Privacy policy
Last updated · 2026-08-31
Remorph captures web pages so you can redesign them and send the result to their owner. That means we handle two very different things: your account, and the pages you point the extension at. This page says exactly what happens to both.
Who we are
Remorph — entreprise individuelle immatriculée en France, France, is the data controller for the Remorph website, extension and API.
Questions, or to exercise any right below: privacy@remorph.app.
What we collect, and why
Your account — email address and a hashed password (bcrypt; we never hold the password itself). Needed to sign you in, to host your links under your name, and to meter your plan. Legal basis: performance of the contract.
Pages you capture — when you click Capture, the extension copies the page as it renders in your browser. That copy stays on your machine while you edit it. It leaves your machine only when you (a) click Generate with hosting on, which uploads the finished before/after so it can be served from a link, or (b) use the AI redesign, which sends the page's content and up to eight downscaled screenshots to our AI provider. Legal basis: performance of the contract.
Artifact opens — when someone opens a before/after link you sent, we record the time, a truncated hash of their user agent and IP address, and how long the page stayed open. We count opens; we do not build a profile and cannot re-identify the visitor from those hashes. Legal basis: our legitimate interest in giving you the open-tracking the product is sold on.
AI usage — for each AI request, the number of tokens and its cost. This is what enforces your monthly allowance. It records no prompt content.
Billing — if you subscribe, Stripe holds your payment details and we store only your Stripe customer identifier and your plan. Legal basis: performance of the contract and our legal accounting obligations.
Pages you capture belong to someone else
This is the part that deserves your attention. A captured page is somebody's website, and its owner has not agreed to anything with us. So:
We treat a captured page as your working material. We do not index it, mine it, sell it, or use it to train anything.
Hosted before/after links are unlisted and unguessable, you can deactivate or delete them at any time, and every artifact states plainly that it is a mockup rendered from the live page.
Do not capture pages behind a login, or pages showing personal data — a customer account area, a patient record, an admin dashboard. Those pages would be uploaded with whatever is on screen. Capture public pages.
Who else processes your data
We use these processors, and no others:
Anthropic PBC (United States) — receives the content and screenshots of pages you capture, to generate the redesign. Under Anthropic's commercial terms, API inputs are not used to train models.
Google LLC (United States) — may receive the same content for the cheaper lane used to draft block variants and the pitch note. We use a paid tier, on which Google does not train on the data.
Stripe Payments Europe Ltd (Ireland) — payments. We never see or store your card number.
Zoho Corporation B.V. (Netherlands/EU) — transactional email (verification, password reset, notifications).
Vercel Inc. — hosting of the website.
Serveur privé virtuel hébergé dans l'Union européenne (fournisseur communiqué sur demande) — hosting of the API and of your generated artifacts.
Transfers outside the EU
Our AI providers are in the United States. Those transfers rely on the European Commission's Standard Contractual Clauses, and, where applicable, on the provider's certification under the EU-US Data Privacy Framework.
If that is not acceptable for a given client's site, do not run the AI redesign on it — the manual editor never sends anything anywhere.
How long we keep it
Account: as long as your account exists, then deleted within 30 days of your deletion request.
Artifacts and their open events: until you delete them, or 12 months after your account is closed.
AI usage records: 24 months, for billing and accounting.
Invoices: 10 years, because French commercial law requires it.
Cookies
None. The site sets no advertising, analytics or tracking cookie, and there is no cookie banner because there is nothing to consent to. Your session token is kept in your browser's local storage, which is strictly necessary to keep you signed in.
Your rights
Under the GDPR you can access, correct, delete, port, or restrict the processing of your data, and object to processing based on legitimate interest. Write to privacy@remorph.app and we will answer within one month.
You may also lodge a complaint with the CNIL (www.cnil.fr) or your own national supervisory authority.
Security
Passwords are hashed with bcrypt. All traffic runs over TLS. API access uses short-lived bearer tokens, never third-party cookies. Artifact links carry random identifiers that cannot be enumerated.
No system is perfect. If you find a vulnerability, write to privacy@remorph.app and we will work with you.