Back to ClearCopies

Privacy Policy

Last updated: August 28, 2026.

ClearCopies scans connected cloud-drive metadata for exact duplicate candidates. File contents are not downloaded during normal scans.

The app stores account identifiers, encrypted OAuth tokens, scan status, file names, paths, sizes, hashes supplied by the connected provider, timestamps, and sharing indicators needed to review duplicate groups.

How sensitive data is protected

ClearCopies protects data in transit with HTTPS/TLS. OAuth access and refresh tokens are encrypted at rest with authenticated AES-256-GCM encryption. The encryption key and provider credentials are kept in server-side environment configuration and are never exposed to browser JavaScript.

Production database and token access is limited to authorized server-side services and restricted administrative operations. Application routes validate input and verify that the signed-in user owns the account, scan, or cleanup record before returning or changing data. Routine operational logs must not contain OAuth tokens, cloud-provider account identifiers, or full file paths.

Normal scans process provider-supplied metadata without downloading file contents. Cleanup requires separate write consent and revalidates each selected file immediately before acting. Supported cleanup actions move files to the provider's recoverable trash; ClearCopies does not permanently delete files.

Scan metadata expires after the configured retention window, defaulting to 24 hours after completion. Users can delete scan data from the scan page unless it is linked to a payment or cleanup audit record that must remain consistent.

Paid cleanup stores the Stripe Checkout and Payment Intent identifiers, quoted amount, currency, consent timestamp, and per-file execution outcome needed for payment reconciliation and audit. Card details are handled by Stripe and are not stored by ClearCopies.

ClearCopies sends essential scan, payment, and cleanup status emails for actions requested by the user. Optional unpaid-scan follow-ups and annual reminders are sent only after explicit opt-in and can be disabled from account preferences or through the unsubscribe link in each lifecycle email. Delivery metadata is retained for reliability and audit; IONOS processes email delivery.

Optional Google Analytics is loaded only after consent. It measures page usage and aggregated product steps such as starting OAuth, completing a scan, opening checkout, and completing cleanup. ClearCopies does not send cloud filenames, paths, account emails, or scan identifiers to Google Analytics. You can change this choice through “Analytics preferences” in the site footer.

Metadata is not used for advertising or model training. The app is independent and is not endorsed or sponsored by Microsoft, Google, or Dropbox.

ClearCopies' use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Google Drive data is used only to provide the scan, duplicate review, and user-requested cleanup features. It is not sold, used for advertising, or used to build advertising profiles.

Disconnecting a linked account deletes its stored access and refresh tokens from ClearCopies. ClearCopies also requests provider-side revocation for Google and Dropbox. This does not sign the user out of Google, Dropbox, Microsoft, or the browser.

To remove stored scan data or authorization, follow the steps on the data deletion page. Privacy and consent questions can be sent to support@clearcopies.com.