Summary
Most oMyImage tools run entirely inside your browser — your images are never uploaded. A few tools need our server; those files are processed, returned, and deleted within about an hour. We do not require an account, we do not show ads, and we do not run analytics or tracking of any kind.
This policy explains that in detail. It describes what the service does today, and flags clearly where something is planned rather than live.
1. Your images
Your images are yours. We do not claim ownership of anything you process, we do not use your images to train models, and we do not sell, share, publish or reuse them for any purpose.
Whether an image leaves your device at all depends on which tool you use — see the next section.
2. Browser vs server processing
Processed in your browser (no upload)
The majority of tools use your browser's own canvas engine. The image is read from your device into memory, processed locally, and saved back by you. Nothing is transmitted to us, and these tools continue to work even if our server is offline.
This covers crop, resize, rotate, compress, convert, watermark, meme, the all-in-one editor, blur, borders, circle crop, merge, GIF tools, colour tools, metadata viewing and image-to-PDF, for files up to 15 MB.
Processed on our server (uploaded)
Your image is uploaded to our server in three situations:
- Files larger than 15 MB — browser processing becomes unreliable at that size, so the work is handed to our server automatically.
- The AI tools — Remove Background and Upscale Image run models that are far too heavy for a browser.
- HEIC to JPG, at any size. This one is a licensing constraint rather than a technical one: the only open-source HEIC decoders cannot be distributed to browsers under their licence, so the conversion has to happen on our server.
Each of those tools states on its own page that it uploads. If a tool does not say so, it does not upload.
3. Retention & deletion
Images processed in your browser are never received by us, so there is nothing for us to retain.
For server-processed images, the uploaded file is held only for as long as the conversion takes and is then discarded. The result is stored briefly behind a private download link and automatically deleted within approximately one hour. We do not keep backups of your files, and we do not archive them.
Download links are unguessable but not authenticated. Treat a link as a secret — anyone holding it can fetch that file until it expires.
4. What we collect
We do not ask for your name, email address or any other personal detail to use the tools. There is no account, no newsletter and no contact form on this site.
Like any web service, our server and our hosting providers automatically process basic technical data as part of delivering the site — IP address, browser user-agent, requested URL and timestamp. This is used to serve the request, apply rate limits, and detect abuse. We do not build profiles from it and we do not combine it with anything else.
We use Google Analytics 4, and only with your consent. Until you accept analytics cookies the script is never requested — it is not loaded and then switched off, it is simply absent, so no analytics cookie is created for a visitor who declined or who never answered the banner. What it collects is aggregate: which tools are used, which pages error, roughly where visitors come from. We do not use it to identify you and we do not connect it to anything you process.
We run no advertising and no cross-site tracking. There is no session recording, no advertising pixel and no ad network on oMyImage. You can change or withdraw your analytics consent at any time through Cookie Settings in the footer — see our Cookie Policy for the detail.
5. Browser storage
oMyImage sets no cookies of its own. We use your browser's local storage for a few functional preferences, which stay on your device and are never sent to us:
theme— whether you chose light or dark mode.omyimage_cookie_consentandomyimage_cookie_prefs— your answer to the cookie banner.omyimage:favoritesand recently-used tools — so your shortcuts persist.omyimage:currency— the currency you selected on the pricing page.omyimage:premium-usage— a local count of premium tool runs used today.
Clearing your browser's site data removes all of them. Nothing here identifies you. Cookies set by third parties — Cloudflare, and Google Analytics once you allow it — are listed in our Cookie Policy.
6. Third-party services
We keep third parties to a minimum. These are the only ones involved in running oMyImage:
| Service | Purpose | Privacy Policy |
|---|---|---|
| Cloudflare | Website hosting, CDN and DDoS protection | cloudflare.com/privacypolicy |
| Contabo | Server hosting for the tools that process on our server | contabo.com/en/legal/privacy-policy |
| Google Fonts | Serves the icon font used across the interface | policies.google.com/privacy |
| Google Analytics | Aggregate usage measurement, loaded only if you accept analytics cookies | policies.google.com/privacy |
| Google Drive (optional) | Imports only the files you pick, and only when you use it — see section 7 | policies.google.com/privacy |
| Dropbox (optional) | Imports only the files you pick, and only when you use it — see section 8 | dropbox.com/privacy |
Because the icon font is requested from Google's CDN, Google receives your IP address and user-agent when a page loads, as it would for any site using that font. Our two text typefaces are served from our own domain and involve no third party.
7. Google Drive import
Connecting Google is optional. Every tool on oMyImage works without it, and nothing on the site asks you to sign in. The connection exists for a single feature: importing an image you already keep in Google Drive, instead of uploading it from your device.
What we ask for, and what it allows
When you choose "Import from Google Drive", we request one narrow permission: https://www.googleapis.com/auth/drive.file. That scope grants access only to the specific files you select in Google's own file picker. It does not let us list, browse, search or open anything else in your Drive, and it gives us no view of your folders, your file names or your storage as a whole.
The permission is also one-directional in practice: we read the file you picked. We do not create, rename, modify, move or delete anything in your Drive.
What happens to the file and the token
- The access token Google issues is held in your browser's memory for that visit only. It is never transmitted to our servers, never written to disk, and disappears when you close the tab.
- The file you pick is downloaded from Google straight into your browser. It does not pass through our servers on the way in.
- From that point the file is treated exactly like one you dragged in from your desktop — processed in your browser, or uploaded to our server only if you chose a tool that says it uploads, under the same retention rules described in sections 2 and 3.
- We do not keep a copy of your Google files, do not index them, and do not retain any record of what you imported.
oMyImage's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. In particular, we do not use Google user data for advertising, we do not sell or transfer it, and we do not use it to train generalised or artificial-intelligence models.
You can withdraw this access whenever you like, without affecting the rest of the site, from your Google Account permissions page.
8. Dropbox import
Connecting Dropbox is optional, and works the same way as Google Drive: it exists only so you can pick an image you already keep in Dropbox instead of uploading it from your device. Every tool on oMyImage works without it, and nothing on the site asks you to sign in.
Choosing "Dropbox" opens Dropbox's own file chooser in a popup window. The browsing and selecting happen entirely inside that window, which belongs to Dropbox — we never see your folders, your file names, or anything you do not pick.
- No account is linked and no access token is issued. Unlike the Google Drive import, there is no permission to grant and nothing to revoke afterwards.
- Dropbox hands back a temporary download link for each file you picked, valid for a few hours. Your browser uses it immediately and then forgets it; the link is never sent to our servers or written to disk.
- The file is downloaded from Dropbox straight into your browser. It does not pass through our servers on the way in.
- From that point the file is treated exactly like one you dragged in from your desktop — processed in your browser, or uploaded to our server only if you chose a tool that says it uploads, under the same retention rules described in sections 2 and 3.
- We do not keep a copy of your Dropbox files, do not index them, and do not retain any record of what you imported.
Dropbox sees this as a visit to Dropbox, and its own privacy policy applies to what happens inside that window. The Dropbox code is loaded only when you reach for the button, so visitors who never use the feature are never in touch with Dropbox at all.
9. Planned features
Some features are planned but not yet live. We are describing them here in advance so this policy stays honest as they arrive, and so you know what to expect. None of the following is active today.
- Accounts. If we introduce sign-in, we would collect an email address and a securely hashed password, solely to authenticate you and to associate any plan you hold. You would be able to delete your account and its data.
- Paid plans. If we introduce paid plans, payment would be handled by a third-party payment processor. Card details would go to that processor directly and would never reach or be stored on our servers. We would receive only a transaction reference and its status.
When any of these goes live, this policy will be updated and the "last updated" date at the top will change before the feature is switched on.
10. Your rights
Depending on where you live, you may have rights to access, correct, export or erase personal data held about you, and to object to certain processing. Because we do not operate accounts and do not retain your images, in practice we usually hold nothing about you that could be retrieved.
If you believe we hold data relating to you, contact us using the details on our contact page and we will respond within a reasonable period. You may also complain to your local data protection authority.
11. Children
oMyImage is a general-purpose utility and is not directed at children. We do not knowingly collect personal data from children. Since using the tools requires no account and no personal information, there is normally nothing to collect.
12. Security
The site is served over HTTPS. Uploads to our server are encrypted in transit, processed in isolation, and deleted on the schedule described above. We apply rate limits and upload size limits to protect the service.
No online service can promise perfect security. Please do not upload material you cannot afford to have exposed in the unlikely event of a breach — and remember that for most tools the safest option is already the default, because the file never leaves your device.
13. Changes
We may update this policy as the service evolves. The "last updated" date at the top of this page always reflects the current version. Material changes will be reflected here before they take effect.
14. Contact
Questions about this policy, or about how your data is handled, can be sent through the options on our contact page. Please also see our Terms of Service, which govern your use of oMyImage.