Privacy Policy
Effective Date: August 23, 2026
Last Updated: August 23, 2026
This Privacy Policy explains how SaaveMe ("we", "us", or "our") collects, uses, stores, shares, and protects information when you use the website at https://saaveme.com, the Progressive Web App, and the Android and iOS apps (together, the "Service").
SaaveMe is a service operated by MaxiNet Digital. You save a link; we store that link in your account and may generate a title, description, tags, and category to help you organize it.
This policy describes practices we have confirmed in the current Service. We do not sell your personal information. We do not use your data for advertising.
If you have questions, contact privacy@saaveme.com.
1. Information We Collect
Account information
You can create an account by signing in with Google or Apple. When you do, we receive and store:
- Your email address (Apple may provide a private relay address)
- Your display name (if provided by the sign-in provider or later edited by you)
- Your profile photo URL (if provided by Google)
- A unique account identifier created by our authentication provider
- Account timestamps, including when you created the account and your last login
We do not collect a phone number, postal address, or date of birth.
Email-and-password accounts may exist for some older users. Those accounts store an email address and an authentication credential managed by our backend. The current sign-in screen offers Google and Apple sign-in.
Saved links, tags, and user-created content
When you save a link, we store the information needed to show and organize that bookmark. This can include:
- The HTTP or HTTPS URL you saved
- Title and short description (entered by you or suggested by our systems)
- Optional note
- Tags
- Category name, description, color, icon, and display order
- A preview image URL taken from publicly available page metadata, when one is available
- Source platform and content type labels (for example, YouTube or a web article)
- How the link was added (in-app, share sheet, or similar)
- The general platform used to save it (web, Android, or iOS)
- Archive and deletion timestamps
SaaveMe saves links only. We do not save photos, videos, audio files, PDFs, or other local files from your device. If a share includes both text and a URL, we store only the extracted URL.
You are responsible for the URLs, notes, tags, titles, descriptions, and categories you save. We do not verify that a saved link remains available, accurate, or lawful.
AI and image analysis
After you save a link, our servers may:
- Request publicly available metadata for that URL (title, description, and preview image URL) from our metadata extraction service.
- Send link metadata to an AI provider to suggest a title, description, tags, and category, and to screen the link for prohibited content.
Data that may be sent for AI processing includes the URL, title, description, preview image URL, your existing category names, and your language preferences.
For Premium users, if a preview image URL is available, that image URL may also be sent to our primary AI provider so the model can look at the preview image. This is used only to improve metadata suggestions and safety screening for social or visual links. We do not use this to build an advertising profile.
If our primary AI provider is unavailable, we may send the same text fields (not the image) to a fallback AI provider.
We also record limited AI usage information (such as that an authenticated AI request occurred) for rate limiting. More detailed AI request and response logs are stored only when an internal logging setting is enabled for operational debugging.
AI suggestions and safety labels are automated outputs. They can be wrong or incomplete. Preview images and metadata come from third-party pages and are not guaranteed to be accurate or available.
Safety and moderation records
The same AI step may flag a saved link as prohibited (for example, illegal, adult, gambling, alcohol, or other inappropriate content). When that happens, we may store:
- The URL
- The violation type and reason
- Whether adding links or account access was restricted, and for how long
These records are used to enforce our rules and protect the Service.
Subscription and payment information
Premium subscriptions can be purchased through:
- Google Play Billing on Android
- Apple In-App Purchase on iOS
- LemonSqueezy checkout on the website
We do not collect or store payment card numbers, bank account numbers, or full payment credentials. Those stay with the payment platform you use.
We store subscription status needed to provide Premium features, which may include:
- Plan type (monthly or yearly)
- Whether the subscription is active, and related start, expiry, or cancellation dates
- Google Play purchase token, order ID, product ID, and package name (Android)
- Apple transaction identifiers (iOS)
- LemonSqueezy customer, subscription, order, and variant identifiers, plus webhook event records (web)
For web checkout we send your user ID, email address, and selected plan to LemonSqueezy so the checkout can be completed.
Device and technical information
When you sign in, and when the app starts a session, we may record:
- Platform (desktop web, mobile web, Android, or iOS)
- App version
- Browser name and version, operating system name and version, and a coarse device model parsed from the user agent
- User agent string
- Screen and window size, language, and whether the device is touch-capable
- A session identifier stored on your device for that visit
- Your IP address, when our client can obtain it from a public IP lookup service
We use this to operate the Service, understand which platforms we support, troubleshoot issues, and track login activity.
We do not collect precise location, contacts, a persistent hardware device ID, or advertising IDs. The Android app removes the advertising ID permission.
In-app activity and preferences
We store information needed to run the product experience, including:
- Language and AI language preferences
- View and sort preferences
- Whether you completed first-time setup
- In-app notifications (for example, badge unlocks or a blocked-link notice)
- Gamification records such as badges, link and login counts, and streaks
On the website only, we also load Vercel Analytics to understand aggregate page usage. This is not included in the native Android or iOS apps. The website cookie banner records that a visitor accepted the notice; it does not currently block analytics.
Information stored on your device
The Service stores data locally so you can stay signed in and keep preferences. This can include:
- Authentication session tokens in local storage (and, on iOS, in the App Group used by the share extension)
- UI preferences, pending share or purchase state, and similar app settings
- A cookie-consent flag and a sidebar preference cookie on the website
These are used to operate the Service on your device. They are not a separate advertising profile.
2. How We Use Information
We use the information above to:
- Create and maintain your account and keep you signed in
- Save, organize, search, archive, and display your bookmarks
- Generate and apply AI suggestions for titles, descriptions, tags, and categories
- Fetch public link metadata and preview images
- Screen saved links for prohibited content and apply safety restrictions when needed
- Provide Premium features and verify subscription status with the relevant store
- Enforce usage limits for free and Premium accounts
- Send in-app notifications related to your account or content
- Measure product usage on the website
- Troubleshoot problems and keep the Service secure
- Respond to support and privacy requests
- Comply with law and protect against abuse
We do not use your saved links or account data to show third-party ads. We do not sell personal information.
3. How We Share Information
We share information only with service providers that help us operate the Service, or when required by law. These providers process data on our behalf or as independent controllers for their payment or sign-in services.
Service providers we actually use
- Supabase. Hosts our database, authentication, file-related infrastructure, and server functions. Your account, bookmarks, settings, subscription records, and related app data are stored there. The current project is hosted in the European Union (Frankfurt).
- Google. Used for Google sign-in (email and basic profile) and, on Android, Google Play Billing and subscription verification.
- Apple. Used for Sign in with Apple (email and name) and for App Store In-App Purchase on iOS.
- LemonSqueezy. Used for website checkout and subscription webhooks.
- OpenAI. Primary AI provider for title, description, tag, and category suggestions and for safety screening. For Premium users, a preview image URL may also be sent.
- Anthropic. Fallback AI provider for the same text fields if the primary provider fails.
- Meta-SaaveMe metadata service. Receives the URL you saved and a user identifier so it can return publicly available title, description, and preview image information.
- api.ipify.org. Used only to look up the public IP address recorded with login activity.
- Vercel. Hosts the website and, on the website only, provides usage analytics.
- Resend. An email-sending function exists in our backend. The current app does not send promotional or product emails through this function during normal use. If we use it for transactional or support email in the future, the recipient address and message content would be processed by that provider.
We may also disclose information if required by law, to protect the Service or our users, or in connection with a merger, acquisition, or similar transaction, in which case we will continue to protect the information as described in this policy or provide notice of any material change.
We do not share your bookmarks with other SaaveMe users. Your collection is private to your account.
4. Data Storage and Retention
We keep your information for as long as your account is active and as needed to provide the Service.
- Saved links, categories, notes, tags, and profile data are kept until you delete the item or your account.
- Preview image URLs are kept with the related bookmark and are removed when that bookmark or your account is deleted.
- Subscription records are kept while needed to provide Premium access and to handle billing status.
- Login and device records are kept while your account exists.
- Safety and moderation records may be retained after other account data is removed if we still need them to enforce our rules, prevent abuse, or meet a legal obligation.
- Payment processors and app stores may retain their own transaction records under their policies.
If we keep backups of our database, deleted data may remain in those backups until they are rotated in the ordinary course of operations. We do not promise a specific backup window, and you should not treat SaaveMe as the only copy of important information.
5. How We Handle Data Securely
We use the following protections that are actually in place in the Service:
- Encryption in transit. Communication with our website, APIs, and backend uses HTTPS/TLS.
- Authentication. Access to your account uses our authentication provider. The web and app clients use a PKCE sign-in flow and store a session token on your device.
- Authorization and access control. Signed-in users can access only their own bookmarks and account data through row-level security and server-side checks. Administrative tools are limited to authorized operators.
- Payment data. Card details are handled by Google Play, Apple, or LemonSqueezy. We store subscription status and store-issued identifiers, not card numbers.
- Transport limits on saved content. The Service accepts HTTP and HTTPS links only. Non-link shares are rejected.
- Infrastructure protections. Our backend provider applies its standard storage and network protections to the hosted database and authentication service. We do not add a separate application-level encryption layer on top of that hosted storage.
No method of transmission or storage is completely secure. If you believe your account has been compromised, contact privacy@saaveme.com.
Where GDPR or other mandatory data-protection law applies, we remain responsible for implementing appropriate technical and organisational measures. Nothing in this policy is intended to limit those mandatory obligations.
6. Account and Data Deletion
You can delete your data from the Service:
- In the app: open Profile and use Clear All Content or Delete Account. Clear All Content removes your saved links and related library data and keeps your account. Delete Account removes your library, profile, subscription records in our database, and then attempts to delete your authentication account.
- By email: write to privacy@saaveme.com from the email address on your account and ask us to delete your account. We will verify the request and process it.
After a successful deletion request we remove your bookmarks, categories, notes, tags, preview image URLs stored with those items, profile, settings, in-app notifications, login records, queue items, and related account data from the active database. We then sign you out and clear local session data on the device that performed the deletion.
We may retain limited safety, billing, or legal records where we have a legitimate need to do so, as described above.
We aim to complete email deletion requests within 7 business days after we can verify the account.
7. Your Rights
Depending on where you live, you may have the right to:
- Access the personal information we hold about you
- Correct inaccurate information (you can edit your display name and your saved links in the app)
- Delete your account and personal information
- Export a copy of your saved links and categories (Premium users can export CSV or JSON from the Export screen)
- Object to or restrict certain processing
- Withdraw consent where processing is based on consent (for example, by signing out or deleting your account)
To exercise these rights, use the in-app controls or email privacy@saaveme.com. We may need to verify that the request comes from the account holder.
8. Children's Privacy
SaaveMe is not directed at children.
The minimum age for using the Service depends on where you live. In the United States, the Service is not intended for children under 13. In the European Economic Area, including the Netherlands, national law sets the age at which a child may consent to information-society services. In the Netherlands that age is 16.
The Service does not include an age-gate or a parental-consent flow. If you are below the applicable age in your country, do not create an account.
If you believe we have collected personal information from a child below the applicable age, contact privacy@saaveme.com. We will delete the account and related personal information.
9. International Processing
Our backend is hosted in the European Union (Frankfurt). AI providers, payment processors, and other service providers listed above may process information in other countries, including the United States. Those providers process only the data needed for the functions described in this policy.
10. Changes to This Policy
We may update this Privacy Policy when the Service or our practices change. The "Last Updated" date at the top will change when we do.
If a change is material, we will provide a more prominent notice, such as an in-app notice or a notice on this page. Where required by applicable law, we will obtain your consent before applying material changes that affect how we process your personal data.
The current version is always available at https://saaveme.com/privacy-policy without signing in.
11. Contact
The controller of personal data processed through SaaveMe is MaxiNet Digital, the operator of the Service.
For privacy questions, deletion requests, or complaints:
Email: privacy@saaveme.com
This is the public Privacy Policy for SaaveMe on the web, Android, and iOS.