Renderpaper
Log in Start free

Privacy notice

What we store

Deliberately little. Everything in this list is something the service cannot work without.

DataWhy
Your email addressIdentifies the account and is the only way to reach you
A bcrypt hash of your passwordTo let you log in. The password itself is never stored
Your templates and their sample dataSo later requests can send data only
API keys as SHA-256 hashes, plus a short prefix and the name you gaveTo authenticate calls and let you tell keys apart. The key itself is unrecoverable
Plan state and Stripe customer and subscription identifiersTo know whether the subscription is active
Timestamps: account created, template updated, key last usedTo show you when things happened

What we do not store

Logs

We keep structured request logs containing the account identifier, the size of the template, how long a render took, and the outcome. They do not contain template contents or the data you submitted.

Where it is processed

On Google Cloud in europe-west1 (Belgium) — Cloud Run for the service, Cloud SQL for the database. Payments are processed by Stripe. Those two are our only processors; we use no analytics, advertising, or third-party trackers, and the pages load no external scripts or fonts.

How long we keep it

Until you delete it. There is no separate archive: deleting your account removes the account row and, by database cascade, every template and key belonging to it.

Your rights

Security

Passwords are hashed with bcrypt and API keys with SHA-256. Sessions use signed, HTTP-only cookies. Templates are rendered by a browser that is blocked from reaching cloud metadata endpoints, so a submitted template cannot read our own credentials. Every database query for a template or key is scoped to the owning account.

Breaches

If data is exposed in a way that puts you at risk, we will tell you by email, and the relevant supervisory authority within 72 hours where the law requires it.