This policy explains what Tinify.dev collects, how uploaded images are handled, and who processes data on our behalf. Tinify.dev is an independent product built in Norway by Stian Larsen. It is not affiliated with Tinify B.V. or TinyPNG.
What we collect
- Uploaded images. The images you send to the web tools or the API are processed transiently to produce a result. They are not part of a profile and are not retained long-term.
- Account email. If you create a dashboard account, we store the email address you sign in with. Authentication is handled by Clerk.
- Billing data. Paid API plans are handled by Paddle as Merchant of Record. Payment details are entered with Paddle, not with us, and we never see full card numbers.
- Analytics. The marketing site uses self-hosted, cookieless analytics (Umami). It records aggregate page views without cookies, without cross-site tracking, and without personal profiles.
How your images are handled
- Images are processed by the Tinify.dev API on a server in Germany (Hetzner).
- The processed result and the original upload are deleted automatically after 2 hours. Nothing is kept long-term.
- Your images and their contents are never used to train any model, never sold, and never shared beyond what is needed to process your request.
- Analytics never receive image contents or filenames.
Sub-processors
We use a small set of providers to run the service. Locations indicate each provider's primary processing region.
| Provider | Purpose | Location |
|---|---|---|
| Hetzner | Hosting and image processing | Germany |
| Vercel | Frontend hosting and CDN for the marketing site | United States (global CDN) |
| Clerk | Authentication for dashboard accounts | United States |
| Paddle | Billing and payments, acting as Merchant of Record | United Kingdom / EU |
| Brevo | Transactional email, such as quota alerts | European Union (France) |
| Umami (self-hosted) | Cookieless, privacy-friendly analytics on the marketing site | Germany |
Data retention
Uploaded images and their processed results are removed automatically within 2 hours. Account email and any billing records tied to a paid plan are kept for as long as the account is active, and afterwards only as required for legal, tax, or accounting purposes.
Your rights
You can ask for a copy of the account data we hold, or ask us to delete your account and its associated data. Contact us and we will handle the request. See the support page for how to reach us.
Children
Tinify.dev is a general image tool and is not directed at children under 13. We do not knowingly collect personal data from children under 13.
Changes
We may update this policy as the service evolves. When we do, we will change the "Last updated" date above. Material changes will be reflected on this page.
Contact
Questions about privacy or a data request can go to support@tinify.dev or through the support page.