Privacy
Last updated 2 August 2026
The short version
Your photographs never reach us. magframe is a desktop application and the importing, culling, framing and printing all happen on your own machine — there is no upload, and this website has nowhere to put a photograph if one were sent. What we hold is the small amount needed to know who you are, which machines your licence is signed in on, and whether you have paid.
What we store about you
Your email address and name, because they identify the account and the name is shown in the app. Your password, hashed with scrypt — we cannot read it, and a reset replaces it rather than recovering it.
If you sign in with Google, the Google account id and the profile picture URL it gives us. We do not receive your Google password and we ask for nothing beyond your basic profile.
One row per signed-in device — a label, when it was first signed in, when it was last seen, and a hashed token. This is what enforces the seat count, and it is what the list on your profile page shows you. Browser sessions are stored the same way and last thirty days.
A Paddle customer idonce you subscribe, plus the subscription’s plan, status and renewal date. See below for what that means.
What we do not store
No photographs, no event libraries, no magnet templates, no print history. None of it is sent anywhere; it lives in magframe’s own storage on your machine and is yours to back up or delete.
No card details. Not the number, not the expiry, not the last four digits as anything we could act on. Card entry happens on Paddle’s own pages, which is why the billing section of your account is a button that opens their portal rather than a form of ours.
No analytics, no advertising identifiers, no third-party trackers on this site.
Who else sees it
Paddle is the Merchant of Record for every sale — they are the seller on your invoice and the name on your card statement. They receive your email address and billing details directly and handle tax. Their privacy policy governs what they hold.
Resend delivers our transactional email — address confirmations and password resets — and therefore sees the address the message is going to.
Vercel and Neon host the site and its database. Nobody else. We do not sell or share your details, and there is no arrangement under which we would.
How long it is kept
Account details are kept while the account exists. Confirmation and password-reset links are single-use and expire — twenty-four hours and one hour respectively — and the spent rows are deleted a week later. Expired browser sessions are swept automatically.
Ask us to delete the account and we delete the row; everything hanging off it — devices, sessions, subscription records — goes with it, because the database is set up to cascade. Records Paddle holds for tax purposes are theirs to keep for as long as the law says.
Your rights
You can ask for a copy of what we hold, ask us to correct it, or ask us to delete it. Email support@magframe.app from the address on the account and we will do it. You can change your name yourself on your profile, and release any device from the same page.
The 15-day trial asks for no card and no billing details, so for as long as you are only trying magframe out there is nothing here beyond an email address and a name.
Cookies
One cookie, mb_session, which identifies your browser session so you stay signed in. It is http-only, it is not readable by scripts, and it is not used for anything else. There is no consent banner because there is nothing to consent to.
Getting in touch
support@magframe.app. If something on this page does not match what the software does, that is a bug in the page and we want to hear about it.