Convert for You Help

Privacy Policy

Learn what personal information Convert for You processes, why it is used, and how long it is kept.

Updated 2026-08-07

1. Who operates Convert for You

유진saas (Youjin SaaS) ("Convert for You", "we", "us", or "our") operates the Convert for You website and document-conversion service at https://convert-4-u.com.

  • Privacy contact: [email protected]
  • Registered address: 서울특별시 강동구 양재대로87길 58-5 (성내동) / 58-5, Yangjae-daero 87-gil, Gangdong-gu, Seoul, Republic of Korea (Seongnae-dong)
  • Jurisdiction: Republic of Korea.
  • Effective date: 2026-08-07
  • Minimum age: 18

This policy explains how we process information when you visit the website, use an account, upload or convert documents, connect a cloud drive, use AI features, submit feedback, or otherwise use the service. PDF translation is currently disabled because of provider costs. Third-party services have their own privacy notices.

2. Information we process

Account and authentication

Clerk may provide Convert for You with an account identifier, email address, name, profile information, authentication status, session information, and account tier. We use this information to provide sign-in, apply plan limits, and manage account features.

Conversion jobs and documents

When you submit a conversion, we may process the uploaded files, generated files, rendered pages, extracted text, original filenames, file types, file sizes, page counts, selected options, page ranges, passwords needed for an authorized document operation, job identifiers, status, progress, errors, and timestamps. When you are signed in, the job is linked to your Clerk user identifier so that account-level limits, exports, and deletion requests can be applied. Password values are kept in protected job-secret storage rather than ordinary job metadata.

Files and job records are temporary processing data, not a personal document archive. Download important results before the job expires.

Device, network, and usage information

We process request timestamps, browser or device information supplied by the browser, feature usage, conversion outcomes, error codes, response status, processing duration, input and output sizes, page counts, and provider usage units. If you grant diagnostics consent, Sentry may receive privacy-filtered browser error events. These events exclude document contents, request bodies, cookies, identity, and user-controlled context.

For abuse prevention and rate limiting, the API derives a keyed hash from the client IP address for guest requests and from the Clerk subject for signed-in requests. The keyed values are not used as public identifiers. Privacy-consent audit records use a separate keyed IP hash. Billing checkout may send the client IP address to the configured billing provider.

Feedback and communications

The contact form accepts product feedback from guests and signed-in users. It may contain a category, related tool, message, and an optional email address. Email is used only for manual follow-up when needed. Do not submit passwords, private documents, API keys, or other confidential information through the feedback form.

Billing and subscriptions

When you subscribe, we may receive subscription status, customer and subscription identifiers, product information, payment events, and billing metadata from Polar. We do not intentionally store full payment-card numbers; payment-card details are handled by Polar under its provider terms and the configuration used for the transaction.

Refund requests and subscription cancellation support are handled through the configured payment provider and the privacy contact where needed. We record the policy versions accepted at checkout and the consent to begin paid access immediately. Payment and accounting providers may retain transaction records when required by law.

3. Why we use information

We use information to:

  1. provide authentication, document conversion, downloads, OCR, webpage rendering, summaries, and related features;
  2. create and manage jobs, enforce plan limits, and prevent abuse;
  3. process subscriptions, payments, refunds, and entitlement changes;
  4. monitor reliability, troubleshoot errors, protect the service, and maintain security;
  5. answer feedback and support requests;
  6. measure service usage and improve the product only when the required consent has been provided; and
  7. comply with legal obligations, enforce our terms, and establish or defend legal claims.

Depending on the jurisdiction, we rely on performance of a contract for requested services, compliance with legal obligations, legitimate interests for security and abuse prevention, and consent for optional advertising, analytics, and diagnostics. A local law may provide additional rights or require a different legal basis.

4. Storage and retention

The following describes the current application defaults and the retention approach. Provider, backup, accounting, and legal obligations may require longer retention.

DataCurrent defaultRetention note
Guest job files and metadata1 hour from job creation; cleanup begins at expiryLonger retention may apply when required by law or an active support issue
Member job files and metadata2 hours from job creation; cleanup begins at expiryLonger retention may apply when required by law or an active support issue
Subscriber job files and metadata24 hours from job creation; cleanup begins at expiryLonger retention may apply when required by law or an active support issue
Feedback records1 year from submissionA support or legal issue may require longer retention
Raw operational statistics90 daysRetention may vary by operational or legal need
Daily statistics rollups730 daysRetention may vary by operational or legal need
Sentry diagnostic eventsProvider-configuredSee the provider's current retention terms
Account, billing, and support recordsUntil deletion unless legal, accounting, or dispute obligations require longer retentionLegal and accounting duties may require longer retention
Authenticated privacy-consent audit recordsUntil account deletion, subject to legal retentionA legal obligation may require longer retention

The service may use local disk storage or private object storage such as Cloudflare R2. The production policy must identify the storage location, backup deletion process, and authorized support access.

5. Providers and feature-specific sharing

We make information available to providers only when they are needed to operate a requested or enabled feature, or to operate and secure the website.

ProviderFeature and possible data flow
ClerkAccount authentication, sessions, and account identifiers
PolarCheckout, subscriptions, payment events, customer identifiers, and billing metadata
Google Drive or DropboxUser-selected cloud-file import and provider authorization
Google Cloud VisionPage images sent for OCR when text extraction is required
Cloudflare Browser RunPublic webpage URL and rendered webpage content for webpage-to-PDF conversion
OpenRouterExtracted selectable document text needed for an AI summary
Cloudflare TurnstileFeedback abuse prevention verification after repeated submissions
CloudflareDNS proxying, HTTPS, origin protection, and network request handling
SentryPrivacy-filtered error diagnostics after diagnostics consent; server error monitoring when configured
UptimeRobotAvailability checks for the public website and API readiness endpoint
Backblaze B2Private Litestream replicas of the two SQLite databases; uploaded job files are not replicated
Google AdSenseExternal advertising only after advertising consent and only when configured
Hosting, storage, monitoring, email, and security providersCloudflare Pages, the configured API/worker host, Cloudflare R2, Backblaze B2, Sentry, UptimeRobot, Turnstile, and any configured email provider

AI summarization, OCR, webpage rendering, cloud imports, and external advertising may involve a separate provider. PDF translation is not currently available. Review the feature-specific warning before uploading sensitive material. Provider roles, destinations, retention, model-training settings, and deletion behavior can vary by feature and provider.

6. International transfers

Some providers may process information outside your country. We maintain an internal privacy data register covering each provider's destination, data categories, transfer mechanism, and applicable safeguards, and update it when provider contracts or settings change.

7. Cookies and browser storage

Convert for You uses necessary cookies or browser storage for authentication, security, consent preferences, and private administration. Optional advertising and browser diagnostics are disabled until the visitor gives the corresponding consent through the privacy settings interface.

The current inventory is described in the Cookie Policy. Analytics providers are not currently active. The inventory must be updated whenever a provider, script, cookie, or storage key changes.

8. Security

Current safeguards include protected job tokens, keyed IP hashing, private object-storage downloads with temporary links, encrypted job secrets, access-controlled statistics sessions, and automatic cleanup workers. No security measure guarantees absolute security.

Report a suspected security issue through [email protected]. Do not include confidential documents or credentials in a public feedback submission.

9. Your rights and choices

Depending on applicable law, you may have rights to access, correct, delete, restrict, or port your information; object to certain processing; withdraw optional consent; and complain to a privacy regulator.

Signed-in users can start with Privacy & account data for a data export or account deletion. Other requests should be submitted to [email protected]. We aim to verify and respond without undue delay and within 30 days; we may request reasonable identity information, explain any refusal or exception, and provide the applicable appeal and regulator route. Jurisdiction-specific extensions and requirements still apply.

You can change optional advertising, analytics, and diagnostics choices at any time using Privacy settings in the site footer.

10. Children

Convert for You is intended for adults and is not knowingly directed to children under 18. We do not knowingly collect information from children who are not permitted to use the service; if we learn that this occurred, we will take reasonable steps to delete it. Local age and parental-consent rules may impose additional requirements.

11. Changes

We will publish the effective date and a short summary for material changes. The controlling version of this policy will be published at https://convert-4-u.com/help/privacy.

12. Contact

  • Controller: 유진saas (Youjin SaaS)
  • Privacy contact: [email protected]
  • Postal address: 서울특별시 강동구 양재대로87길 58-5 (성내동) / 58-5, Yangjae-daero 87-gil, Gangdong-gu, Seoul, Republic of Korea (Seongnae-dong)
  • Privacy officer or DPO: No separate DPO is currently appointed; the privacy contact is the contact shown above, subject to applicable-law review.
  • Effective date: 2026-08-07