Privacy Policy
Last Updated: January 27, 2025
Effective Date: January 27, 2025
1. Introduction
ProofSnap ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Chrome browser extension ("Extension") available at https://getproofsnap.com.
By using ProofSnap, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies and practices, do not use the Extension.
2. Information We Collect
2.1 Personal Information
When you create an account or use paid features, we collect:
- Email Address: For account authentication and communication
- Name: If you provide it during registration (optional)
- Payment Information: Processed securely by Stripe (we do not store credit card details)
- Account Credentials: Encrypted passwords managed by Firebase Authentication
2.2 Captured Evidence Data
When you capture web evidence, we collect:
- Screenshots: Full-page or viewport images you capture
- Web Page HTML: Complete HTML source code of captured pages
- Page URLs: URLs of websites you capture
- Metadata: Timestamps, page titles, HTTP headers, user agent strings
- DOM Content: Extracted text content from web pages
- Cryptographic Hashes: SHA-256 hashes of captured content
- Digital Signatures: RSA signatures for evidence verification
2.3 Usage Data
We automatically collect:
- Extension Usage: Number of captures, features used, subscription status
- Browser Information: Chrome version, operating system
- Performance Data: Error logs, crash reports (anonymous)
- Analytics: Anonymous usage statistics via Google Analytics
2.4 Technical Permissions
The Extension requires the following browser permissions:
- activeTab: To capture content of the currently active browser tab
- tabs: To access tab information for evidence metadata
- scripting: To inject scripts for full-page captures
- storage: To save user preferences and capture data locally
- downloads: To download evidence packages (ZIP files)
3. How We Use Your Information
We use collected information for:
- Service Delivery: Provide screenshot capture and evidence packaging functionality
- Authentication: Verify user identity and manage accounts
- Billing: Process payments and manage subscriptions
- Evidence Storage: Store captured evidence in your account (if enabled)
- Blockchain Timestamping: Create verifiable timestamps via OpenTimestamps
- Product Improvement: Analyze usage patterns to enhance features
- Customer Support: Respond to inquiries and troubleshoot issues
- Legal Compliance: Comply with legal obligations and enforce terms
- Security: Detect and prevent fraud, abuse, and security incidents
4. Data Storage and Processing
4.1 Local Storage
Screenshots and captures are initially processed locally in your browser. Evidence packages are created on your device and can be downloaded without server upload.
4.2 Cloud Storage (Optional)
If you enable cloud storage features:
- Location: Data is stored in Google Cloud Platform (Firebase) servers located in the United States
- Encryption: Data is encrypted in transit (TLS 1.3) and at rest (AES-256)
- Retention: Data is retained until you delete it or close your account
4.3 Data Processing Services
We use the following third-party services that may process your data:
- Firebase (Google Cloud): Authentication, database, and storage
Privacy Policy: https://firebase.google.com/support/privacy - Stripe: Payment processing
Privacy Policy: https://stripe.com/privacy - AWS (Amazon Web Services): Lambda functions
Privacy Policy: https://aws.amazon.com/privacy/ - OpenTimestamps: Blockchain timestamp verification
Service is decentralized; no personal data is shared - Google Analytics: Anonymous usage analytics
Privacy Policy: https://policies.google.com/privacy
5. Data Sharing and Disclosure
5.1 We Do NOT Sell Your Data
We do not sell, rent, or trade your personal information to third parties for marketing purposes.
5.2 Service Providers
We share data with trusted service providers who assist us in operating the Extension:
- Cloud hosting and storage (Firebase/Google Cloud)
- Payment processing (Stripe)
- Analytics providers (Google Analytics)
These providers are contractually obligated to protect your data and use it only for specified purposes.
5.3 Legal Requirements
We may disclose your information if required to:
- Comply with legal obligations (court orders, subpoenas)
- Enforce our Terms of Service
- Protect our rights, property, or safety
- Prevent fraud or security threats
5.4 Business Transfers
If ProofSnap is involved in a merger, acquisition, or sale of assets, your data may be transferred. We will provide notice before your data is transferred and becomes subject to a different privacy policy.
6. Data Security
We implement industry-standard security measures:
- Encryption: TLS 1.3 for data in transit, AES-256 for data at rest
- Authentication: Firebase Authentication with secure password hashing
- Access Controls: Role-based access to user data
- Regular Audits: Security reviews and vulnerability assessments
- Secure Development: Code reviews and security testing
However, no method of transmission over the Internet is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
7. Data Retention
We retain your data as follows:
- Account Data: Until you delete your account or request deletion
- Captured Evidence: Until you manually delete it (if stored in cloud)
- Payment Records: 7 years (for tax and accounting purposes)
- Usage Logs: 90 days (for analytics and troubleshooting)
- Support Tickets: 3 years (for customer service records)
After retention periods expire, we securely delete or anonymize your data.
8. Your Rights and Choices
8.1 Access and Portability
You have the right to:
- Access your personal data
- Request a copy of your data in machine-readable format (JSON)
- Export your captured evidence packages
8.2 Correction and Deletion
You can:
- Update your account information in the Extension settings
- Delete individual captures from your account
- Request complete account deletion (all data will be permanently removed within 30 days)
8.3 Opt-Out
You can opt-out of:
- Analytics: Disable Google Analytics in Extension settings
- Marketing Emails: Unsubscribe link in emails (we send very few)
- Cloud Storage: Use local-only mode (no cloud upload)
8.4 Withdraw Consent
You can withdraw consent for data processing by:
- Disabling specific features in Extension settings
- Deleting your account
- Uninstalling the Extension
8.5 GDPR Rights (EU Users)
If you are in the European Economic Area (EEA), you have additional rights under GDPR:
- Right to Access: Request what personal data we hold about you
- Right to Rectification: Correct inaccurate data
- Right to Erasure: Request deletion ("right to be forgotten")
- Right to Restrict Processing: Limit how we use your data
- Right to Data Portability: Receive data in portable format
- Right to Object: Object to certain processing activities
- Right to Lodge a Complaint: File complaint with supervisory authority
8.6 CCPA Rights (California Users)
California residents have rights under CCPA:
- Know: What personal information is collected and how it's used
- Delete: Request deletion of your personal information
- Opt-Out: Opt-out of sale (we don't sell data)
- Non-Discrimination: We won't discriminate for exercising rights
9. International Data Transfers
ProofSnap operates globally. Your data may be transferred to and processed in the United States or other countries where our service providers operate.
For EEA users: We rely on Standard Contractual Clauses (SCCs) approved by the European Commission for international data transfers. Google Cloud Platform (Firebase) and AWS comply with EU-U.S. Data Privacy Framework.
10. Children's Privacy
ProofSnap is not intended for use by children under 13 years of age (or 16 in the EEA). We do not knowingly collect personal information from children.
If you believe a child has provided us with personal information, please contact us immediately at support@getproofsnap.com and we will delete it.
11. Cookies and Tracking
ProofSnap uses minimal cookies and tracking technologies:
- Essential Cookies: Required for authentication and functionality (cannot be disabled)
- Analytics Cookies: Google Analytics for usage statistics (can be opted out)
- Local Storage: Browser storage for settings and preferences
You can control cookies through your browser settings. Disabling essential cookies may affect Extension functionality.
12. Do Not Track (DNT)
ProofSnap respects Do Not Track (DNT) signals. If DNT is enabled in your browser, we will not collect analytics data.
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will notify you of material changes by:
- Posting the updated policy on this page
- Updating the "Last Updated" date
- Sending an email notification (for significant changes)
- Displaying an in-Extension notice
Continued use of ProofSnap after changes constitutes acceptance of the updated policy. If you disagree with changes, please stop using the Extension and delete your account.
14. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or your data, please contact us:
- Support: support@getproofsnap.com
- Website: https://getproofsnap.com/#contact
We will respond to your request within 30 days (or as required by applicable law).
15. California Shine the Light Law
California residents may request information about our disclosure of personal information to third parties for direct marketing purposes. We do not share personal information for such purposes.
16. Accessibility
We are committed to making our privacy practices accessible. If you need this policy in an alternative format, please contact us.
By using ProofSnap, you acknowledge that you have read and understood this Privacy Policy.
← Back to Home