Legal
Privacy Policy
How AppScreen handles your data — what stays in your browser, what we store for billing, and how to reach us.
Who we are
Intenseloop, Inc. operates AppScreen at appscreen.design.
Privacy questions: [email protected]
This policy covers the editor, billing, sign-in, agent setup at /mcp, and related pages. Google, Stripe, and our email provider publish their own policies for the parts they run.
What AppScreen is not
- We do not sell your personal information
- We do not read your Gmail, Drive, Calendar, or other Google products
- We do not upload your canvas, screenshots, or project files to our servers
You can use the free editor without an account. Projects stay in this browser unless you export an image or, with Pro, download a project file.
What stays on your device
These stay in IndexedDB and local storage on your computer:
- Panorama layouts, layers, text, logos, uploaded images, and presets
- Theme, zoom, and view preferences
- Your AppScreen session token after you sign in (about 30 days)
Clearing site data for appscreen.design removes local work. We cannot restore it.
What we collect
Account
Sign-in uses Google Identity Services. Google sends us an identity token. From that token we store:
- Google’s user id for you
- Your email, only when Google marks it verified
- Your name and profile photo, so we can show them in the account menu and address mail
We keep that profile on our servers so the same Google account can restore Pro on another browser.
Pro purchase
Stripe processes the one-time Pro payment. We receive confirmation that it succeeded, Stripe ids (customer, checkout session, payment intent), and enough metadata to tie the purchase to your account. We do not see your full card number.
We keep purchase and Stripe webhook records so we can grant Pro, handle refunds, and resolve billing questions.
After a purchase or refund we send a transactional email through SparkPost (MessageBird) to the address on your account. Stripe also sends its own receipt.
If you write [email protected], we keep the thread so we can answer you.
Product analytics
We run first-party analytics (UserPath) on our own /events endpoint. We record page views and billing events — for example paywall view, checkout start, purchase, and refund. When you are signed in, those events can include your AppScreen account id.
A first-party cookie, _up.sid, keeps an analytics session. It is not an ad cookie.
Agent connections
Connecting an AI client through MCP uses the same Google sign-in. We issue a short-lived access token so that client can call tools in your open editor tab. We do not send your canvas to an agent server as part of that flow. The client you choose has its own privacy terms.
Fonts
When you pick a typeface, the editor may load it from Google Fonts. Google may log that request under its policy.
Server logs
Our host may keep ordinary request logs (IP address, user agent, time, path) for security and uptime. We do not use them for advertising.
Who processes data for us
- Google — sign-in and optional font files
- Stripe — checkout, receipts, refunds
- SparkPost — purchase and refund email
- Cloudflare — DNS and traffic to the site
AppScreen itself is hosted on servers in Germany. Google, Stripe, and SparkPost may process data in the United States or other countries under their own terms.
How we use data
- Run the editor and keep you signed in
- Unlock Pro on the same Google account
- Process payments and refunds
- Send purchase and refund mail
- Answer support
- See whether billing flows work
We do not use this data for third-party advertising, and we do not sell it.
Cookies and similar storage
On appscreen.design:
_up.sid— analytics session- Local storage — session token, theme, and editor preferences
- IndexedDB — projects and presets
Google’s sign-in button and Stripe’s checkout form may set cookies on their domains. We do not control those.
How long we keep data
- Account and purchase records: while you have an account, and as long as we need them for billing, tax, or law
- Support email: as long as needed to resolve the thread
- Analytics events: as long as useful to understand billing reliability
- Local browser data: until you clear it
- MCP access tokens: until they expire, you sign out, or you disconnect the client
Your choices
- Use the free editor without signing in
- Sign out from the account menu to drop the session in this browser
- Clear site data to remove local projects
- Email [email protected] to ask for a copy of your account data, or to delete the account
If we delete an account, Pro on that Google id ends. We may retain billing records where the law requires it. Local projects are only on your device — clear them there.
If you live in a place that grants access, correction, deletion, or portability rights, use that same address. We will handle the request as the law requires.
Children
You must be at least 18 to use AppScreen. We do not knowingly collect personal information from anyone under 18. If you think we have, email us and we will delete it.
Changes
We may update this policy. The date at the bottom of this page is the latest version. If a change is material, we will say so on this page.
Contact
Intenseloop, Inc. [email protected]
Last updated September 10, 2026.