We take the protection of your personal data very seriously. This Privacy Policy explains what data we collect and how we process and use it in accordance with the European General Data Protection Regulation (GDPR) and other applicable data protection laws.
1. Controller
The controller responsible for the data processing on this website is:
upspawn software UG (haftungsbeschränkt)
Liebigstr. 1C
10247 Berlin
Deutschland
E-Mail: support@renamed.to
1.1. Our Role as Controller and Processor
upspawn software UG (haftungsbeschränkt) acts as the Data Controller for the personal data you provide to us, such as your account information. For any personal data contained within the files you upload for processing, you are the Data Controller, and we act as a Data Processor on your behalf. We process this data only on your instructions to provide the Service.
2. Data we collect
We collect and process the following categories of data:
2.1 Account and Contact Data
- Name and email address (for account creation and communication)
- Payment information (processed securely through Stripe)
- Account preferences and settings
2.2 Content and Usage Data
- Uploaded files and their metadata (names, sizes, types)
- File processing requests and AI-generated suggestions
- Usage patterns and feature interactions
- Access logs and timestamps
2.3 Technical Data
- IP address and device information
- Browser type, version, and language settings
- Operating system and screen resolution
- Cookies and similar tracking technologies (see Section 5)
2.4 Advertising and Marketing Data (with consent)
- Page views and user interaction patterns
- Conversion events and purchase behavior
- Cross-device identifiers and tracking cookies
- Remarketing audiences and advertising preferences
- Hashed email addresses for advertising matching
- Custom event data (file uploads, feature usage, checkout actions)
2.5 Dropbox Integration Data (if connected)
- Dropbox account ID and, where provided, account email and display name
- Selected Dropbox folder paths and related configuration (e.g., templates, language)
- File metadata within watched folders (names, paths, sizes)
- Temporary access to file content for renaming; temporary copies are deleted after processing
- Audit logs containing original and suggested filenames (no file contents)
2.6 OneDrive Integration Data (if connected)
- OneDrive account identifier, optional account email and display name, encrypted refresh tokens, access-token expirations, and clientState values to verify webhook authenticity.
- Watched folder configuration, Microsoft Graph subscription IDs, delta-token checkpoints, and job queue metadata (file item IDs, folder IDs, status history, timestamps, and retry counters).
- Webhook payload metadata (resource identifiers, change types, subscription expiration times) and operational logs needed to troubleshoot rate limits or processing failures. No file contents are stored in these logs.
- Temporary access to file metadata and PDF content to generate renaming suggestions. Files are downloaded to a transient buffer, processed, and deleted immediately after completion.
- Rate-limit telemetry kept in Redis (counters and timestamps) with a retention of up to 14 days to ensure reliable processing and prevent abuse.
- Legal basis (GDPR): Contract performance (Art. 6(1)(b)) when you enable the OneDrive integration as part of your subscription; Legitimate interest (Art. 6(1)(f)) to deliver the file renaming service you requested and maintain system security and reliability.
2.7 Social Sign‑In Data (Google, Microsoft)
- If you choose to sign in with a third‑party provider such as Google or Microsoft, we receive your account identifier and basic profile data (e.g., name and email) from that provider to create or authenticate your account on renamed.to.
- We do not receive your password from those providers. Authentication is handled by the provider and our identity service.
3. Purpose of processing
We process your data for the following purposes:
3.1 Essential Services
- Provision of file renaming and AI-powered suggestions
- Account management and authentication
- File storage and retrieval
- Payment processing and billing
- Customer support and technical assistance
3.2 Security and Compliance
- Fraud prevention and security monitoring
- Compliance with legal obligations
- Protection of our systems and users
3.3 Marketing and Advertising (with consent)
- Digital advertising and remarketing campaigns
- Conversion tracking and optimization
- Audience building for targeted advertising
- Cross-device tracking and personalization
- Marketing performance measurement
3.4 Improvement and Analytics (with consent)
- Service analytics and performance monitoring
- User experience optimization
- Product development and feature enhancement
3.5 Dropbox Integration (optional)
- Provide optional file renaming within your Dropbox in folders you select
- List files in watched folders, generate a suggested filename using AI, and move the file
- Process file contents transiently only for renaming; we do not retain file contents
- Store only the information needed to maintain the connection (encrypted tokens), settings, and audit logs
3.6 OneDrive Integration (optional)
- Provide optional file renaming within Microsoft OneDrive folders you choose via subscriptions you authorize through Microsoft Graph.
- Monitor watched folders for new or updated PDF files, enqueue rename jobs, and execute AI-assisted naming suggestions aligned with your templates and language preferences.
- Move or rename files inside your OneDrive destination folders, including optional subfolder organization, based on the strategy you configure.
- Maintain audit logs (original and suggested filenames, timestamps, folder IDs) to provide accountability, troubleshooting insights, and compliance evidence.
3.7 Social Sign‑In
- Microsoft Account – Optional sign‑in method. Data processed: name, email, and provider user ID for account creation and authentication.
- Google – Same as above.
- You can disconnect a social login by changing your sign‑in method in account settings or contacting support.
4. Legal basis
We process your personal data on the basis of the following legal grounds according to Art. 6 GDPR:
- Art. 6 para. 1 lit. b GDPR – performance of a contract or steps prior to entering into a contract (account services, file processing)
- Art. 6 para. 1 lit. f GDPR – legitimate interests (security, fraud prevention, service improvement)
- Art. 6 para. 1 lit. a GDPR – your consent (analytics, advertising tracking, marketing communications, remarketing)
- Art. 6 para. 1 lit. c GDPR – compliance with a legal obligation (tax records, data retention requirements)
5. Cookies & tracking technologies
5.1 Essential Cookies (Always Active)
These cookies are essential for the website to function and cannot be disabled:
- Authentication cookies – Keep you logged in to your account
- Security cookies – Protect against fraud and unauthorized access
- Preference cookies – Remember your settings and choices
5.2 Analytics Cookies (Optional)
With your consent, we use analytics services to understand how our service is used:
- PostHog – Privacy-focused analytics to improve user experience
- Usage tracking – Anonymous data about feature usage and performance
5.3 Advertising Cookies (Optional)
With your consent, we use advertising technologies to deliver relevant ads and measure their effectiveness:
- Meta (Facebook) Pixel – Tracks page views, conversions, and user interactions for targeted advertising and remarketing
- _fbp cookie – Facebook browser pixel cookie for cross-device tracking and ad personalization
- fr cookie – Facebook cookie for advertising purposes and user identification
- Conversion tracking – Monitors purchases, registrations, and key user actions
- Audience building – Creates custom audiences for targeted advertising campaigns
5.4 Cookie Management
You can manage your cookie preferences at any time through our cookie banner or by contacting us. Disabling analytics or advertising cookies will not affect the core functionality of our service, but may limit personalization and targeted content.
6. Third-party services & data processors
We work with carefully selected third‑party providers to deliver our services. Where providers act as our processors, they are bound by data processing agreements according to Art. 28 GDPR. Certain authentication providers (e.g., Microsoft, Google) act as independent controllers for their identity platforms.
6.1 Essential Service Providers
Microsoft (Authentication)
Provides optional social sign‑in. Role: Independent controller (authentication provider). Data processed: name, email, provider user ID used solely for account authentication.
Privacy policy: privacy.microsoft.com
Polar (Payment Processing)
Processes payments securely as our Merchant of Record. Data processed: Payment information, billing address.
Privacy policy: polar.sh/legal/privacy
Cloudflare (File Storage)
Temporary storage of uploaded files during processing. Files are stored in region-appropriate data centers (EU for EU customers, US for US customers) and automatically deleted after processing. Data processed: Files and metadata.
Privacy policy: cloudflare.com/privacypolicy
OpenAI (AI Processing)
Provides AI-powered file renaming suggestions. Per our agreement with OpenAI, your data is not used to train their models. Data processed: File names, metadata, and file content (only the first few pages for document analysis).
Privacy policy: openai.com/policies/privacy-policy
Mistral AI (AI Processing)
Alternative AI provider for file processing. Per our agreement with Mistral AI, your data is not used to train their models. Data processed: File names, metadata, and file content (only the first few pages for document analysis).
Privacy policy: mistral.ai/terms#privacy-policy
6.2 Optional Analytics Services
PostHog (Analytics)
Privacy-focused analytics service (only with your consent). Data processed: Anonymous usage data.
Privacy policy: posthog.com/privacy
6.3 Advertising Services
Meta Platforms (Facebook/Instagram Advertising)
With your consent, we use Meta's advertising platform to deliver targeted ads and measure conversions. Data processed: Page views, user interactions, purchase events, hashed email addresses, IP addresses, device information, and user behavior patterns.
Data sharing: Purchase information, conversion events, user identifiers (hashed), and behavioral data are shared with Meta for advertising optimization and audience targeting.
Cross-border transfer: Data is transferred to Meta Platforms Inc. in the United States under EU Standard Contractual Clauses.
Privacy policy: facebook.com/privacy/policy | Cookie Policy
Dropbox (File Integration)
Optional integration you can connect in settings. Data processed: Dropbox account ID, account email/name (if provided), watched folder paths, file metadata, and transient access to file contents for renaming. We do not retain file contents after processing. Tokens are stored encrypted.
Data sharing: We access your Dropbox solely to provide the renaming functionality in folders you select. We do not share your Dropbox content with other third parties.
Cross-border transfer: Dropbox Inc. may process data in the United States. Dropbox relies on appropriate safeguards such as EU Standard Contractual Clauses. See Dropbox policies below.
Terms: dropbox.com/en/terms | Privacy: dropbox.com/privacy
Microsoft OneDrive (File Integration)
Optional integration powered by Microsoft Graph. Data processed: OneDrive account identifiers, encrypted refresh tokens, watched folder configuration, webhook metadata, job queue entries, audit logs containing original and suggested filenames, and transient access to PDF contents strictly for renaming. We do not retain file contents after the job completes.
Data sharing: We access and manipulate your OneDrive only to deliver the renaming workflow you configure. We do not disclose your OneDrive content to other parties beyond our subprocessors (e.g., OpenAI or Mistral for AI naming suggestions).
Controller roles: Microsoft acts as an independent controller for your OneDrive storage under your Microsoft 365 agreement. When we access OneDrive via Graph API subscriptions you authorize, Microsoft processes file operations on our instruction as a subprocessor for the renaming workflow.
Cross-border transfer: Microsoft may process data in the United States and other Azure regions. Microsoft relies on EU Standard Contractual Clauses and supplementary safeguards for international transfers. See Microsoft policies below.
Terms: microsoft.com/licensing/terms | Privacy: privacy.microsoft.com
7. International data transfers
Some of our service providers are located outside the European Economic Area (EEA). We ensure adequate protection for your data when it is transferred to these countries. We have verified that our partners provide a level of data protection equivalent to that in the EU, and all transfers are based on appropriate safeguards:
- EU Standard Contractual Clauses (SCCs): We have entered into SCCs with our non-EEA partners to ensure your data is handled in compliance with GDPR.
- Supplementary Measures: We conduct Transfer Impact Assessments (TIAs) and ensure that technical and organizational measures (like encryption) are in place to protect your data from foreign government access.
- Adequacy decisions by the European Commission
- Approved certification mechanisms
- Binding corporate rules where applicable
8. Data retention
We retain personal data only as long as necessary:
- Account data: Until account deletion plus 30 days for security
- Files: Files are temporarily stored in secure, region-appropriate cloud storage during processing, then automatically deleted. Files remain in your cloud storage accounts (Dropbox, OneDrive, Google Drive) and are not permanently stored on our servers. Only the first few pages of documents are sent to AI processing services for analysis; these services do not retain your files. You can enable Privacy Lock mode to delete files immediately after processing.
- Payment data: 10 years for tax compliance (processed by Polar)
- Analytics data: 25 months maximum (anonymized)
- Advertising data: Up to 2 years for campaign optimization, or until consent is withdrawn
- Facebook Pixel data: Retained according to Meta's data retention policies (up to 2 years)
- Support communications: 3 years for service improvement
- Dropbox integration data: Connection settings and encrypted tokens retained until you disconnect. Files are temporarily stored during processing, then automatically deleted. Audit logs may retain original/suggested filenames for service quality and security.
- OneDrive integration data: Connection records, delta tokens, and encrypted refresh tokens retained until you disconnect or delete the integration. Files are temporarily stored during processing, then automatically deleted. Audit logs (original and suggested filenames, timestamps, folder IDs) retained for 12 months for troubleshooting and security incident response, then anonymised. Billing records (without file metadata) retained for 10 years per German tax law (§147 AO).
9. Your rights under GDPR
You have the following rights:
- Access (Art. 15): Request copies of your data
- Rectification (Art. 16): Correct inaccurate data
- Erasure (Art. 17): Request deletion of your data
- Restriction (Art. 18): Limit how we process your data
- Portability (Art. 20): Receive your data in portable format
- Object (Art. 21): Object to processing for legitimate interests
- Withdraw consent: For consent-based processing
- Complaint (Art. 77): Lodge complaint with supervisory authority
Special Rights for Advertising Data
Regarding advertising tracking and Facebook Pixel data, you have additional rights:
- Withdraw consent: Revoke advertising consent at any time through our cookie banner
- Opt-out of targeted ads: Use Facebook's ad preferences to limit ad targeting
- Cross-device tracking: Request deletion of cross-device identifiers
- Data portability: Request your advertising interaction data in a portable format
To exercise these rights, contact us at support@renamed.to. We will respond within 30 days.
Self-Service Privacy Controls
You can exercise many of these rights directly through your account settings:
- Delete Your Data: Visit Settings → Privacy to delete all your data. You will receive a deletion receipt for your records.
- Opt-Out of Analytics: Disable analytics tracking in Settings → Privacy. This stops all PostHog tracking immediately.
- Manage Privacy Preferences: Control data retention, audit redaction, and ephemeral processing in Settings → Privacy.
10. Your Rights for US Residents (CCPA/CPRA)
If you are a resident of California or another US state with applicable privacy laws, you may have additional rights, including:
- Right to Know: You can request to know what personal information we collect, use, disclose, and sell.
- Right to Delete: You can request the deletion of your personal information.
- Right to Opt-Out of Sale/Sharing: You have the right to opt-out of the "sale" or "sharing" of your personal information. We do not sell your personal data. However, our use of advertising cookies may be considered "sharing" under California law. You can opt-out by managing your preferences in our cookie banner.
- Right to Correct: You can request to correct inaccurate personal information.
- Right to Non-Discrimination: We will not discriminate against you for exercising your privacy rights.
To exercise these rights, please contact us at support@renamed.to with the subject line "US Privacy Rights Request".
11. Data Retention & Deletion
We retain your personal data only for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law.
Default Retention Periods
Note: The retention periods below apply to metadata (filenames, paths, audit logs). Actual file content is temporarily stored in secure, region-appropriate cloud storage during processing, then automatically deleted (see Section 8 for details).
- File Metadata (filenames, paths): 90 days (configurable 0-365 days in privacy settings)
- Audit Logs: 90 days (configurable 0-365 days in privacy settings)
- Job History: 90 days (configurable 0-365 days in privacy settings)
- Account Data: Retained while your account is active, deleted upon account deletion
- Billing Records: 10 years (statutory requirement under German tax law, §147 AO)
Data Deletion
You can request deletion of your data at any time through Settings → Privacy. When you delete your data:
- All uploaded files and metadata are permanently deleted
- All audit logs and job history are removed
- Third-party processors (e.g., PostHog) are notified to delete your data
- You receive a deletion receipt for your records
- Billing records may be retained for legal compliance (10 years per German tax law)
What Cannot Be Deleted
Some data may be retained for legal or billing purposes as required by law:
- Billing Records: Retained for 10 years per German tax law (§147 AO). This includes transaction references stored locally and invoices processed by our payment processor (Polar).
- Legal Holds: Data subject to legal hold or investigation may be retained until the hold is released.
- Contract Records: Terms of Service acceptance and consent records may be retained for 3 years after account termination (statute of limitations).
12. International Data Transfers
As a company based in Germany, we primarily process your data within the European Economic Area (EEA). However, some of our service providers may process data outside the EEA.
Transfer Mechanisms
When we transfer personal data outside the EEA, we ensure appropriate safeguards are in place:
- Standard Contractual Clauses (SCCs): We use EU-approved Standard Contractual Clauses (Module 2: Controller-to-Processor) with all non-EEA processors to ensure adequate data protection. These clauses are based on the European Commission's implementing decision (EU) 2021/914.
- Adequacy Decisions: Some countries have been deemed adequate by the European Commission (e.g., UK, Switzerland, Japan). Transfers to these countries do not require additional safeguards.
- EU-US Data Privacy Framework: Where applicable, we rely on the EU-US Data Privacy Framework for transfers to certified US companies. This framework provides adequacy-level protection for EU-US data transfers.
- Supplementary Measures: Where necessary, we implement additional technical and organizational measures to ensure data protection equivalent to EU standards, including encryption, access controls, and regular security assessments.
Third-Party Processors
Our key processors and their locations:
PostHog (Analytics)
- • Location: EU (eu.posthog.com)
- • Data Processed: Usage events, feature interactions (if not opted out)
- • Transfer Mechanism: No transfer (EU-based)
- • Legal Basis: Legitimate interest (Art. 6(1)(f) GDPR) or Consent
Cloudflare (File Storage)
- • Location: EU (for EU customers), US (for US customers)
- • Data Processed: Uploaded files and metadata (temporary storage during processing)
- • Transfer Mechanism: EU-based storage for EU customers (no transfer); Standard Contractual Clauses (SCCs) for US-based storage
- • Legal Basis: Contract performance (Art. 6(1)(b) GDPR)
- • Supplementary Measures: Encryption at rest and in transit
OpenAI (AI Processing)
- • Location: US
- • Data Processed: File content and metadata for processing
- • Transfer Mechanism: Standard Contractual Clauses (SCCs) + Business Terms
- • Legal Basis: Contract performance (Art. 6(1)(b) GDPR)
- • Data Processing: OpenAI does not use your data to train models (per Business Terms)
Mistral AI (AI Processing)
- • Location: EU
- • Data Processed: File content and metadata for processing
- • Transfer Mechanism: No transfer (EU-based)
- • Legal Basis: Contract performance (Art. 6(1)(b) GDPR)
- • Data Processing: Mistral AI does not use your data to train models (per agreement)
Polar (Payment Processing)
- • Location: EU
- • Data Processed: Payment information, billing address
- • Transfer Mechanism: No transfer (EU-based)
- • Legal Basis: Contract performance (Art. 6(1)(b) GDPR)
Schrems II Compliance
Following the Schrems II ruling (Case C-311/18), we ensure that all data transfers outside the EEA are protected by appropriate safeguards. We use Standard Contractual Clauses (SCCs) approved by the European Commission and implement supplementary technical and organizational measures where necessary. We regularly review our transfer mechanisms and processor agreements to ensure continued compliance with EU data protection law.
Your Rights: You have the right to request information about our data transfer mechanisms and to object to transfers if you believe your data is not adequately protected. Contact us at support@renamed.to for more information.
13. Privacy Controls & Preferences
You have granular control over your privacy preferences through Settings → Privacy. These controls allow you to:
Privacy Controls
- Disable Analytics: Opt-out of PostHog tracking for product analytics. This stops all analytics data collection immediately.
- Audit Redaction: Automatically remove sensitive data (filenames, paths) from audit logs. Enabled by default.
- Ephemeral Processing: Process files without storing metadata. Files are deleted immediately after processing. Note: This may limit our ability to provide support.
Retention Settings
Configure how long your data is retained:
- File Retention: Set retention period for uploaded files (0-365 days, default: 90 days)
- Audit Log Retention: Set retention period for audit logs (0-365 days, default: 90 days)
- Job History Retention: Set retention period for processing jobs (0-365 days, default: 90 days)
Team vs. Individual Preferences
Privacy preferences are set at the team level and apply to all team members. Team administrators can configure organizational privacy settings. Individual users can request specific privacy accommodations by contacting support.
14. Data security
We implement appropriate technical and organizational measures:
- Encryption of data in transit and at rest
- Regular security assessments and updates
- Access controls and authentication
- Employee training on data protection
- Incident response procedures
15. Contact & data protection officer
For questions about this Privacy Policy, data protection, or to exercise your rights:
Email: support@renamed.to
Subject line: "Data Protection Request"
16. Changes to this policy
We may update this Privacy Policy to reflect changes in our practices, technology, legal requirements, or other factors. We will notify you of material changes by email or through our service. Continued use after changes constitutes acceptance of the updated policy.