Zero-Knowledge Data Policy

Privacy Policy

Last Updated: January 1, 2026 • Effective Date: January 1, 2026

Core Privacy Principle

ImageSuite operates exclusively via client-side Web Technologies (HTML5 Canvas and browser APIs). Your images, graphics, photos, documents, and files are NEVER transmitted over the network to any remote server or stored in any database.

1. Information We Do NOT Collect

Unlike conventional online utilities that require uploading files to cloud storage buckets (e.g. AWS S3 or Google Cloud Storage) for conversion, ImageSuite relies entirely on local execution:

  • No Image Content: We do not receive, process, or view your original or converted images.
  • No Metadata Extraction: We do not log EXIF metadata (camera serial numbers, geolocation coordinates, lens settings, timestamps). In fact, browser canvas re-encoding strips metadata automatically.
  • No User Profiles: We do not require accounts, logins, passwords, or credit cards to use our core image tools.

2. How In-Browser Processing Works

When you drag a file into ImageSuite:

  1. Your web browser generates a temporary local object pointer (blob:http://...) referencing the file in your system's active RAM.
  2. The image is drawn onto an invisible HTML5 <canvas> element inside your browser sandbox.
  3. The canvas outputs compressed or converted pixel data directly to a downloadable file on your local hard drive.
  4. The temporary memory pointers are released and garbage-collected as soon as you clear the queue or close the browser tab.

3. Analytics & Telemetry

We may utilize privacy-preserving, aggregate web analytics (such as measuring total page views or identifying broken links) to maintain site uptime and performance. These analytics do not track individual identity, do not track file names, and do not inspect file contents.

4. Third-Party Integrations

If third-party customer support chat widgets (such as Crisp or Tawk) are enabled on the site, any information you voluntarily type into the chat is governed by the respective chat provider's privacy terms. We do not use third-party advertising cookies or cross-site tracking pixels.

5. Regulatory Compliance (GDPR, CCPA & HIPAA)

Because ImageSuite never transfers, stores, or processes personal data on remote servers, using ImageSuite to format employee badges, medical scans, identity records, or internal corporate schematics is inherently compliant with GDPR Article 25 (Data Protection by Design and by Default) and HIPAA physical safeguards.

6. Contact for Privacy Inquiries

For legal inquiries regarding our privacy standards or technical architecture, please email us at privacy@imagesuite.app.