your Google password. If you ask for early access before sign-ups open, we keep the email address and any note you leave on a waitlist.
Sessions. Each time you sign in we record the IP address and browser (user agent) of that session so you can review and end your active sessions under Settings > Sessions, and so we can detect abuse.
Your projects and screenshots. The app screenshots and fonts you upload, the listing copy and translations you write, and the export settings you choose are stored against your account so you can come back and keep editing. Uploaded files and rendered exports are stored in Cloudflare R2, our object storage provider; project text and settings are stored in our MySQL database.
Billing information. If you subscribe to Pro, billing is handled entirely by Paddle.com Market Limited (“Paddle”), our payment provider and merchant of record. Paddle collects your payment details, billing address and any tax information directly; we never see or store your card number. Paddle shares with us only what we need to run your account: your subscription status, plan and renewal date. See Paddle’s privacy policy for how it handles payment data.
Diagnostic data. We use Sentry to capture error reports so we can find and fix bugs. It is configured to collect as little as possible: default personal data collection is off, IP addresses are not stored, session replay is off, and URLs and email addresses are scrubbed from reports. A report contains only the error and its stack trace, your browser and operating system, the app version, and the route path of the page you were on. We do not send your screenshots or project content to Sentry.
Server logs. Our API writes technical logs (warnings and errors, which can include an IP address and request path) to daily log files. Cloudflare, which delivers this website and the app, also keeps request logs that include IP addresses.
Support email. If you write to us we keep the message and our reply so we can help you and follow up.
Machine translation
Translation is optional and only runs when you ask for it. When you request a machine translation of your listing text, the text of that screen is sent to Google Cloud Translation to produce the translated draft, which is then returned to your project for you to review and edit. Screenshots and images are never sent to the translation service, only the text you choose to translate.
Why we use your information, and our legal basis
If the GDPR or UK GDPR applies to you, we rely on the following legal bases.
| Purpose | Legal basis |
|---|---|
| Creating your account, saving projects, rendering exports, optional translation | Contract: needed to provide the service you asked for |
| Billing and managing your Pro subscription (through Paddle) | Contract |
| Early access waitlist emails | Your request to join the waitlist (consent), which you can withdraw at any time |
| Security logs, session records, rate limiting and fraud prevention | Legitimate interests: keeping the service and your account secure |
| Error monitoring with Sentry | Legitimate interests: finding and fixing bugs |
| Tax, accounting and other legal records (held by Paddle) | Legal obligation |
| Replying to support requests | Legitimate interests, or contract where you are a customer |
We do not use your data for advertising, profiling or automated decisions that have legal effects on you.
Who we share data with
We only share data with the service providers that keep Screenshot Studio running:
| Provider | Purpose and data |
|---|---|
| Web hosting provider (cPanel host) | Runs our API and sends transactional email (verification, password reset) over SMTP; handles your email address and the message content |
| Database host (MySQL) | Stores account data, project text and settings, sessions |
| Cloudflare (Pages, R2) | Delivers the website and app, with request logs that include IP addresses; R2 stores uploaded files and rendered exports |
| Paddle | Payment processing, billing, tax and refunds for Pro subscriptions. Paddle.js loads on the checkout and may set its own cookies; see Paddle’s policy |
| Google (Sign-In) | Optional sign-in with Google; we receive your email, name and photo |
| Google (Cloud Translation) | Optional machine translation; receives only the listing text you choose to translate |
| Sentry | Error reporting, limited as described above |
We do not sell your personal information, and we do not share it with anyone else except where required by law or to protect the rights, property or safety of Screenshot Studio, our users or the public.
Cookies and local storage
We do not use advertising, tracking or analytics cookies, so there is nothing to consent to. On your first visit we show a short notice saying so. We store only what is needed to run the site and the app:
| Name | Where | Purpose |
|---|---|---|
| screenshotter_session | Cookie | Keeps you signed in (strictly necessary) |
| theme | Local storage | Remembers light or dark appearance |
| cookieNotice | Local storage | Remembers that you dismissed the cookie notice |
| screenshotter.guestId | Local storage | Identifies the guest workspace on this device |
| screenshotter.pendingAuth | Local storage | Remembers what you were doing while you sign in |
| screenshotter.keptProjects | Local storage | Remembers your choice about guest projects after sign-in |
| Guest projects | IndexedDB | Stores projects and uploads you make while signed out, on this device only |
Guest projects never leave your browser until you sign in and choose to keep them. Clearing site data deletes them permanently. On a shared computer, anyone using the same browser profile can open them, so sign in and delete them, or clear site data, when you are done. Paddle.js may set its own cookies during checkout.
Data retention
- Account and projects: kept while your account is active. When you ask to delete your account, it is scheduled for deletion after a 30-day grace period, during which you can cancel; after that your personal data and project content are deleted.
- Deleted projects: kept in the trash for 30 days so you can restore them, then removed for good together with their uploads.
- Sessions: kept while the session is active and removed when it expires or you sign out.
- Server logs: daily log files are kept for 14 days.
- Waitlist emails: kept until your invitation is accepted or you ask us to remove them, and deleted if you delete your account.
- Billing records: kept by Paddle for as long as tax and accounting law requires.
- Error reports: kept by Sentry for its standard retention period.
Your rights
Depending on where you live, you have the right to access your personal data, have it corrected, deleted or restricted, receive a portable copy, object to processing based on legitimate interests, withdraw consent at any time, and complain to your local data protection supervisory authority.
Two of these are self-service in the app: use Export in Settings to download your data and Delete account in Settings to erase it. For anything else, email support@screenshotstudio.example. We respond within 30 days.
California residents
In the past 12 months we have collected these categories of personal information: identifiers (email address, IP address), account and commercial information (subscription status), internet activity (sessions, error reports), and the content you upload. We collect it for the purposes described above. We do not sell or share personal information as those terms are defined by California law, and we do not use it for cross-context behavioural advertising.
You may request to know, delete or correct your personal information. You can use an authorised agent, and we may need to verify your identity and their authority. We will not discriminate against you for exercising these rights. Contact support@screenshotstudio.example.
International transfers
Our service providers operate infrastructure in multiple countries, including outside the European Economic Area and the United Kingdom. Where your data is transferred there, we rely on safeguards such as the European Commission’s Standard Contractual Clauses (with the UK addendum where needed) and, for providers certified under it, the EU-US Data Privacy Framework.
Children’s privacy
Screenshot Studio is not directed at children and you must be at least 16 to use it. We do not knowingly collect personal information from anyone under 16. If you believe a child has provided us with personal data, contact us and we will delete it.
Changes to this policy
We may update this policy from time to time. If we make material changes, we will update the effective date above and notify you by email or in the app. See also our Terms of Service.
Governing law
This policy is governed by the laws of Nepal, without regard to conflict-of-law principles. This does not limit rights you have under mandatory data protection law where you live.
Contact us
Questions about this policy or your data can be sent to support@screenshotstudio.example, or by post to Techmanu Pvt. Ltd., [Registered address pending].