Privacy
Last reviewed 31 August 2026
The short version
Your database stays yours. Reading a dump happens in your own browser and the file is never uploaded. Passwords to your databases are never written down anywhere. What we do keep is your account, what you did in the product, and what you were charged.
Your database
There are two ways one reaches us, and you choose which.
- It never leaves your machine. The default. A dump you open is read by code running in your browser. Nothing about it is uploaded — you can watch the network tab and confirm it.
- We connect to it. For databases too large to export by hand. The connection is read-only on the source side, made with credentials you type, and those credentials are held in memory for the length of your session and written to no disk and no database. When the session ends they are gone and you type them again.
What we do keep from an analysis is the schema map: table names, column names, types and the relationships between them, plus corrections you made by hand. Not rows, not values, not personal data from inside your tables.
Your account
We keep what you gave us when you signed up: your email address, an scrypt hash of your password, and whether you asked to hear about releases. We record each time you sign in and the address you signed in from, to detect accounts being shared or broken into.
What you were charged
Invoices, receipts and payment records are kept because tax law requires them, for ten years from the end of the year the invoice was issued.
The funnel counters
The product records that a step happened — a dump opened, a comparison run, a price quoted — as a simple count against the hour. Those counters hold no identifier, no IP address and no cookie. They tell us which features are used and where people get stuck, without telling us who got stuck where.
Cookies and local state
We store one session cookie when you sign in, so you stay signed in between pages. We use local storage in your browser to remember the database you have open and the mapping you are working on. We place no advertising cookies, no tracking pixels, and no analytics cookies.
Third parties
We run on our own servers in the European Union. We do not use third-party CDNs, analytics providers, or advertising networks. When you pay by credit card, payment details go directly to our payment processor and never touch our servers.
When you ask us to erase what we hold
You can delete your account from your account page. When you do, your personal details are erased immediately. Accounting records (invoices, receipts) are kept as required by Bulgarian tax law, with all personal identifiers removed.
Contact
Questions about this policy or the personal data we hold can be sent to hello@i2b.app.