Privacy Policy
Last updated: April 2026
1. Who we are
Puritanizer is operated by SaaSquatch Ltd, a company registered in England and Wales. You can reach us about privacy matters at privacy@puritanizer.com.
2. What we collect
If you create an account, we store your email address and a bcrypt hash of your password. That's it. We do not collect your name, address, phone number, or any other personal information unless you voluntarily send it to us (e.g. in a support email).
For logged-in users, we also store basic usage statistics: image dimensions, whether a watermark was applied, and timestamps. We do not store the actual photos you upload to the tool.
3. How we handle uploaded images
When you upload a photo to Puritanizer, it is processed entirely in memory:
- The image is read from your upload, resized and re-encoded (stripping EXIF metadata), and sent to Google's Gemini image API for processing
- The edited image is returned to your browser as a base64 data URL
- We never write your photo to disk. We never store the image bytes in our database. We never train any model on your uploads.
The only per-image data we retain is anonymised usage metadata: the image dimensions, whether a watermark was applied, and the timestamp — used to calculate credit consumption and rate limits. This metadata is not linked to the image content in any way, because we never kept the content.
4. What we don't store
The photo you upload is sent to our AI provider for processing, and the result is returned directly to you. Neither the original upload nor the processed image is saved to our database. The AI provider may temporarily log requests for abuse prevention, governed by their own privacy policy.
5. Cookies
We use a single HTTP-only session cookie (puritanizer_token) to keep you logged in. It contains a signed JWT with your user ID and email. We do not use tracking cookies, advertising cookies, or third-party analytics cookies.
We use Umami Analytics, a privacy-first tool that does not use cookies or track personal data. It only records anonymous page views.
6. Third parties
We share minimal data with the following providers, strictly as needed to run the service:
- Vercel — hosting and database
- Google (Gemini) — AI image processing
- PayPal — payment processing (when you buy credits)
7. Your rights
Under UK GDPR you have the right to access, correct, or delete your personal data. Email us at privacy@puritanizer.com and we'll action any request within 30 days.
8. Changes
We'll update this page if anything material changes and notify registered users by email for significant updates.