SSapiest Dev
Image ConverterTermsSupport

LEGAL / PRIVACY

Privacy Policy

Effective August 6, 2026 · Developer and data controller: Sapiest Dev · sapiest.dev@gmail.com

Scope

This policy explains how the Image Converter apps for Android, iPhone and iPad, the JPG Image Converter Chrome extension, and the Sapiest Dev support website handle information. The apps and extension do not require an account.

Your images stay on your device

Image conversion is performed locally on your device. Image data stays within the local conversion workflow, including thumbnails, filenames, file paths, folder names, content URIs, security-scoped bookmarks, output hashes and EXIF metadata.

On Android, the app uses system photo and file pickers and user-selected storage locations. On iPhone and iPad, the app uses PhotosPicker and Files. Access is limited to content and destinations explicitly selected by you. The apps do not upload images to a cloud conversion service.

Selected files, conversion jobs, output settings, consent choices, entitlement state and bounded diagnostics may be stored in app-private storage so the app can complete and recover work. Deleting conversion history removes the app's private copies, but does not delete copies already exported to Photos, Files, Downloads or another external destination.

Source metadata, including location and device metadata, is removed from converted output by default. In the iPhone and iPad app, you can turn off Remove metadata in Settings to preserve metadata supported by the target format and encoder. Metadata handling remains entirely on-device.

Chrome extension

The Chrome extension processes selected JPG, PNG, WebP and HEIC/HEIF files locally in its side panel with bundled JavaScript, WebAssembly and Worker code. Image bytes, thumbnails, filenames, file paths and EXIF metadata are not sent to Sapiest Dev, analytics, advertising or support services.

Conversion jobs use the extension's local OPFS, IndexedDB and Chrome storage. Temporary conversion data is automatically cleaned up after up to seven days. Verified results are saved only when you press the download button, through Chrome's Downloads folder; Sapiest Dev does not receive or control your local download path.

If you choose “Convert image…” from a webpage, the extension requests optional access to that exact origin after your action. It fetches only the selected image URL needed for that conversion. The source and page URL stay within the local extension workflow and are not uploaded. The extension does not access cookies, browsing history, authentication data or unrelated page content.

The Chrome extension has no purchases, subscriptions, payment processing or third-party advertising. Optional links to the Image Converter mobile apps open their respective store listings and do not change how the extension processes data.

Information processed by network services

Network features depend on the installed platform, release configuration, connectivity, consent, entitlement and user action. No service listed below is permitted to receive image content or file identity from the apps.

  • Firebase Remote Config and Firebase Installations: may process an app installation identifier and configuration request metadata to deliver feature configuration and remote safety switches.
  • Google Mobile Ads and User Messaging Platform: may process IP address, device or advertising identifiers, consent state, ad requests, interactions and diagnostics for consent-aware advertising in the free tier. Ads are suppressed for Pro. Rewarded ads are not part of the product.
  • Optional Firebase Analytics and Crashlytics: when enabled by the release configuration and applicable user choice, may process allow-listed app interactions, coarse device/runtime information, stable error categories and crash diagnostics. These payloads exclude images, thumbnails, filenames, paths, folders, URIs, bookmarks, EXIF, output hashes, purchase tokens and user-entered feedback.
  • Chrome operational analytics: the Chrome extensions may send a randomly generated installation identifier, a per-session identifier, the extension version and allow-listed lifecycle or interaction names. Image Converter usage events remain operational; Video Compressor usage events are optional and consent-gated. A signed uninstall token lets the edge service attribute the uninstall callback to the same anonymous installation before redirecting to the clean feedback page. The edge service validates this allow-list and relays accepted events to the product-specific Google Analytics 4 stream. These payloads exclude image/video bytes, thumbnails, filenames, paths, media/image URLs, page URLs, EXIF metadata, free-form text and feedback messages.
  • Google Play Billing and purchase verification on Android: process product, package and transaction information required to purchase, restore, validate, refund or revoke the one-time Pro entitlement. Android purchase-verification services do not receive image or conversion data.
  • Apple StoreKit and the App Store on iPhone and iPad: Apple processes the product and transaction information required to purchase, restore, refund or revoke the one-time Pro entitlement. The iOS app does not send StoreKit transactions to the Android Google Play verifier.
  • Private feedback: if you explicitly submit feedback, the service receives the selected outcome and any optional message as entered, plus app version, platform, operating-system version, coarse device family, locale and timestamps. The feedback service does not attach image bytes, filenames, paths, image URLs, page URLs or EXIF metadata. Please do not type personal information or private image details into the message.
  • Chrome uninstall feedback: after removing the extension, Chrome may open the Image Converter uninstall page. If you choose to submit its form, the service receives the selected reason, your optional message, the extension version and timestamps. The form does not request a name or email address and does not receive image bytes, filenames, paths, image URLs, page URLs, browsing history or EXIF metadata.
  • Email support: an email contains the sender's address and any text or attachments the sender chooses to provide.

Service providers may process IP addresses, device or app identifiers, interactions, diagnostics, advertising data, consent state and purchase-related data under their own terms and privacy notices. Sapiest Dev does not sell personal data.

Website hosting and analytics

The public browser converter accepts JPG, PNG, WebP and HEIC/HEIF where the browser and device provide compatible decoding support. Conversion runs locally with browser file APIs, bundled decoders and Canvas.

The support website, uninstall page and this policy are delivered through Firebase Hosting. Firebase may process IP addresses and technical request information to deliver the pages, measure reliability and prevent abuse. The website keeps its temporary Google Analytics 4 stream and Umami mirror during the measurement migration, and also sends sanitized v2 website events through a same-origin first-party analytics relay. The relay adds the collector signature; the browser never receives the signing secret or contacts the collector directly. Advertising storage, advertising user data and ad personalization remain disabled.

Website analytics may process a random browser-local installation identifier, a per-tab session identifier, canonical route paths without query strings, timestamps, session activity, coarse referrer-domain buckets and traffic-quality classifier reasons. The bounded browser outbox and attribution values are kept in local/session storage so temporary network failures can retry without cookies. Product events use an allow-list of product, platform, destination, route intent, source and output formats, batch bucket, stable error code, CTA identifiers and placement. Validated first/latest-touch utm_source, utm_medium, utm_campaign, utm_content, utm_term and recognized click IDs may be retained for the current browser session. When you open a Chrome Web Store listing, a normalized campaign handoff may remain in this site's local storage for up to 24 hours. If the matching Sapiest extension is installed and opens its onboarding page, that page can send only those normalized campaign fields to the exact extension ID; successful delivery removes the handoff. Google Play links place the same normalized fields in Google's documented Install Referrer parameter. Full referrer URLs, arbitrary query strings, user agents, IP addresses, images, filenames, file sizes, dimensions, EXIF and user-entered text are not sent in product events. Automated, internal and test traffic is labeled and excluded from production aggregates. Firebase Hosting request processing is independent of website analytics.

The Chrome extension's conversion code, codec artifacts and JavaScript are bundled with the extension; it does not load remotely hosted executable code. For voluntary feedback, including uninstall feedback, the edge service uses the request IP address only to derive a temporary rate-limit key. The IP address is not included in the feedback record forwarded to the private feedback store.

Why information is used

Information is processed only as needed to provide requested app features, maintain Pro entitlement, display eligible advertising, obtain consent, understand optional aggregate usage, diagnose failures, answer support requests, secure services, prevent abuse and comply with legal obligations.

Retention and deletion

  • App-private conversion data follows the cleanup controls in the installed app. Clearing app data or uninstalling removes that local data subject to the operating system's behavior.
  • Voluntary feedback is retained for up to 12 months unless it must be kept longer to investigate abuse, resolve a request or comply with law.
  • Purchase audit information is retained while needed to maintain entitlement, prevent fraud, handle refunds or disputes and meet legal obligations.
  • Google and Apple retain data according to the rules for their services.

The apps have no user account, so there is no account-deletion flow. A request to locate and delete eligible feedback or purchase-audit data can be sent to sapiest.dev@gmail.com. Include enough non-sensitive context to locate the record; do not email images, filenames, paths, bookmarks, hashes or purchase tokens.

Your choices

Depending on the installed mobile release, you can decline optional telemetry, change available advertising privacy choices, avoid submitting feedback, delete local conversion history, clear app data or uninstall the app. In Chrome, you can avoid submitting free-form feedback, clear the extension's local data from its settings and manage downloads through Chrome settings. Clearing Chrome extension data resets its locally stored preferences and operational-analytics identifier; it does not disable future operational analytics. Conversion remains available when optional mobile telemetry or ad personalization is declined.

Depending on applicable law, you may request access, correction, deletion, restriction or a copy of personal information, object to certain processing, withdraw consent and complain to a local data protection authority.

Security and international processing

Production endpoints use HTTPS, network payloads are allow-listed, and access to production services is restricted. No security method can guarantee absolute protection. Google, Apple and other providers may process information in countries other than yours under their applicable safeguards.

Children

Image Converter is a general-purpose utility and is not directed specifically to children under 13 or the minimum age required by local law. Sapiest Dev does not knowingly request personal information from children through the apps.

Changes and contact

This policy may be updated when app behavior, SDKs, providers or legal requirements change. Material changes will be reflected by a new effective date and, where appropriate, an in-app or store notice.

Privacy questions and requests: sapiest.dev@gmail.com.