Trust
Privacy Policy
Lenscap keeps ordinary capture work on your Mac. This notice separates the app, this website, and the optional Personal Cloud preview so their boundaries are clear.
Last reviewed September 10, 20261. Scope
This policy covers the Lenscap Mac app and this website. Lenscap is the product name used for the site. The website is currently prelaunch and does not accept payment. Personal Cloud is an optional connection to infrastructure that you choose and operate with your own Neon credentials; it is not a Lenscap-hosted storage service.
2. Data on your Mac
The Mac app contains no analytics, advertising trackers, or capture telemetry. By default, screenshots, videos, GIFs, OCR results, capture-history metadata, and settings remain on your Mac.
- Captures use the folder and clipboard settings you choose.
- OCR runs on-device with Apple’s Vision framework.
- Capture history is a local index of the latest 300 captures.
- Personal Cloud credentials are stored in the macOS login Keychain.
- Lenscap does not request contacts or location access.
3. Network requests from the app
When you request an update check, or choose to enable automatic checks, Sparkle contacts Lenscap’s update feed and download host. Those providers may receive ordinary request data such as IP address, time, user agent, and requested URL.
If you configure Personal Cloud, Lenscap sends new eligible captures and related metadata to the Neon project and storage you configured. Existing history is not scanned or backfilled. Failed uploads may remain in a local retry queue. Your provider’s terms and privacy practices apply.
4. Personal Cloud sharing
Personal Cloud content is private until a signed URL is created. Opening a cloud capture creates a short-lived URL; Copy Share Link creates a seven-day URL. Anyone who holds one can use it until it expires. Deleting the stored capture may not immediately revoke an already issued URL, so keep sensitive material local when temporary link access is not acceptable.
5. Data this website processes
The founding-list form stores a normalized email address, the consent time and consent-copy version, the source page, and the record creation time. The privacy-request form stores the submitted email address, access-or-deletion request type, and submission time. Do not submit screen contents or other sensitive material through either form. To limit automated submissions, the site also keeps aggregate per-form request counts in 15-minute windows. Those counters do not contain an email address, IP address, user agent, or other visitor identifier. Old counters are deleted during later form activity after roughly 24 hours; if no later submission arrives, they may remain longer.
Before Lenscap sends marketing email, it creates one random opaque unsubscribe token for that address. While the address is eligible, the preference record stores the normalized address, token, token creation time, and most recent authenticated campaign-preparation time. The token does not contain the address. An unsubscribe, reply asking Lenscap to stop, complaint, hard bounce, or manual stop clears the bearer token, token creation time, and most recent preparation time; retires the active founding-list record; and keeps the normalized address plus the first suppression time and reason needed to prevent another marketing send.
Hosting and security infrastructure may process ordinary access-log and security data, including IP address, browser or user-agent data, requested URL, timestamp, and security events. This site’s own code does not include behavioral analytics, advertising trackers, or cross-site advertising technology.
For public form traffic, Cloudflare Turnstile runs a browser challenge and sends its single-use result plus technical security signals to Cloudflare. The server validates that result before writing a form record. Lenscap does not store the challenge token, IP address, or user agent in its form database.
6. Why the website uses this information
- Maintain the founding-release list and send requested Lenscap updates.
- Record consent, withdrawals, and privacy requests.
- Operate, secure, debug, and protect the website from abuse.
Lenscap does not sell personal information or share it for cross-site behavioral advertising.
7. Service providers
The site uses OpenAI Sites for the publishing service and Cloudflare infrastructure for delivery, the D1 database, and Turnstile form-abuse screening. These providers process information on Lenscap’s behalf to provide, secure, and maintain the site. Their own privacy notices describe their broader service practices.
An email-delivery, checkout, support, or payment provider is not yet connected. This policy will identify those providers before Lenscap uses them.
8. Cookies and browser privacy signals
Lenscap does not set analytics or advertising cookies. Hosting and security providers may use essential mechanisms needed to deliver or protect the site. Turnstile may present a security challenge when a visitor submits a public form. The owner-only administration area can use a sign-in session; ordinary visitors do not need an account.
Because Lenscap does not sell or share site data for behavioral advertising, there is no advertising sale or sharing to opt out of. The site does not otherwise change behavior in response to Do Not Track or Global Privacy Control signals.
9. Retention
Founding-list records are kept until you withdraw, or until 12 months after Lenscap ends the founding-release campaign, whichever comes first. An unsuppressed marketing-preference address and bearer token become eligible for deletion 90 days after the most recent authenticated campaign preparation. Lenscap deletes those stale active records before the next campaign preparation and through owner campaign-end maintenance. Deletion makes the old unsubscribe link unrecognized. The public form returns the same generic receipt for an active, repeated, old, or unrecognized link, so that receipt alone does not prove a record matched. If a link is old or unrecognized, reply unsubscribe to the Lenscap message or contact Lenscap Support. Stale preparation is not proof that a message was sent or that somebody opted out, so cleanup does not convert it into a permanent suppression record. Any future controlled dispatch must define sent-link retention and a working fallback before provider handoff. This cleanup never deletes suppression records or a suppression-only address. Lenscap may keep a limited suppression record for as long as needed to honor the choice, and rejoining a form does not silently clear it.
Privacy-request records are kept only as long as needed to verify, answer, and document the request, ordinarily no more than 24 months after it closes. Infrastructure providers retain operational and security records according to their settings, contracts, and legal obligations.
10. Your choices
You can ask Lenscap to provide or delete the information tied to your email. Lenscap may need to verify control of that address and may keep information when law, security, fraud prevention, or another person’s rights require it. The form below is a voluntary request channel and does not limit rights that apply where you live.
A recipient-specific message link also opens the email-choice page. Opening it does nothing by itself; confirmation submits the request. When an active link matches a preference record, Lenscap records the suppression. An old or unrecognized link receives the same generic receipt; reply unsubscribe to the original message or contact Lenscap Support instead.
11. Children
Lenscap is a general-audience Mac productivity product and is not directed to children under 13. If Lenscap learns that the site collected an address from a child under 13, it will delete it.
12. Security and changes
Lenscap uses reasonable safeguards for information it controls, but no storage or transmission method is completely secure. This notice will change as the product or providers change. The review date above will be updated, and material changes will be presented on the site or in requested product email when appropriate.
13. Contact
Use the privacy-request form on this page for data questions and requests. A brand-owned public email address will be added before commercial email or paid sales begin.