Legal
Privacy policy
Last updated September 22, 2026
At a glance
- Porder has no sign-up, no profile, and no password. There is no account for us to create, store, or delete.
- Your photos, EXIF metadata, presets, and exports are processed on your device. They are never uploaded to us.
- Porder contains no advertising, does not use advertising identifiers, and we do not sell or share your information with advertisers.
- A small amount of information leaves your device in three situations: automatic crash reports, anonymous usage events, and purchase or bug-report data that you initiate.
Who is responsible
Porder is developed and operated by an independent developer (“Porder”, “we”). The support contact for privacy questions is the address listed in the app’s About screen and on our store listing.
Information we process
Data that stays on your device
The photos you import, their EXIF metadata, your edits, saved presets, and exported files are handled entirely on your device. They are not transmitted to us, with one exception: an image you explicitly attach to a bug report.
Crash reports
When the app crashes or an error is caught, a report may be sent to our crash reporting provider, Sentry. A report can include the stack trace, device model, operating system version, app version, timestamps, and the IP address your connection presents to their servers. We use these reports only to diagnose and fix defects. Provider: Sentry.
Usage analytics
The app sends anonymous usage events to our analytics provider, Umami, such as screens opened, exports completed (including format, quality tier, and template), templates applied, presets saved, the paywall being viewed, and whether an entitlement check succeeded. These events contain no photo content, no metadata values, and no device advertising identifier. Umami does not use cookies or cross-app tracking.
We use this information in aggregate to understand which features matter and to notice regressions. You can opt out at any time from the analytics toggle in the app’s settings; the toggle stops all further events from your device. Provider: Umami.
Purchase and entitlement records
Android. Google Play Billing processes your payment and sends our validation service a purchase token. We store the product identifier, the purchase state, activation and refresh timestamps, and an audit record of entitlement changes. Google handles your name, payment instrument, and receipt; we never see your card details.
Windows and Linux. Desktop licenses are sold through our storefront provider, which acts as the merchant of record and emails your license key. When you activate it, we store a reference to the key, its status, and activation timestamps. The merchant of record holds your name, email, and payment details, not us.
We use these records to deliver Pro, refresh and revoke entitlements, and keep an audit trail for disputes and chargebacks. Providers: Google Play and Lemon Squeezy.
Bug reports you submit
If you send a bug report, we receive the text you wrote, any screenshot you attach, and basic device and app context included automatically. Reports are stored in our database so we can investigate. They are deleted when you ask us to (see Data deletion below).
Website and server logs
This website and the validation service receive standard technical logs: IP address, time, requested path, and user agent. They exist for security and reliability and are kept only briefly.
Information we do not collect
- Your name, email address, or phone number (license-key emails are held by the storefront provider).
- Account credentials of any kind, because there are no accounts.
- Location data, contacts, calendar, or your device’s advertising identifier.
- Your photos or gallery contents, except an attachment you deliberately include in a bug report.
- Payment card numbers; payments are handled entirely by Google Play and the storefront provider.
How we use information
- To provide the framing, export, and entitlement features of the app.
- To diagnose crashes and fix defects.
- To understand aggregate feature usage and improve the product.
- To validate, refresh, and revoke Pro entitlements and prevent refund abuse.
- To investigate bug reports you send.
- To keep the service secure.
Legal bases (EEA and UK residents)
- Contract: validating and delivering your Pro entitlement after a purchase.
- Legitimate interests: crash reports, aggregate usage analytics, security logs, and abuse prevention. These are low-risk processing activities aimed at maintaining a working product; the analytics and crash functions can be switched off or rejected by contacting us.
- Consent: bug-report content and attachments, which you choose to send. Where local law requires consent for any processing, you may withdraw it at any time by contacting us or, for analytics, using the in-app toggle.
Sharing
We do not sell or rent personal information, and we do not share it for advertising. Data is processed only by the service providers that run the app’s infrastructure:
| Provider | Purpose |
|---|---|
| Umami | Aggregate usage analytics |
| Sentry | Crash reporting |
| Google Play | Billing, purchase validation |
| Lemon Squeezy | Merchant of record for desktop licenses |
| Cloudflare | Validation API hosting and database |
| GitLab | Hosting for this website |
We may disclose information if legally required to do so, or to protect the rights and safety of our users or the service.
Retention
- Crash reports: kept according to our provider’s event retention, then removed or aggregated. They are diagnostic data, not archives.
- Usage analytics: stored in aggregate by the analytics provider.
- Entitlement records: kept while your entitlement may need to be proved, renewed, restored, or defended against a dispute, and deleted thereafter unless the law requires longer.
- Bug reports: kept while the investigation is open, and deleted earlier on your request.
- Server logs: rotated within days.
- Local data (photos, presets, settings, cached tokens): kept until you uninstall the app or clear its storage.
Security
All traffic is encrypted in transit with TLS. Entitlement tokens are signed on the server and validated server-side; no signing key ever ships inside the app. We do not store payment card data at all.
Data deletion
Because Porder has no accounts or user profiles, there is no profile database to delete and no account-closing flow. Deleting data works like this:
- On your device: uninstalling the app removes everything local, including photos, presets, settings, and cached entitlement tokens.
- Bug reports and entitlement records: contact the support address listed in the app’s About screen. After verifying your request, we will delete the bug report or server-side records we hold, except where we must retain them for legal or dispute purposes.
- Purchase records: your name, email, and receipt are held by Google Play or the storefront provider. Use each provider’s account and privacy tools to access or delete them.
Your rights
If you are in the EEA, the UK, or a similar jurisdiction, you may have the right to access, correct, delete, restrict, or object to our processing of your personal information, and to data portability. Because we process so little information and hold almost nothing directly linked to you, contact us with your license key or purchase reference and we will tell you exactly what we hold and act on your request. You may also lodge a complaint with your local data protection authority.
Children
Porder is not directed at children under 13. We do not knowingly collect information from children. If you believe a child has sent us information through a bug report, contact us and we will remove it.
International transfers
Our providers may process information in countries other than yours. When data leaves the European Economic Area, transfers rely on the providers’ safeguards, such as the European Commission’s Standard Contractual Clauses.
Changes to this policy
We will update this page when the app’s data practices change and revise the date above. Material changes will also be noted in the app’s release notes.
Contact
Use the support address listed in the app’s About screen or on our store listing for privacy questions, data access requests, and deletion requests.