Privacy Policy
Last updated August 26, 2026Glyphus (glyphus.dev) is operated by an individual developer. This page describes what data is collected across the three things the site actually does today: generating icons, joining the screenshots waitlist, and the optional tip checkout. It does not describe features that aren't live — see “Dormant infrastructure” below for the one exception worth being upfront about.
Icon generation
The core generator (web, MCP server, and CLI) is anonymous and stateless. The image you upload is held in memory only for the duration of the request, used to render the output zip, and then discarded — it is never written to a database, a file, or any storage bucket. No account, email, or identifier of any kind is required or collected to generate icons.
Screenshots waitlist
If you join the waitlist for the upcoming macOS screenshots app, we store the email address you submit together with which waitlist you joined and a timestamp. That's the entire record — no name, no other profile data. This list is used only to notify you when that product ships, and is never sold or shared with a third party for marketing.
Tip checkout
The optional “Buy me a coffee” tip is processed by Paddle.com Market Limited, acting as Merchant of Record for this purchase. Paddle collects and processes your payment details (card number, billing address, etc.) directly — Glyphus never receives, sees, or stores your payment information. Paddle's own privacy policy governs that data.
Dormant infrastructure
The API has an account/sign-in system (GitHub or Google OAuth) built for a future paid tier, but it is not exposed anywhere in the current site — there is no sign-up flow to find. If that changes, this page will be updated first to describe exactly what an account would store (email, name, avatar URL, and plan status) before the feature is turned back on.
Cookies and tracking
Glyphus runs no analytics, advertising, or tracking scripts of any kind — nothing like Google Analytics, Meta Pixel, or similar is loaded on this site. The only cookie the API can set is a session cookie for the dormant sign-in system described above, which is never set unless that flow is actually used. Paddle's checkout overlay may set its own cookies while open; that is governed by Paddle's privacy policy, not this one.
Hosting
The web app is served from Cloudflare's network; the API runs on Fly.io; the waitlist database is hosted on Neon (Postgres). No other third party has access to this data.
Your rights
To remove your email from the waitlist, or ask what data (if any) is held about you, contact rajabboyevsamandar22@gmail.com. Requests are handled directly, by hand, since this is a small independent project rather than a company with a dedicated privacy team.
Changes
This policy may be updated as the product changes. The “Last updated” date at the top of this page always reflects the current version.