Privacy Policy
Last updated: 2026-08-09
Summary
betterimage.io is a free social card editor for branded 1200×630 images (Open Graph and other link previews, blog hero images, newsletter covers, in-post graphics). You can use the editor without an account. If you create one, we store your email, a hashed password (or your Google identifier if you sign in with Google), the templates you save (including any photo or logo saved with them), and records of watermark-free downloads you purchase. We do not run analytics, advertising, or tracking pixels. We do not sell or share your data.
Who runs this site
The service is operated by the maintainer of betterimage.io. If anything in this policy is unclear or if you want to exercise a right described below, write to [email protected] .
What we collect from anonymous visitors
-
A session cookie
named
_og_key, signed by the server. It carries no personal data on its own and is used to keep CSRF tokens consistent between requests. - Your IP address is read on each request only for rate limiting. It is held in process memory and is not written to disk or to a database.
- Cloudflare Turnstile runs on the signup, log-in, and password-reset forms. Turnstile is a CAPTCHA replacement run by Cloudflare. It receives a token tied to your request when you load those forms. See Cloudflare's privacy policy.
- Anonymous download counts. When an image is downloaded without an account, we record only that a download happened, with the time and template kind. No IP address or other identifier is stored with it.
What we store if you create an account
- Your email address. Used to log in, to confirm the account, and to send password-reset emails.
- Your password, hashed with bcrypt. We never store, see, or transmit your password in plain text.
- Google identifier (only if you use Sign in with Google). We store the Google provider ID returned by Google's OAuth flow, so we can recognize you on later sign-ins.
- Account housekeeping fields: email confirmation timestamp, last sign-in timestamp, sign-in count.
- Your saved templates. A template is the design (template kind, colors, fonts, layout, accent settings) together with any photo or logo you saved with it. Stored images live in our object storage under your account and are served only to your own logged-in session.
- Download records. When you download an image while signed in, we record the time and the template kind used, linked to your account. We use these counts to understand which templates are used and to improve the product.
-
A remember-me cookie
(only if you tick "Stay logged in" at sign-in), named
_og_user_remember_me, signed by the server, valid for 14 days.
Photos and logos you upload in the editor
The editor sends your uploaded image to the renderer as part of the render request. The renderer composes it into the output PNG and returns the PNG to your browser. Recent renders are kept in a short-lived in-memory cache so that repeat previews are fast. Cached entries fall out automatically and are not written to disk.
If you are signed in and save a design as a template, the photo or logo in that design is stored in our object storage under your account, together with a rendered preview thumbnail, so the template can restore them when you re-open it. These files are only ever served back to your own logged-in session. Deleting your account deletes them.
Paid downloads
Payments are processed by Stripe; we never see your card number. When you buy a watermark-free download, we store a record of the purchase (a Stripe session reference, the price, and timestamps) and the rendered image itself, so your download link keeps working for 7 days. If you were signed in when you bought it, the purchase is attached to your account and listed on your purchases page; otherwise it is not linked to any account.
Transactional emails (account confirmation, password reset, email change) are sent through Postmark in production. Postmark processes your email address and the message content for the purpose of delivering the email. We do not send marketing or newsletter emails from this service.
Service providers
A few providers process data on our behalf, each for one narrow purpose: Stripe (payment processing), Postmark (transactional email delivery), Cloudflare Turnstile (bot protection on auth forms), Google (only if you choose Sign in with Google), and our hosting and object-storage infrastructure, which stores the application database and the image files described above. We do not add providers that profile or track you.
What we do not do
- We do not run a third-party analytics product on the site.
- We do not run advertising or tracking pixels.
- We do not sell, rent, or share your data with brokers.
- We do not build a profile of you for marketing.
Your rights and how to use them
- Delete your account. Go to your settings, type the confirmation phrase, and submit. The account, all session tokens, all your saved templates, and every image stored with them are removed. Records of paid downloads are kept for accounting but are disconnected from you; download counters lose their link to your account.
- Change your email. Same settings page. We send a confirmation link to the new address; the change only takes effect after you click it.
- Change your password. Same settings page. Changing the password invalidates every active session on every device.
- Export your saved templates. Each template is stored as a JSON spec. We do not have a one-click export today; if you need one, email [email protected] and we will send the JSON.
Children
The service is not directed at children under 13. We do not knowingly create accounts for children under 13. If you believe an account was created by a child under 13, email us and we will remove it.
Changes to this policy
If we change how we handle data, we will update this page and the "Last updated" date at the top. Material changes that affect existing accounts will trigger an email to the address on file before they take effect.
Contact
Questions, requests, complaints: [email protected] .