Privacy Policy
Last updated September 23, 2026. Short version: we designed the service so that there is almost nothing to collect.
Data we process
| Data | Purpose | Retention |
|---|---|---|
| Encrypted files and encrypted manifest | Delivering the transfer | Until expiry, burn, or deletion (48 h for anonymous transfers) |
| Transfer metadata: id, encrypted sizes, timestamps, hash of the access token | Operating the service | Until deletion, then purged from our database within 30 days |
| Salted daily hash of the IP address | Rate limiting and abuse prevention | 3 days |
| Abuse reports (content you submit, hash of reporter IP) | Handling reports, legal compliance | As long as necessary for the case |
| Account number and optional email (accounts, when launched) | Authentication, notifications you opt into | Until you delete the account |
Data we do not have
- Decryption keys, file contents, file names or types.
- Raw IP addresses, precise location, device fingerprints beyond a coarse abuse-prevention hash.
- Advertising identifiers. We run no advertising and no third-party analytics or tracking scripts.
Cookies
Anonymous use sets no cookies. Accounts will use a strictly necessary session cookie only.
Third parties
Encrypted objects are stored across encrypted edge storage clusters; bot checks use privacy-preserving automated challenges. These providers process encrypted data and connection metadata under their own policies. We do not sell or share data with anyone else.
Legal requests
We respond only to valid legal process. Because of the design, the information we can provide is limited to the metadata listed above. We publish a transparency report twice a year.
Your rights
Where data protection law applies to you (for example the GDPR), you may request access to or deletion of data we hold. Since transfers are anonymous, requests must reference the transfer id. Contact: abuse@limeshare.org.