Legal
Privacy Policy
Last updated September 29, 2026
Who we are
Jun Ryu (“we”) operates convert.dev and is responsible for your personal information. Our privacy officer is Jun Ryu, reachable at billing@convert.dev.
What we collect
- Account. Your name, email address, profile picture, and account ID from GitHub or Google when you sign in.
- Organizations and projects. The names you choose, and who is a member.
- API keys. A hash of each key and its last four characters. Never the key itself.
- Files. The files you upload and the results we produce.
- Jobs. Formats, options, sizes, timings, and errors for each conversion. Not the contents of your files.
- Usage and billing. How many conversions and credits you use. Paddle collects your payment details. We receive your billing name, email address, country, and plan, never your card number.
- Technical data. IP address, browser, and request logs, used to run and protect the Service.
- Cookies and browser storage. A session cookie that keeps you signed in, and a short-lived cookie during sign-in. No advertising or analytics cookies. The website also keeps your theme and your last project in your browser, and holds a file you drop before signing in for up to 20 minutes.
How we use it
To run your conversions, keep you signed in, bill you, prevent abuse, answer support requests, and meet legal obligations. We do not sell personal information, and we do not use your files to train models.
How long we keep it
| Data | Kept for |
|---|---|
| Uploaded files and results | 24 hours by default, up to 30 days if you ask |
| Job records | While your account exists |
| Account, organization, and project data | Until you delete your account |
| Usage and billing records | 5 years, for tax and accounting |
| Request logs | Up to 30 days |
Service providers and transfers abroad
We store data in the United States, in Virginia. The providers below process it for us. Data moves to them over encrypted connections while you use the Service, only for the purpose listed, and for the periods above.
| Provider | Purpose | Location |
|---|---|---|
| Fly.io | API and conversion servers | United States |
| Tigris Data | File storage | United States |
| PlanetScale | Database | United States |
| Amazon Web Services | Extra conversion capacity | United States |
| Cloudflare | DNS, network protection, and email | Global |
| Vercel | Website hosting | Global |
| Paddle | Checkout, payments, and tax | United Kingdom, United States |
| GitHub, Google | Sign-in | United States |
If you do not agree to these transfers, do not use the Service, or ask us to delete your account.
Your rights
You can ask to see, correct, export, or delete your personal information, or withdraw your consent. Email billing@convert.dev and we answer within 10 days.
Security
Connections use TLS. Each conversion runs in an isolated sandbox that can reach only its own files. API keys are stored as hashes.
Children
The Service is not meant for children under 14, and we do not knowingly collect their information.
Changes
We post updates on this page, and for material changes we email account owners before they apply.