Privacy policy
How we handle your images and data when you use Quitar Fondo.
Last updated: 2026-09-08
Summary
Quitar Fondo lets you remove the background from an image and, optionally for signed-in users, generate a new background scene using artificial intelligence services. We want to explain clearly what data is processed, what it is used for, and how long it may be retained.
Images we process
When you use the tool, the image you choose is sent encrypted to our server and to the AI processing provider Replicate. The image is used exclusively to generate the requested result; we do not claim that processing happens only on your device.
If you use AI background, we first send the scene description to Waffo Prompt Sift for content-safety screening. Waffo does not receive the image in this screening step. Only an allowed description and the transparent cutout are then sent temporarily to Replicate. We do not save the image, description, or generated result to your history or our database. The result is available in your browser for review and download, including the optional short-lived local recovery described below.
For safety auditing and appeals, we retain a redacted moderation event for up to 90 days. It can contain a request reference, decision, reason code, matched policy categories, model name, Replicate prediction identifier and status, and timestamps. It does not contain the raw description, image, generated output, billing details, or card information.
Replicate may temporarily retain input files uploaded through its API for approximately up to 24 hours. Prediction data, its logs, and the output are typically deleted automatically approximately one hour after processing completes, in accordance with the provider's current policy. These conditions may change, and we recommend not uploading especially sensitive images.
HEIC/HEIF conversion and resizing a large image happen in your browser. We show the prepared copy before you choose to upload it for background removal; this conversion can alter color, resolution or metadata. The converter is loaded only when requested (heic-to license and source). Where your browser supports file sharing, an exported file is sent only to the app or destination you choose in the system share menu. Its handling then depends on that destination.
Technical data
We may process minimal technical data necessary to provide and protect the service, such as IP address, browser type, request date, and error events. This data may be used to limit abuse, diagnose failures, and improve performance. To enforce the daily processing limit, we retain for approximately no more than seven days a cryptographically derived pseudonymous network identifier, the UTC date, and the request reservation record. We do not store the untransformed IP address in this control table.
We use Pageview.app and Google Analytics to understand site traffic and usage. Pageview.app receives visit data such as the domain, page URL, referrer, and page-view event; its current script does not set its own cookies. Google Analytics may receive usage and device data and use cookies or similar identifiers depending on its configuration. We do not send these tools the contents of images you upload or the processed result.
We also measure the language and type of entry page, distinguish samples from uploaded images, and separate ZIP preparation from the download action. To measure purchases, we send Google Analytics the order identifier, product, amount, and currency only after checking a verified paid order belonging to your account. We keep pending payment references in your browser for up to seven days and a marker to prevent repeating the event. These events do not include filenames, images, AI descriptions, or card details.
You can optionally rate a cutout and choose a problem category. We send Google Analytics the rating, category, whether it is a sample or uploaded image, and whether you used edge repair. This feedback does not include the image, its filename, or a written description. Editing and downloading do not depend on submitting feedback.
Editing preferences
Your browser can remember the canvas size, background, subject coverage, file format, and export naming. If you sign in and press Save, we retain one reusable setting linked to your account until you update or delete it. You can apply it on another device. It does not contain images, masks, per-image crops, or AI descriptions. Deleting the account setting does not erase local browser settings; you can reset those from the editor.
Account and payment data
If you create an account or buy credits, we process the data needed to provide the service and maintain its history: name, email address, internal user and order identifiers, product purchased, amount, currency, payment or subscription status, dates, and transaction identifiers supplied by the payment processor.
Creem or Waffo Pancake, according to the option you select, processes the payment as merchant of record. Full card details are entered directly in the selected provider's checkout environment and do not pass through our servers. We receive only the information needed to confirm payment, manage the subscription, issue credits, and handle refunds or disputes.
Signed payment events are kept in a durable processing inbox after billing, address, card, and raw webhook-body data have been removed. This lets us safely retry fulfillment without retaining those sensitive webhook fields.
We retain account, order, and credit-transaction records for as long as necessary to provide the service, prevent fraud, resolve issues, and meet accounting or legal obligations. Specific retention periods may depend on the country and type of record.
What we do not do
- We do not sell your images or your personal data.
- We do not use your images to create advertising profiles.
- We do not publish the images you upload.
- We do not accept images via an arbitrary URL in this first version.
Providers
We use technical providers to host and operate the service. Standard background removal uses Replicate and the 851-labs/background-remover model; AI background generation (Bria) is temporarily disabled; no new generation requests are accepted. We use Creem and Waffo Pancake as merchant-of-record payment options. We use Pageview.app and Google Analytics for site analytics. Each provider handles data according to its own terms and security measures.
Security and retention
We apply encryption in transit and reasonable technical controls. No internet service can guarantee absolute security. We do not intentionally retain a permanent copy of the original image or the result in our database in the first version.
Your rights
Depending on your place of residence, you may request access to, correction of, or deletion of personal data we may hold. You may also object to certain processing or request its restriction.
Changes to this policy
We may update this policy when the product, providers, or legal obligations change. The date of the current version appears at the top of the page.
Contact
If you have any questions about privacy or want to exercise your rights, write to us at info@quitarfondo.org.
Temporary editor recovery
When you leave the editor to sign in or buy points, we temporarily save your images, results and edit settings in this browser using IndexedDB, scoped to the current tab. This is not a cloud gallery. The recovery expires after 30 minutes; expired data is removed the next time the recovery store is accessed. You can discard saved work from the return-to-editor notice. Recovery requires browser storage and does not automatically reprocess or charge for an image.
We separately retain provider request identifiers, processing and delivery states, timestamps and optional operator-configured cost estimates for up to 90 days for budget control. This budget log does not contain your image, prompt, filename or raw IP address. An estimate is not an invoice from the provider.