EtchDeck LogoEtchDeckMemory Workspace
Log inSign up

Privacy

Privacy

This notice explains how EtchDeck processes information through etchdeck.com, the App, and the browser extension, including storage, data portability, and account deletion choices.

Effective date: 2026-06-18

Current service status

The current EtchDeck service supports registration and sign-in, text and image cards, groups, reviews and FSRS settings, import and export, browser-extension API Keys, Apple image-plan subscriptions on iOS, and in-app account deletion with immediate deactivation and a 7-day recovery window. This notice describes currently available features and does not promise publication on any additional app store.

Information processed

Information may include account name, registered email and language; password hashes, login tokens and verification codes; normalized source IP and coarse client summaries used for security; API Key metadata; card titles, hints, text, images, source URLs and groups; FSRS settings, review states and logs; import/export files and task metadata; authenticated file requests and server request paths; and local data needed for sign-in, preferences, image caching and the mobile review outbox.

Purposes and service providers

EtchDeck uses information for authentication, syncing, imports and exports, card editing, image retrieval, review scheduling, extension access, account security, transactional email, support, and operational troubleshooting. Tencent Cloud hosts the production API servers, PostgreSQL database, backups, and request and operational logs in Silicon Valley Zone 2, United States. Cloudflare, Inc. provides Cloudflare R2 as an object-storage processor and service provider on EtchDeck’s behalf. R2 stores image-card originals, previews, thumbnails, and necessary object metadata, and processes necessary request and connection data when transferring those objects. The production bucket uses Cloudflare’s WNAM (Western North America) location hint. This hint guides placement but does not guarantee exclusive processing or data residency in that location. All R2 objects are private and public access is disabled; EtchDeck provides access only through short-lived signed URLs after verifying authentication and ownership. PostgreSQL stores file metadata, R2 object keys, and source URLs, but not image bytes. Plus Five Five, Inc. (Resend) delivers transactional account email and processes recipient email addresses, verification, password-reset and account-deletion email content, and delivery metadata; Resend account data for this service is stored in the United States. Processing by Cloudflare and Resend is governed by their applicable service agreements and data processing addenda. Because these providers operate in the United States or Western North America, information may be processed outside the user’s country. EtchDeck requires service providers with access to user data to provide the same or equivalent protection described in this notice and required by applicable platform rules. EtchDeck does not sell personal data or user card content.

Browser extension and Limited Use

The extension’s single purpose is to save user-selected webpage text or images to private EtchDeck cards for later review. On Chromium 140 and later, the API Key is encrypted at rest with AES-256-GCM and stored persistently in private IndexedDB under the extension’s own origin together with a non-exportable CryptoKey; Firefox 128 and later use private IndexedDB under the extension’s own origin. Webpage content scripts cannot read the key. Browser restarts and extension reloads or updates do not clear it. Clear removes it from this browser, uninstalling the extension removes its local data, and revoking the key in Web settings makes the stored value unusable even if it remains locally until cleared. The accepted disclosure version, floating-button settings, and ignored-domain list also remain in local extension storage; on Chromium, that separate storage area is restricted to trusted extension contexts. Card-group IDs and names are fetched from EtchDeck for each editor and are not stored or cached by the extension; legacy plaintext keys, login tokens, and group-cache data are removed during migration. It reads selected text or images and the source page or image URL only after a user action. After a text-capture action, the selected text is sent to EtchDeck for an exact-match search and the card-group list is loaded for the editor; a card is created or updated only after the user confirms Save. After an image-capture action, captureVisibleTab captures the visible tab only for local cropping and the full capture is not uploaded. When the user confirms Save, the extension first tries to retrieve and upload the selected original image; if remote retrieval is blocked, it asks the user for confirmation before uploading only the cropped fallback. The use of information received from Google APIs adheres to the Chrome Web Store User Data Policy, including the Limited Use requirements. Such data is not sold or used for advertising or creditworthiness, and humans may read it only with the user’s explicit consent for specific data, as necessary for a security investigation, or as required by law.

Chrome Web Store User Data Policy — Limited Use

Apple subscriptions

For eligible iOS purchases and restores, EtchDeck processes Apple product and transaction identifiers, appAccountToken, transaction environment and status, and relevant start, expiry, billing-grace, refund, or revocation times to verify purchases and provide account entitlements. Apple processes payment details; EtchDeck does not receive payment-card or bank information. Deleting an EtchDeck account does not cancel an Apple subscription, which must be managed in Apple Account settings.

Current crash diagnostics

The current version does not integrate Sentry, Firebase Crashlytics, or another third-party crash-reporting SDK. iOS diagnostics may be available through Apple’s native App Store Connect or Xcode Organizer reports under Apple’s settings and policies. EtchDeck does not intentionally include card content, screenshots, or attachments in crash diagnostics. If these practices change, this notice will be updated as required before the relevant processing.

Cookies and local storage

EtchDeck currently does not use advertising or cross-site tracking cookies. The Web client uses necessary local storage for sign-in and user-requested preferences such as language and font settings. Mobile font settings stay on the device. Before any future non-essential cookie, analytics, or similar browser storage is used, EtchDeck will provide the choices required by applicable law, with rejection as easy as acceptance where required.

Retention and deletion

Information is retained only as long as reasonably necessary for the stated purposes, service operation, security, dispute resolution, and legal obligations. Soft-deleted cards and unreferenced files are permanently removed after the applicable operational retention period. An account-deletion request immediately revokes active credentials and keeps a 7-day recovery window; after that window, eligible online account and business data is physically deleted. Request logs and backups expire or are overwritten under limited operational cycles; backup copies are not edited row by row and may remain until the applicable cycle ends.

Security measures

Controls include bcrypt password hashes, authenticated file access, ownership checks, revocable credentials, log minimization, and backup-restore checks intended to prevent deleted accounts from reappearing. Production deployments are required to use encrypted transport. No technical or organizational measure can guarantee absolute security, uninterrupted availability, or that data will never be lost.

Rights, minors, changes, and contact

Subject to applicable law, you may request access, correction, export, or deletion of account data and may have additional rights to restriction or objection. EtchDeck is not specifically directed to children; where law requires digital-consent age or parental approval, a parent or legal guardian must approve use. EtchDeck may update this notice with an updated effective date and will provide any legally required notice. Contact [email protected] from your registered email when possible; identity verification may be required. You may also request information about the operator of etchdeck.com through that address.