SatinShot

Privacy Policy

Last updated 13 September 2026

The short version

Your screenshots never leave your browser — SatinShot has no upload endpoint and no image storage. The only personal data we hold is what you give us when you sign in: an email address, and a display name and avatar if your provider sends them.

Your screenshots

Framing, resizing and PNG encoding all happen locally, in the browser tab. The finished ZIP is assembled on your machine and saved straight to your downloads folder. At no point are your images sent to our server, and we have no way to see them.

If you start a download while signed out, the set you were working on is kept in your browser’s own storage (IndexedDB) so it survives the trip to the sign-in page. It is removed as soon as it is restored, and in any case within an hour. It never leaves your device.

What we store about you

  • Your email address. It identifies your account and is how we reach you — for example when Apple changes the required screenshot sizes, which happens most Septembers.
  • Your name and avatar, if you sign in with GitHub or Google and they provide them. Shown to you, nowhere else.
  • Sign-in records. Which providers you have linked, your active sessions, and the tokens those providers issue.
  • Your download count. A single number, so we can apply the free-plan limit.
  • Payment references, once paid plans launch: a customer and subscription id from our payment provider, and the date your access runs until. Card details never reach us — the payment provider handles them.

We do not store passwords, because SatinShot has none. You sign in with GitHub, Google, or a one-time link sent to your email.

Analytics

We run our own Plausible Analytics instance on our own server. It sets no cookies, collects no personal data, and does not follow you across sites — which is why you see no cookie banner here. We record page views and a handful of product events (a set uploaded, an account created, a set downloaded) as anonymous counts.

Who else sees your data

We do not sell your data and we do not share it for advertising. It is handled only by the services that make the product work:

  • GitHub and Google — only if you choose them to sign in, and only to confirm who you are.
  • Resend — delivers the sign-in links and account email.
  • Our own server, rented from Hostinger and located in Frankfurt, Germany, where the database lives.

How long we keep it

For as long as your account exists. Ask us to delete it and we remove your account row and everything attached to it — sessions, linked providers, download count. Encrypted database backups are kept for seven days, so deleted data disappears from those within a week.

Your choices

You can ask us for a copy of your data, ask us to correct it, or ask us to delete your account entirely. Write to hello@satinshot.com from your account address and we will act on it.

Changes

If this policy changes in a way that affects what we collect or who sees it, we will email account holders before it takes effect. The date at the top always reflects the current version.

Questions about any of this: hello@satinshot.com. See also our Terms of Service.