Privacy Policy

Effective Date: July 16, 2026

We value your privacy and are committed to protecting your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use Snipp.gg (the “Platform”). If you do not agree with this policy, please do not use the Platform.

Information We Store

We collect and store the following information to operate the Platform:

  • Email Address: Collected when you sign in via magic link or a connected account to identify your account.
  • Connected Account ID: If you sign in with Discord, Google, GitHub, or X, we store the unique account identifier from that provider to link it to your Snipp account.
  • Snipp User ID: A unique ID for your account.
  • API Key: If you create one in the Developer Console.
  • Relay Key: If you create one in the Developer Console.
  • Stripe ID: Your Stripe customer and/or subscription identifier.
  • Subscription Status: Indicates whether you are subscribed to Snipp+.
  • Account Creation Date: Timestamp of when your account was created.

Usage & Device Information

When you access the Platform, we collect limited technical data such as browser type, device information, time zone, and interaction events (for example, uploads and errors). Your IP address is used only in the moment to rate-limit requests and prevent abuse; we do not store it in raw form. We also derive a hashed fingerprint from your browser to detect abuse. This helps us secure the service and improve performance.

Signing In with a Connected Account

You can sign in with a magic link or by connecting a third-party account. When you sign in with a connected account, we receive only the information needed to create or identify your Snipp account:

  • Discord: Your Discord account ID, email address, and basic profile details.
  • Google: Your Google account ID and email address.
  • GitHub: Your GitHub account ID, username, and email address.
  • X: Your X account ID and username, and your email address if you have granted access to it.

We use this information only to create your account, sign you in, and suggest a username. We do not import or re-host your avatar or other profile media, and we do not post on your behalf. You can disconnect a linked account at any time in your settings.

Uploads, Storage & Deletion

Uploaded files are stored in Cloudflare R2. All files are encrypted at rest using AES-256-GCM encryption. Files are transmitted over HTTPS. Each file is associated with your user ID in metadata for access control and ownership verification. Internal access is restricted to authorized personnel for operational needs only.

Video uploads may additionally be processed and delivered through Cloudflare Stream to enable adaptive streaming playback. A copy of the original file remains in our primary storage, and the same encryption and access controls apply.

You can delete your uploads at any time. When you delete a file, it is immediately removed from our storage systems and from our CDN cache. Any remaining copies that appear after deletion are the result of your own device or browser caching, which we cannot control.

Content Responsibility

Snipp.gg does not scan or analyze your uploads with third-party moderation tools. You are solely responsible for the content you share. Content that is unlawful, infringes intellectual property rights, or poses risks to others may be removed if reported or required by law, in accordance with our Terms of Service. We will respond to valid copyright infringement notices in accordance with applicable law. Contact [email protected].

How We Use Your Information

  • To provide, maintain, and improve the Platform and its features.
  • To authenticate users (e.g., via email magic link or a connected account) and manage accounts and subscriptions.
  • To process payments and prevent fraud (Stripe for subscriptions and gifts, PayPal for creator payouts).
  • To communicate service updates, security alerts, and transactional messages.
  • To detect, investigate, and prevent abusive or illegal activities.
  • To comply with legal obligations and enforce our Terms of Service.

Third Parties & Processors

We use trusted providers to run the Platform. These may include:

  • Supabase: Managed database and authentication that store your account data.
  • Cloudflare: R2 object storage, Stream video encoding and delivery, CDN, DDoS protection, and related services.
  • Stripe: Subscription and gift payments. Card details are entered on Stripe and never reach Snipp's servers.
  • PayPal: Creator payouts. We share only the PayPal email and amount needed to pay you; no card or bank numbers are stored by Snipp.
  • Email (Resend): Delivery of sign-in links and account, billing, and notification emails.
  • OpenAI: Automated content moderation. Uploaded media and text may be sent for safety classification.
  • Sign-in providers: Discord, Google, GitHub, and X, used to authenticate you when you choose to sign in with a connected account.

These providers process data on our behalf and only as necessary to deliver their services. We do not sell your personal information.

Cookies

Snipp uses only strictly necessary, first-party cookies: a secure cookie to keep you signed in, a CSRF-protection token, a short-lived referral tag, and temporary sign-in state when you use a connected account. Your theme preference is stored the same way, and your cookie choice is saved locally in your browser. We do not use tracking, analytics, or advertising cookies.

Disclosure of Your Information

We may disclose information (i) to service providers as described above; (ii) to comply with applicable law, regulation, legal process, or governmental request; (iii) to enforce our Terms of Service; (iv) to protect the rights, property, or safety of us, our users, or the public; or (v) in connection with a corporate transaction (e.g., merger, acquisition), subject to appropriate safeguards.

Security

We use administrative, technical, and physical safeguards to protect your information. While we take reasonable steps to secure your data, no system can be guaranteed 100% secure, and transmission over the internet carries inherent risks.

Data Retention & Deletion

We keep your account information for as long as your account is active. You can delete individual uploads at any time, and you can permanently delete your account and its data from your settings. When you delete your account, we remove your profile, uploaded files, and associated social data such as comments, likes, and follows. Some records may be kept where required for legal, tax, security, or fraud-prevention purposes, such as transaction and payout history or records related to policy enforcement.

Lawful Basis for Processing

We process your personal data based on one or more of the following legal grounds: your consent, the performance of a contract, compliance with legal obligations, or our legitimate interests.

International Transfers

Your data may be stored or processed in countries outside the UK or EU, including in Cloudflare R2 data centers. When we transfer your personal data internationally, we use safeguards such as Standard Contractual Clauses approved by the European Commission to help ensure your data remains protected.

Your Rights (UK/EU Users)

If you are in the UK or EU, you have rights under the UK GDPR/EU GDPR, including the right to access, correct, or delete your data, and to object to or restrict certain processing. To exercise these rights, contact us at [email protected].

Related Policies

For copyright complaints, see our DMCA / Takedown Policy.
For details about your data rights under UK/EU law, see our GDPR / Data Rights page.

Contact Us

Questions or concerns about this Policy? Email us at [email protected]. To report security issues, email [email protected]. To report abuse or IP infringement, email [email protected].

Changes

We may update this Privacy Policy from time to time to reflect changes to our practices or for other operational, legal, or regulatory reasons. We will update the “Effective Date” above when we do so.