Privacy notice

Last updated 30 August 2026

The short version: your clipboard history is a file on your own Mac. We never receive it. The only personal data we hold is what a subscription needs — essentially your email address and the identifiers Paddle gives us to recognise your subscription.

Who we are

clipppics is provided by Pastry. Our registered address and principal place of business is 20 Pangyo-ro, Bundang-gu, Seongnam-si, Gyeonggi-do 13485, Republic of Korea.

이 페이지의 한국어 개인정보처리방침 →

We are the controller for the personal data we collect about users of clipppics and this website. We are established in the Republic of Korea, so the Personal Information Protection Act (개인정보 보호법) applies to us. Because we also sell to customers in the UK and the EEA, the UK and EU GDPR apply to that processing as well, and this notice is written to meet both.

For privacy questions, to exercise any of the rights below, or to reach the person responsible for personal data here (개인정보 보호책임자), email tema@clipp.pics or write to us at the address above.

Paddle is a separate controller for the payment data it collects when you buy a subscription. See Paddle's privacy policy.

What the app does not send us

Your clipboard history — the text, images, and files clipppics captures, together with their notes, boards, and the app you copied them in — is stored in a single database file in Application Support on your Mac. It is not uploaded, backed up to us, or transmitted to us in any form. Clear History deletes it. Uninstalling removes it.

Clips that a password manager marks concealed or transient are never captured at all.

clipppics makes network requests in exactly one situation: fetching a link preview, and running a link's live page in the Case. Those requests go from your Mac directly to the site in question — not through us, and we receive no record of them. They cover public http and https addresses only; localhost, *.local, loopback, link-local, and private RFC1918 addresses are never fetched. A live page runs in an ephemeral store with a tracker blocklist and keeps nothing across relaunch. Both features can be switched off in Settings.

Paste-back needs macOS Accessibility permission to synthesise a ⌘V keystroke. That permission is granted to the app by macOS on your Mac; it sends nothing to us.

What we do collect

Subscription and billing records

When you buy a subscription, Paddle takes your payment details and tells us the outcome. We store your email address, your Paddle customer, subscription, and transaction identifiers, your subscription status and plan, the currency, and the relevant dates. We do not receive or store your card number or your billing address.

Purpose: to know whether your subscription is active and give you the access you paid for, to support you, and to keep accurate records. Legal basis: performance of our contract with you, and our legal obligation to keep business records.

Sign-in session

If you sign in to manage your subscription, we set a single essential cookie, clipppics_session, which holds a signed token identifying your session. It is HttpOnly and Secure. Purpose: to keep you signed in and to make sure only you can see your own billing information. Legal basis: performance of our contract, and our legitimate interest in securing accounts.

Messages you send us

If you email us, we keep the message and your address so we can reply and follow up. Legal basis: our legitimate interest in answering the people who contact us.

Server logs

Our hosting provider records standard request logs for the website and its API, including IP address, timestamp, the path requested, and a user-agent string. Purpose: keeping the service running, diagnosing faults, and detecting abuse. Legal basis: our legitimate interest in the security and reliability of our own systems.

We do not run analytics, advertising, or tracking on this website, and we do not profile you or make automated decisions with legal effects.

Cookies

We use one cookie of our own, clipppics_session, and it is strictly necessary — it exists only to keep you signed in to your own billing page. There is no analytics cookie and no advertising cookie, so there is nothing to opt into and no consent banner.

Our pricing page and checkout load Paddle.js from Paddle, which may set its own cookies or similar storage to run the checkout and Paddle Retain. Those are Paddle's, described in Paddle's privacy policy. You can block or clear cookies in your browser settings; blocking Paddle's will prevent checkout from working.

Who we share data with

  • Paddle — our Merchant of Record. Paddle sells the subscription, takes payment, handles invoicing and tax compliance, manages subscription changes and refunds, and sends billing email. Paddle is an independent controller for the data it collects from you directly.
  • Vercel — hosting for this website and its API endpoints.
  • Neon — the managed Postgres database where our subscription records are stored.
  • Professional advisers — accountants, auditors, or lawyers, where they need it to advise us.
  • Authorities — where we are legally required to disclose, or where it is necessary to protect rights, property, or safety.

If our business is ever sold or reorganised, records may transfer to the acquirer, who would be bound by this notice.

We do not sell your personal data, and we do not share it for advertising.

Where your data is stored

Our subscription records are stored in Singapore (ap-southeast-1), and the API endpoints that read them run in the same region.

We are established in the Republic of Korea, so your data is handled outside your own country if you are not in Singapore or Korea. Our providers operate internationally, and data may additionally be accessed from or transferred to other countries, including the United States and the United Kingdom.

Where a transfer leaves the UK or the EEA, we rely on an adequacy decision where one exists — Korea holds one from both the EU and the UK — and otherwise on Standard Contractual Clauses or the UK International Data Transfer Addendum in our contracts with those providers. Ask us at tema@clipp.pics if you would like details of the safeguards for a particular transfer.

How long we keep it

  • Subscription records — for the life of your subscription, and then for the period Korean law requires us to keep commercial records: 5 years for records of contracts and withdrawal of subscription, and 5 years for records of payment and supply, under the Act on Consumer Protection in Electronic Commerce. Records of complaints or dispute handling are kept for 3 years.
  • Sign-in sessions — the cookie expires on its own; the token is not stored on our servers after it lapses.
  • Support email — up to two years after the conversation ends, unless it relates to an ongoing matter.
  • Server logs — a short rolling window set by our hosting provider, typically no more than 30 days.

When we no longer need personal data, we delete it or anonymise it so it can no longer identify you.

Your rights

Depending on where you live, you have the right to:

  • Access a copy of the personal data we hold about you.
  • Rectify data that is inaccurate or incomplete.
  • Erase your data where we no longer have grounds to keep it.
  • Restrict how we process it while a concern is resolved.
  • Port it — receive it in a portable format, or have it sent to another provider.
  • Object to processing based on our legitimate interests.
  • Withdraw consent at any time, where we rely on consent. Withdrawing does not affect processing already carried out.

Email tema@clipp.pics to exercise any of these. We will respond within one month, extendable where the law allows and we tell you why. There is no charge unless a request is manifestly unfounded or excessive.

If you are unhappy with how we have handled your data you can complain to a supervisory authority. We are established in the Republic of Korea, so ours is the Personal Information Protection Commission (개인정보보호위원회). If you are in the UK or the EEA you may instead complain to your own authority — in the UK, the Information Commissioner's Office. We would appreciate the chance to put it right first.

Security

We apply technical and organisational measures appropriate to the risk. In practice that means: the site and API are served only over HTTPS with HSTS; database connections are encrypted in transit; session cookies are signed, HttpOnly, and Secure; billing endpoints refuse anonymous requests and never accept a customer identifier from the browser; and webhook deliveries from Paddle are accepted only from Paddle's published network addresses and only after their cryptographic signature verifies.

No system is perfectly secure. If a breach affects your personal data and is likely to present a risk to you, we will notify you and the relevant authority as the law requires.

Children

clipppics is not directed at children and we do not knowingly collect personal data from them. If you believe a child has provided us with personal data, email tema@clipp.pics and we will delete it.

Changes

We may update this notice. The date at the top shows when it last changed, and we will give reasonable notice of a material change — by email to the address on your subscription, or by a notice on this site.

← Back to clipppics