Privacy Policy
Last updated: September 14, 2026
This Privacy Policy describes how Dane Hartman ("we," "us," or "our") collects and uses information when you use TagSmith and TagSmith Credits. We take your privacy seriously and collect as little data as possible.
1. What we collect
Purchase information. If you buy TagSmith Credits (coming soon – not yet available for purchase), our payment processor Paddle provides us with your email address so we can deliver your license key. We store your email address alongside your license record for customer support and key recovery purposes.
License and credit data. We record your license key, current credit balance, and activation status, so the app can display and enforce them.
Free trial data. If you claim free trial credits, we store a one-way SHA-256 hash of a hardware identifier from your device – never the identifier itself – solely to prevent the same device from repeatedly re-claiming the trial.
2. What we do not collect
Your photos, videos, and their metadata never leave your device for TagSmith's core editing features – scanning folders, editing dates/GPS/keywords, and writing changes to disk are all performed locally. We do not collect usage analytics, behavioral data, or any information about which files you process, and we don't use crash reporting or telemetry of any kind in the app itself.
3. Cloud services (optional)
TagSmith includes optional features to identify landmarks in photos and look up place names using Google's Gemini and Places APIs. These features are disabled by default and only activate when you explicitly turn them on – they reset to off at the start of each new session.
When you identify a landmark in a photo, a downscaled preview image of that photo (never the original file) is sent for processing, either directly to Google using an API key you supply yourself, or through our Cloudflare Worker using TagSmith's own keys if you're using purchased TagSmith Credits instead. If a landmark is found, its approximate name and coordinates may then automatically be sent again, the same way, to refine the result into a precise, authoritative location – this happens as part of identification, not as a separate search.
Manually searching for a city or place by name works differently depending on how Cloud Services is set up. With your own API key, that search text is sent to Google's Places API (only if you've supplied a Places key specifically – it's optional and separate from the key used for identification). With TagSmith Credits, manual search always uses TagSmith's own offline place database instead and is never sent to Google.
Whenever data is sent to Google, it's processed and the result returned to your device – we don't store your photos on our servers. A cache of recent identification results is kept only locally on your own computer, never on ours.
On Google's side: TagSmith Credits and any billed (paid) Google API key are covered by Google's paid-service terms, under which Google states it does not use your prompts or images to train its models by default, and retains logs only briefly (up to 55 days) for abuse, safety, and legal-compliance purposes. If you're using a free, unbilled Google API key instead, Google's terms reserve broader rights to use your submitted content, including for improving their products, with human review – see Google's Gemini API Additional Terms of Service for the current, authoritative details.
4. Third-party services
- Google – Gemini and Places APIs, used only when you enable Cloud Services, to identify landmarks in a photo you select.
- Paddle – payment processing and tax compliance for TagSmith Credits purchases. Paddle acts as the Merchant of Record and handles all payment data under its own privacy policy.
- Cloudflare – hosts this website, our Worker (which relays TagSmith Credits requests to Google), and the license/credit records described above.
- Resend – transactional email for license key delivery.
5. Data retention
We retain your email address and license/credit record for as long as your license is active and for a reasonable period thereafter for support purposes. A free-trial device hash is retained indefinitely to keep the abuse-prevention check working. You may request deletion at any time by contacting us.
6. Your rights
You may request access to, correction of, or deletion of your personal data at any time by emailing us. We will respond within 30 days.
7. Changes to this policy
We may update this policy from time to time. Material changes will be reflected by an updated "Last updated" date above.
8. Contact
Privacy questions or data requests: support@tagsmith.app.