How Snapester handles your data.
Last updated: April 2026
Snapester is a screenshot styling tool built for builders, creators, and product teams. We collect only the minimum data required to operate the product, process payments, and support users. We never sell your personal data — ever.
Who we are
Snapester is an independent product. When we say "we", "us", or "Snapester" in this policy, we mean the team behind Snapester. For questions, reach us at @buildwithshyam.
What data we collect
We collect the minimum data needed to provide our service:
- Account information — when you sign in with Google, we receive your name, email address, and profile picture. We use this to identify your account and personalise the dashboard.
- Usage data — the number of screenshots you export each month. We track this to enforce free-plan limits (10 exports/month) and reset them at the start of each billing cycle.
- Payment information — when you purchase a Pro lifetime plan, Dodo Payments processes the transaction. We store your Dodo customer ID, payment status, and plan tier. We never see or store your card details.
- Analytics — we use PostHog for anonymous product analytics (page views, feature usage). No personally identifying information is collected through analytics.
Images and screenshots
Your screenshots are processed entirely in your browser via the Snapester Chrome extension. Images you capture, upload, or paste are never sent to our servers. Snapester does not store, transmit, or have access to the content of your screenshots.
How we use your data
- To create and manage your account
- To enforce and reset your monthly export limit (free plan)
- To process your Pro lifetime purchase via Dodo Payments
- To improve the product using aggregated, anonymous usage analytics
- To respond to support requests you send us
Legal basis for processing (GDPR)
We process your personal data based on the following legal grounds:
- Contract performance — processing your account data and export usage is necessary to provide the service you signed up for.
- Legitimate interest — we process aggregated usage data to improve the product and fix bugs.
- Consent — for optional product communications. You can withdraw consent at any time.
Where your data is stored
Your data is stored on servers operated by our third-party providers. Servers may be located outside the European Economic Area (EEA), primarily in the United States:
- Supabase (database & auth) — hosted on AWS ap-northeast-2 (Seoul). Supabase complies with GDPR and industry-standard security practices.
- Vercel (hosting) — global edge network with primary infrastructure in the United States.
- Google OAuth — handles sign-in. Google's privacy practices apply to the authentication process.
- Dodo Payments — processes one-time Pro payments. Their privacy policy applies to payment data.
- PostHog — anonymous product analytics. No personal data is sent to PostHog.
Where data is transferred outside the EEA, we rely on Standard Contractual Clauses (SCCs) or equivalent safeguards provided by our service providers.
Data retention
- Account data — retained until you request account deletion.
- Export usage — reset to zero at the start of each month for free-plan users. Retained while your account is active.
- Payment records — Dodo Payments retains payment records as required by financial regulations. We only store your subscription status and Dodo customer ID, never your card details.
- Analytics data — retained in aggregate, anonymous form for up to 24 months.
Cookies
We use essential cookies and local storage for authentication and session management only. PostHog analytics uses no cookies and collects no personal data. We do not use tracking cookies or third-party advertising cookies.
What we never do
- We never sell your personal data to third parties
- We never access or store the content of your screenshots
- We never use your data for advertising or profiling
- We never store your payment card details — all payment processing is handled by Dodo Payments
Your rights (GDPR)
If you are located in the European Economic Area (EEA), you have the following rights under GDPR:
- Right of access — request a copy of all personal data we hold about you.
- Right to rectification — update or correct your personal data through your account settings.
- Right to erasure — request deletion of your account and all associated data.
- Right to data portability — request your data in a machine-readable format.
- Right to object — object to processing based on legitimate interest.
- Right to withdraw consent — unsubscribe from emails at any time.
To exercise any of these rights, contact us at @buildwithshyam. We will respond within 30 days.
Changes to this policy
We may update this Privacy Policy as the product evolves. When we make material changes, we will update the "Last updated" date at the top. Continued use of Snapester after changes constitutes acceptance of the revised policy.
Contact
For privacy questions or data removal requests, contact us at @buildwithshyam on X (Twitter) or through the support@snapester.com.