1SecCopyBack to site

Legal

Privacy Policy

Last updated: July 28, 2026

01What this policy covers

This policy explains what 1SecCopy (“1SecCopy”, “we”, “us”) does with information about you. It covers the 1SecCopy apps on every device and platform we publish them for, along with their widgets, keyboards and other extensions, the Premium subscription, and this website. It sits alongside our Terms of Use, which govern the service itself.

One word to pin down first, because it runs through everything below. A card is one thing you have saved in the app — a piece of text, a link, an image, a color — and a folder is a group of them. The word has nothing to do with payment cards.

02What never reaches us

With syncing off, nothing you save leaves your device: cards, folders, images and colors stay in the app’s own storage. We receive none of it, and we have no way to ask for it.

That local library is covered by your device’s own protections, and by whatever backup you use: if you back your device up, the app’s data goes into that backup, under the backup provider’s terms rather than ours.

03What we collect when you sign in and sync

An account exists to sync your content between your devices and to carry what you have paid for. What we hold for it is short.

  • Who you signed in as. You sign in with Apple or with Google. We receive an identifier for you from that provider, and your email address. We never see your password — we do not run a password system at all. If you use Apple’s Hide My Email, all we ever hold is the relay address Apple generates; your real address stays with Apple, including for any email we send you.
  • Your devices. For each device signed in to your account: a name, model and operating system version, when it was last seen, and the push token its platform gave us. The token is what lets us tell your other devices that something changed; without it, syncing would only happen when you opened the app.
  • Whether you are subscribed. Premium status, renewal date and the identifier the store issued for the purchase. The payment itself happens in the store, so your payment details never reach us.
  • Your content. The cards, folders and files you sync. See Your synced content.

That is the account. We do not ask for your name, your phone number, your address or your date of birth. We do not collect your contacts, we do not ask for your device location, and we do not scan your photo library — the images in your cards are the ones you picked.

04Your synced content, and who can read it

When syncing is on, your content leaves your device and is stored on servers we operate. It travels over encrypted connections and is held in access-controlled systems, though no service can promise perfect security. We do not read what you store as a matter of routine, and we do not sell it, mine it, use it for advertising, or use it to train machine learning models.

We may access what you store where it is genuinely necessary to operate or repair the Service, to investigate abuse, or where the law requires us to. Those are the only times.

Passwords, recovery codes, private keys and similar secrets are better off in a password manager.

05Clipboard, keyboard and the other extensions

  • The clipboard. 1SecCopy reads your clipboard only when you ask it to — when you tap to save what you just copied. It does not monitor the clipboard in the background, and it does not keep a history of everything you have ever copied. What is on your clipboard when you are not asking us to save it is not something we see.
  • The keyboard. The 1SecCopy keyboard needs “Full Access” from the operating system, because otherwise it cannot reach your saved cards or sync them. It uses that permission for exactly that. It does not record, store or transmit what you type — not in 1SecCopy, and not in any other app you use it in. It inserts cards you pick; it does not read your typing.
  • Widgets and Apple Watch. These read the same library the app has already stored on your device, so they can show your cards. They collect nothing of their own.

Every permission the app asks for is one a feature genuinely needs, and you can withdraw any of them in your device settings at any time.

06Crash reports and app statistics

When the app crashes, it sends a crash report through Google’s Firebase — what the app was doing when it fell over, the device model, the operating system version and the app version. We also collect basic usage statistics through the same service: which screens are opened, which features are used, how often the app is launched.

None of this includes your content. It is not tied to your 1SecCopy account, we do not use it to build a profile of you, and we do not use it to decide anything about you individually — it exists to tell us that a screen crashes on a particular OS version, or that a feature nobody can find needs moving.

As things stand, 1SecCopy does not track you across other companies’ apps and websites: it does not use the advertising identifier, and it does not ask for tracking permission. If that ever changes, this page will say so, and on Apple platforms the system asks for your permission before any of it can happen.

07This website

The website is a brochure: there is no account and no sign-in.

We use Google Analytics to see how many people visit and which pages they read. In the EEA, the UK and Switzerland it does not load at all until you accept it — decline, or ignore the banner, and the script is never fetched. Elsewhere it runs by default, and you can turn it off with the Cookies link at the bottom of any page, whichever country you are in. We see aggregate counts, not people.

The cookies this site can set, in full:

  • locale — remembers the language you chose so the site does not keep guessing. One year. Necessary for the site to behave, and set without asking.
  • consent — your answer to the analytics question, kept so we do not ask again on every page. Six months, after which we ask again.
  • consent_region — whether a banner is required where you are, worked out from the country our content delivery network reports for your connection. One day.
  • _ga, and a second one whose name starts with _ga_ — the two cookies Google Analytics sets, and only once analytics is running. Up to two years, and cleared when you decline.

You can also block or delete any of them in your browser.

Our infrastructure providers keep short-lived logs of requests they serve — the kind of record any web server writes, including an IP address — for security and troubleshooting. We do not build those into profiles, and we do not attach them to your 1SecCopy account.

08Why we hold any of it

  • To sync your content — your account, your devices and what you save exist for this.
  • To tell your devices something changed — the push token.
  • To know whether Premium is on — subscription status.
  • To keep the service working — crash reports, usage statistics, server logs.
  • To answer you — your support email, kept so we can pick the thread up if you write again. Please do not paste passwords or other secrets into it.
  • To tell you something you need to know — a receipt-like notice, a change to this policy, a warning before something is deleted. There are very few, and because they are part of running the service you cannot unsubscribe from them.
  • To tell you what is new — product news, which always carries an unsubscribe link that we honour. Where the law where you live requires your permission before we send it, we ask for it first rather than assume it.
  • To protect the service — investigating abuse, enforcing limits, and complying with the law.

We do not sell personal information, we do not share it for advertising, and we do not use your content or your usage to target anything at you.

09Who else sees it

Running 1SecCopy means using outside providers, each handling data only to do a job for us and under contracts that limit them to it: hosting and file storage, app distribution and payments, sign-in, subscription management, push delivery, crash reporting and analytics, and email. Which ones we use changes as the product does.

Beyond that: people you deliberately share a folder with can read what is in it — that is what sharing means, and it is your decision to make. And we may disclose information where the law genuinely requires it, or to protect the safety of people or the integrity of the service. Where we are allowed to tell you about such a request, we will.

If 1SecCopy is ever transferred to someone else, your information would move with it, and you would be told before that happened.

10Where it is kept

Our servers are in Singapore. The files you upload — images, and anything else attached to a card — are held separately, on storage located in eastern North America. Other providers listed above operate elsewhere again, including in the United States, so information about you may be processed outside the country you live in. Where the law requires a safeguard for such a transfer, we rely on the standard contractual clauses in those providers’ data processing terms.

11How long we keep it

  • Your cards — until you delete them. When you delete one, its contents are erased from our servers promptly; a small record that it was deleted is kept for a while so the deletion can reach your other devices.
  • Backups — routine backups take longer to cycle out, within 30 days.
  • After a subscription lapses — the copy on our servers is kept for 30 days, so that resubscribing picks up where you left off, and then removed.
  • Your account — until you ask us to delete it. Email us and we erase the account and everything stored with it: cards, folders, uploaded files and device records. This cannot be undone.
  • Support email — kept while it is useful for supporting you, and cleared out periodically.
  • Crash reports and statistics — kept for a limited period by the providers that collect them, under their own retention settings.

Two things outlive your account, and neither is ours to erase. Purchases are made through Apple or Google, so the record of the transaction stays with the store and with the service we use to track subscriptions, under their policies. And deleting your account does not cancel a subscription — that is done in the store you bought it from.

12Your choices and your rights

Whoever and wherever you are, you can:

  • Take your data with you — the app exports your folders and cards to a file, which is one of the Premium features. Whether or not you subscribe, you can email us for a copy of what we hold, free.
  • Delete everything — email us to have your account deleted, and what we hold goes with it.
  • Stop syncing — turn it off, and new cards stay on the device.
  • Change your mind about analytics on this website — the Cookies link at the bottom of any page.

Email [email protected] for any of these, or for a correction or an explanation. We may need to check that a request comes from the account holder first — usually by asking you to write from the address the account signs in with.

13Children

1SecCopy is not for children under 13, and we do not knowingly collect information from them. Some countries set a higher age for agreeing to this kind of processing without a parent — where that is the case, that age applies. If you believe a child has given us information, email [email protected] and we will delete it.

14If you are in the EEA or the UK

1SecCopy is the controller of the information described here. The lawful bases we rely on:

  • Performing our contract with you — your account, your devices, your synced content and your subscription status. Without these there is no service to provide.
  • Our legitimate interests — keeping the service working, secure and free of abuse, and understanding how the app is used so we can improve it: crash reports, app statistics, server logs, and the checks behind our limits. We keep this to what is needed for those purposes.
  • Your consent — analytics on this website, and marketing email. You can withdraw it at any time, and withdrawing is as easy as giving: the Cookies link at the bottom of any page, or the unsubscribe link in the message.
  • Legal obligation — where the law requires us to keep or disclose something.

You have the right to access your information, to have it corrected or erased, to restrict or object to how we use it, and to receive it in a portable form. The export built into the app is the quickest route to that last one, though it is a Premium feature; every one of these rights is also an email away. You also have the right to complain to your local data protection authority.

15If you are in California

In the twelve months before this page was last updated, the categories of personal information we collected were identifiers (an account identifier and an email address), commercial information (whether you subscribe), internet activity (crash reports, app and website usage), and the content you choose to sync. Why we collect each is set out in Why we hold any of it, and who receives it in Who else sees it.

We do not sell personal information and we do not share it for cross-context behavioural advertising, as those terms are defined in California law — and we have never done either. There is therefore no “Do Not Sell or Share” process to offer you. We do not use or disclose sensitive personal information beyond what is needed to provide the service.

You may request access to, correction of, or deletion of your personal information, and we will not discriminate against you for asking. These are described under Your choices and your rights.

16Changes to this policy

We may update this policy as the product and the law change. The updated version will be posted on this page with a new date at the top, and if a change materially affects you we will give notice in the app or by email before it takes effect. If a change means we need your consent for something, we will ask for it rather than assume it.

17Contact us

Questions about this policy, or about anything we hold? Email [email protected] and we will get back to you.