Privacy Policy
How Maskole handles your data.
Last updated July 2026
This policy explains what we collect, why, and the choices you have. It is a general template and not legal advice — adapt it to your jurisdiction before launch.
1. Information we collect
- Account data. Your email address. Authentication is passwordless — we email you a one-time sign-in code, so we never store a password.
- Billing data. Subscription status and identifiers from our payment processor (PayPal). We do not store your card details.
- Profile data. Encrypted browser-profile blobs you choose to sync, stored in private object storage.
- Operational data. Basic logs needed to run the service securely.
2. How we use it
- To authenticate you and provide the service.
- To process subscriptions and enforce plan limits.
- To secure the platform and prevent abuse.
3. Sign-in codes & email
One-time codes are sent through Amazon SES. Codes are short-lived, single-use, and stored only as a hash. We use your email solely to deliver these codes and essential account notices.
4. Profile storage
Synced profiles live in private storage. Every upload and download uses a short-lived URL that our server signs on demand; storage credentials never leave our backend, and objects are not publicly accessible.
5. Third parties
- PayPal — subscription billing.
- Amazon SES — transactional email (sign-in codes).
- S3-compatible storage — private profile blobs.
6. Data retention
We keep account data while your account is active. You may request deletion at any time; we remove your profiles and associated data, subject to any records we must retain for legal or billing purposes.
7. Your rights
Depending on where you live, you may have rights to access, correct, export or delete your personal data. Contact us to exercise them.
8. Contact
Questions about privacy? Reach us at [email protected].