This Privacy Policy explains what data renderapi (a product of SQEasy Club LTD) collects, why, and how it is stored. It is written to describe what the service actually does, not generic boilerplate — this reflects the current implementation.
To avoid re-rendering the same page twice, the output of a render is cached in Cloudflare R2 under a key derived from a hash of the render parameters (target URL, format, viewport, and related options) — not from your account or API key. This means that if two different customers request an identical render (same URL and options), they may be served the same cached file. Cached render output is not labeled with, or searchable by, any customer's identity.
renderapi does not set or read browser cookies. The dashboard is accessed using your API key directly, not a browser session.
We do not sell your data, and we do not use it for advertising.
Account, API key, and usage records are retained for as long as your account is active, plus a reasonable period afterward for billing and dispute records. Cached render output in R2 is keyed by content hash rather than by account, so it may persist independently of any specific account and is not selectively deletable per customer.
You can request deletion of your account and associated data by contacting us at the address below. Because one email address maps to one API key, deleting your account stops further billing and quota tracking for that key.
API keys are stored only as SHA-256 hashes, never in plaintext. Webhook payloads from Stripe are verified with an HMAC signature check before being trusted. All traffic to renderapi is served over HTTPS via Cloudflare.
We may update this Privacy Policy from time to time; the effective date at the top of this page will reflect the most recent revision.
Privacy questions or data-deletion requests can be sent to admin@toxot.net.