Privacy Policy
Private by default
Private File Tools processes uploaded images and PDF documents only to create the output requested by the user.
Uploaded files
Files are processed in request memory. Source uploads and generated outputs are not written to persistent application storage and are discarded when the request finishes.
Browser-local tools
QR content, CSV and TSV rows, comparison data, email signature details, invoice or estimate records, timesheet entries, resumes, pasted job descriptions, cover-letter prompts and drafts, job-application records, STAR stories, and interview-practice notes are processed in the browser. The site does not send that content to the application API or save it in browser storage.
The email signature builder does not load a supplied remote logo in its preview and does not add tracking pixels. If a user includes a public logo URL, the logo host may receive an image request when the finished signature or downloaded HTML is opened.
Metadata
Image conversion strips supported embedded metadata by default. PDF operations remove document properties by default. Users can choose to preserve PDF metadata before processing.
The File Privacy Inspector returns supported metadata field names and exposure categories to the browser, not the embedded metadata values. SHA-256 checksums are calculated locally in the browser. The inspector preserves the supplied password when cleaning an encrypted PDF. PDF metadata cleanup is not a full inspection or sanitization of attachments, scripts, forms, redactions, visible content, or hidden layers.
Analytics
The hosted service keeps aggregate daily totals for browser sessions, page opens, selected interest clicks, and file operations, including successes, errors, processing time, and bytes processed. A temporary session-storage flag prevents duplicate session counts, but its value is never transmitted and it disappears when the browser session ends. Traffic sources are reduced in the browser to direct, BuildMyIdeas, search, social, or other before being counted.
These counters do not include IP addresses, filenames, document contents, passwords, query strings, referrer URLs, user-agent profiles, persistent visitor identifiers, or advertising identifiers. They use no analytics cookies or fingerprinting.
Service protection
Network addresses are used transiently in server memory to apply fair-use limits. Routine access logging is disabled. Infrastructure error and security logs may temporarily include network request information and are not used for advertising or behavioral profiles.
Contact
Questions about this policy can be sent to the site owner listed by the domain or hosting account.