Privacy policy

Last updated: 17 July 2026

Controller

Philip Jeremias Eltester
Brunnenstr. 46, 40223 Düsseldorf, Germany
hello@negbreaker.app
Full details: Impressum

The short version

Visiting this website

The site is hosted on Cloudflare Workers, the download is served from Cloudflare R2 (dl.negbreaker.app). Cloudflare processes connection data — including your IP address, the requested URL, time and user agent — as is technically necessary to deliver the page and to keep the service secure and available.

Legal basis: Art. 6(1)(f) GDPR, our legitimate interest in operating a working, secure website. Cloudflare acts as our processor under Art. 28 GDPR. Data may be processed outside the EU; Cloudflare relies on the EU Standard Contractual Clauses for this.

We set no cookies and run no analytics. We do not build usage profiles, and we do not have a consent banner because there is nothing to consent to.

Fonts

All fonts are stored on this server and delivered from this domain. They are not loaded from Google Fonts, so no data about your visit is transmitted to Google.

Buying NegBreaker

Payment is handled by Paddle.com Market Ltd. as Merchant of Record. When you buy, you enter your details on Paddle's checkout, not on this site. We never see or store your payment data. Paddle is the seller of record and an independent controller for the data you give them; their privacy policy applies to that step.

From Paddle we receive only what is needed to issue your licence: your email address and the fact that a purchase completed.

Your licence key

Your key is generated from your email address and cryptographically signed. This means your email address is contained inside the key itself — that is how the app can verify the licence offline, without ever contacting a server. Anyone you hand the key to can read the address, so treat it as personal.

The key is emailed to you via Resend (Resend, Inc.), our email processor. We keep your email address and purchase reference to support you and to re-issue a lost key, and because commercial and tax law requires us to retain records of the transaction.

Legal basis: Art. 6(1)(b) GDPR (performing the contract) and Art. 6(1)(c) GDPR (statutory retention obligations).

The app itself

NegBreaker processes your scans entirely on your own Mac. It has no telemetry, no crash reporting, no update check and no account. It does not transmit your images, your licence key or any usage data anywhere.

This is not just a promise about intent: the shipped application bundle does not contain Qt's networking framework at all, and the source contains no HTTP or socket code. The app is not able to make a network request.

Locally, the app stores only your licence key and a counter of trial imports in the standard macOS preferences for the app. Both stay on your machine, and you can delete them at any time.

Your rights

Under the GDPR you have the right to access (Art. 15), rectification (Art. 16), erasure (Art. 17), restriction (Art. 18), data portability (Art. 20) and to object (Art. 21). Write to hello@negbreaker.app and we will handle it.

Note that erasing your email address means we can no longer re-issue your licence key, and that statutory retention periods may prevent immediate deletion of transaction records.

You also have the right to lodge a complaint with a supervisory authority. The authority responsible for our location is the Landesbeauftragte für Datenschutz und Informationsfreiheit Nordrhein-Westfalen (LDI NRW), Kavalleriestraße 2–4, 40213 Düsseldorf.

Changes

If we change how any of this works, we update this page and the date at the top.