Legal
Privacy Policy
Last updated
This Privacy Policy explains how Renduo (“Renduo,” “we,” “us”) collects, uses, discloses, and protects information when you use the Service — the component-first PDF generation API, the website at renduo.dev, and the dashboard at app.renduo.dev. By using the Service, you agree to the practices described here. This policy is incorporated into and should be read together with our Terms of Service.
Information we collect
Information you provide to us
- Account information — your name, email address, and organization details when you sign up (including through OAuth providers such as Google) and when you invite members.
- Content you generate with — the React components you register and the data payloads you send to generate documents.
- Billing information — payment card data is collected and processed by Polar, our Merchant of Record; Renduo does not receive or store card numbers. Polar may share with us your billing email, plan, and payment status so we can provision your account.
Information collected automatically
- Generation metadata — for every generation, records such as the template identifier, mode (sync/async), timestamps, status, and duration. In sync mode the PDF and payload are ephemeral by design and are not persisted; only this operation metadata is stored.
- Operational logs — IP address, request paths and headers, API key identifiers, error events, and service logs, used for security, debugging, and abuse prevention.
- Usage data — per-plan counters and period usage, used for metering and billing.
- Cookies and session data — the dashboard uses authentication session cookies; the website is static and does not use tracking cookies.
How we use information
- To provide and operate the Service — process generations, render PDFs, store and serve async PDFs within the retention window, and deliver webhooks.
- To manage billing — measure usage, calculate overage, coordinate with Polar, and issue receipts.
- To communicate with you — transactional email such as invitations, quota alerts, and product updates.
- To protect the Service — prevent abuse, enforce quotas, detect fraud, and respond to incidents.
- To comply with law — maintain records required by law and respond to lawful requests.
- To improve the Service — product development and analytics on aggregated data.
How we share information
We do not sell your personal data. We share information only with the service providers needed to operate the Service, with third parties where you direct us, or where the law requires it.
- Polar — Merchant of Record for payments, billing, invoicing, and tax compliance.
- Resend — transactional email delivery.
- Railway — hosting of the API, the PostgreSQL database, and Redis.
- Cloudflare — object storage (R2) for component shells and async PDFs, and hosting of the website (Cloudflare Pages).
- Browserless — the headless Chrome sandbox where components render. Payloads are processed in memory to produce the PDF and are not stored by Browserless.
- Google (OAuth) — identity verification when you sign in with Google.
Where required, we may disclose information to law enforcement, regulators, or courts.
Data retention
- Sync generations — the PDF and payload are ephemeral and are not stored. Only operation metadata is retained.
- Async PDFs — stored in object storage for your plan’s retention window (24 hours on Free, 30 days on Starter, 90 days on Growth, custom for Enterprise) and then purged automatically. The operation record remains.
- Account data — retained while your account is active and deleted or anonymized within a reasonable period after you delete your account, except where we are required to keep records for legal, tax, or billing purposes.
- Operational logs — retained for a limited period for security and debugging.
- Webhook deliveries — delivery records are retained for up to 30 days.
Data security
We apply industry-standard safeguards, including TLS in transit, encryption at rest for stored objects, hashed API keys, isolation of component execution in a sandboxed Chrome context, and restricted access to production systems. No method of transmission or storage is 100% secure, and we cannot guarantee absolute security.
International data transfers
Renduo operates from Chile, and the service providers we use (including Railway, Cloudflare, Browserless, Resend, and Polar) may process data in other countries. Where we transfer data internationally, we rely on appropriate safeguards under applicable data protection law.
Your rights
Depending on where you live, you may have rights over your personal data, including access, correction, deletion, portability, restriction, and objection. You can exercise many of them directly in the dashboard; for anything else, email [email protected] and we will respond within a reasonable time. In Chile, Law 19.628 governs the processing of personal data. If you have concerns, you may also contact your local data protection authority.
Children
The Service is not directed at children under 16 (or the minimum age in your jurisdiction), and we do not knowingly collect personal data from children.
Changes to this policy
We may update this policy from time to time. Material changes will be announced on the website or by email. The “Last updated” date at the top reflects the current version.
Contact
For privacy questions or requests, email [email protected].