1 Introduction & Scope
This Privacy Policy explains how ScreenshotHub ("we", "us", or "our") collects, processes, and protects information when you install and use the ScreenshotHub Chrome Extension, access the ScreenshotHub website, or use our cloud-sharing API.
ScreenshotHub complies fully with the Google Chrome Web Store User Data Policy, including the Limited Use requirements, the General Data Protection Regulation (GDPR), and the California Consumer Privacy Act (CCPA).
2 Data Storage & Processing Architecture
💻 Local Browser Storage (Default)
By default, 100% of your capture history, canvas undo/redo states, annotation vectors, crop dimensions, and project files are saved locally inside your browser using IndexedDB. This information never leaves your device.
☁️ Cloud Storage (Optional)
Cloud features are strictly opt-in. When you sign in with Google and click "Save to Cloud" or "Share", your selected screenshot is uploaded to Cloudinary CDN, and metadata is stored in MongoDB Atlas scoped strictly to your account ID.
3 Chrome Extension Permissions Disclosure
We adhere to the principle of least privilege. ScreenshotHub requests only the permissions necessary to provide its core screenshot and editing functionality:
Allows ScreenshotHub to capture an image of the current active browser tab ONLY when you explicitly click a capture button or trigger a configured keyboard shortcut (Alt+1 to Alt+4). We cannot read inactive tabs or background history.
Used temporarily during active capture sessions to render the interactive area selection crosshair and automate smooth full-page scrolling. Injected scripts are removed immediately after capture completion.
Stores your personal settings such as chosen export image format (PNG/JPEG/WebP), default padding, custom canvas theme, and auto-copy preferences.
Allows you to save finished screenshot files directly to your device's Downloads directory with one click.
4 Google Authentication & User Account Data
If you choose to use optional cloud sync, you authenticate using Google Sign-In (OAuth 2.0). We receive and store only your:
- Google User ID (for account association)
- Primary Email Address (for authentication and identification)
- Display Name & Profile Picture (for topbar user avatar rendering)
We never request or access sensitive Google account permissions such as Google Drive, Gmail, contacts, or documents.
5 Public Sharing & Cryptographic URLs
When you choose to generate a public share link for a screenshot, ScreenshotHub generates a secure 21-character cryptographic token (/s/:token).
Anyone with the exact share link can view and download the screenshot. Public viewer pages only display the image and title; your email, user profile, and other personal identifiers remain strictly concealed. You can permanently revoke access by deleting the screenshot from your "My Screenshots" library at any time.
6 Data Deletion Rights (GDPR & CCPA)
You have full sovereignty over your data:
- Instant Cloud Deletion: Deleting a screenshot from "My Screenshots" permanently and irreversibly purges the file from both MongoDB Atlas and Cloudinary CDN storage.
- Local Purge: Clearing browser data or using the in-editor history reset removes all local IndexedDB storage.
- Complete Account Erasure: To delete your user account and all associated cloud assets entirely, email privacy@screenshothub.com.
7 Third-Party Service Providers
For optional cloud features, we partner exclusively with enterprise-grade infrastructure providers:
- MongoDB Atlas: Managed cloud database hosting user accounts and screenshot metadata with encryption at rest and in transit.
- Cloudinary: Global CDN and media storage for cloud screenshot delivery.
- Google Identity: Secure OAuth 2.0 authentication verification.
8 Contact Information
If you have questions, feedback, or concerns regarding this Privacy Policy or ScreenshotHub's data practices, please contact our Data Protection Officer:
ScreenshotHub Legal & Data Protection
Email: support@screenshothub.com
Official Repository: github.com/iamtashanto/screenshothub