Back to Trust Center

Data Processing

Disclosure Level: Public | Version: v1.1 | Last Updated: January 2026

Data Categories

Customer Content

  • • Input images uploaded by users for processing
  • • Output images generated by SimplyPNG

Account Data

  • • User identifiers (e.g., email)
  • • Subscription plan level and entitlements
  • • Organization/team metadata (if applicable)

Billing Data

  • • Billing and payment processing handled by our payment processor
  • • SimplyPNG does not store full payment card details

Logs and Telemetry

  • • Application logs (errors, performance)
  • • Security logs (admin access events, auth events)

High-Level Data Flow

  1. 1User uploads an input image via the SimplyPNG web app or API
  2. 2Service stores the input image temporarily for processing
  3. 3Processing infrastructure retrieves input, performs workflow, generates output
  4. 4Output image is stored and made available to the user
  5. 5Input images are deleted according to retention policy

Data Retention & Deletion

Input Images

Default: Deleted immediately after successful processing

Failure handling: Deleted within 24 hours (for debugging purposes)

Output Images

PlanRetention
Guest / FreeBrowser-only (not stored in cloud)
Basic90 days
Plus180 days
Pro365 days
Creator / Studio365 - 1825 days (varies by tier)
APITemporary only — 1-hour download window, then deleted

Logs

  • • Application logs: 30 days
  • • Security logs: 90 days

Customer Controls

Data Deletion

Users can delete individual images via the gallery interface, or request full account deletion via settings or by contacting privacy@simplypng.app

Data Export

Supported via ZIP download from gallery

Data Location

We use reputable, industry-standard service providers. Details about specific service providers and data location specifics are available under NDA upon request for due diligence purposes.

Disclosure Policy Notice

This public document intentionally omits vendor names and sensitive infrastructure details.