Privacy Policy

Last updated: May 31, 2026

🛡️

Our Core Privacy Promise

PDF SignCheck is built from the ground up as a privacy-first utility. We do not save, store, sell, or analyze your uploaded PDF documents. All cryptographic calculations occur strictly in volatile system memory and are immediately discarded.

1. Information We Collect

To provide you with our secure digital certificate checking tools, we collect the minimum necessary data:

  • Uploaded Files (Zero Retention): When you upload a PDF document for signature validation, the file is temporarily loaded in-memory on our secure servers, programmatically inspected, and immediately discarded after returning the validation results. We never write your files to physical disk or database storage.
  • Account Information: If you register or authenticate an account (including Google OAuth sign-in), we store your email address, name (if provided), and account credentials. This authentication is managed securely in partnership with Neon Auth.
  • Payment Data: Payment processing is handled entirely by Dodo Payments. We do not store or process your credit card numbers, billing addresses, or specific payment credentials on our systems.

2. How We Use Your Information

We use collected information solely to support the active features of PDF SignCheck:

  • To inspect and stamp cryptographic validity badges on your requested PDF files in real-time.
  • To track daily rate limits associated with your subscription plan tier (Guest, Free, or Lifetime Pro).
  • To send transaction receipts, password reset links, and critical security update notices.

3. Cookies and Analytics

We use secure, standard HTTP-only cookies to handle user authentication state sessions. These cookies do not track your activity across external web spaces.

4. Third-Party Integrations

We partner with select trusted services to deliver the platform infrastructure:

  • Neon Auth: Provides passwordless login, database encryption, and security credentials management.
  • Google Cloud Platform: Facilitates Google Account OAuth logins to save you from typing passwords.
  • Dodo Payments: Handles PCI-compliant billing pipelines and invoice receipts securely.

5. Data Retention & Security

We apply modern industry-standard transport level encryption (SSL/TLS) for all data transfers. File inspection blocks run inside isolated server environments with no persistent storage volumes attached. Account records are kept securely until you request account deletion.

6. Contact Information

For questions regarding this policy, to request account deletion, or to submit feedback, contact us at: hi@pdfsigncheck.com