Skip to content

Privacy policy

Last updated: September 22, 2026

Local image processing

Rendering, photo cutout and export run in the browser. No image is sent to the server unless the user deliberately saves a project in the cloud or creates a share.

Data collected

Without an account: no personal data is collected. Projects and uploaded files stay in the browser's local storage.

With an account: e-mail address, identifier of the authentication provider (Discord or Google), saved projects, files uploaded to the cloud, shares and, for the Premium plan, the Stripe customer identifier. Payment data is processed by Stripe and never goes through our servers.

Purposes and legal bases

Providing the service and managing the account (performance of the contract), invoicing and accounting obligations (legal obligation), security and abuse prevention (legitimate interest), aggregated anonymous export statistics to sort the gallery (legitimate interest).

Cookies and analytics

Only cookies strictly necessary to the session are used. When analytics are enabled they rely on Umami, without cookies or personal identifiers.

Retention

Account data is kept as long as the account exists, then deleted; invoices are kept for ten years under accounting obligations; technical logs are kept for twelve months at most.

Your rights

You have the right to access, rectify, erase, port and object. Export and deletion of the account are available from the Account page; any request can also be sent to contact@pilotecode.com. You may lodge a complaint with the CNIL.

Hosting and transfers

Data is hosted by Hetzner Online GmbH (Industriestr. 25, 91710 Gunzenhausen, Germany) and cloud files on Cloudflare R2. Providers (Stripe, Cloudflare, authentication providers) may process data outside the European Union under appropriate safeguards.