Privacy Policy
Last updated: 26 July 2026
This Privacy Policy explains what information Picocade collects when you use our preset store, how we use it, and the choices you have. We keep it deliberately short and readable. If anything is unclear, please get in touch.
Information we collect
- Account details. When you create an account we store your email address and, if you provide it, your name.
- Contact-form submissions. Any message you send us, along with the email address you reply from, so we can help you.
- Download history. A record of which presets you have generated download links for, tied to your account.
- Order records.For each purchase we store the payment processor’s order and payment reference, the amount and currency charged, which presets were bought, and whether the payment succeeded. We use this to grant your downloads and to handle refunds and support requests.
- Approximate country. When you visit, our host tells us the country your request came from. We use this only to decide whether to charge you in Indian rupees or US dollars. We do not store your IP address for this purpose or use it to build a profile.
When you place an order, payment transactions are processed securely through certified payment gateway partners (such as Razorpay). We do not store your credit card numbers or banking credentials on our servers.
How we use your information
- To create and maintain your account and keep it secure.
- To grant and manage your access to preset downloads, which are tied to your account.
- To respond to your questions and support requests.
- To protect the service from abuse — for example, applying rate limits to prevent excessive or automated requests.
Third-party services
We rely on a small number of trusted providers to run Picocade:
- Supabase handles authentication (email and password), stores your account data and download grants, and hosts the preview images you see on the site. Your password is stored securely by Supabase and is never visible to us in plain text.
- Netlify hosts the website and processes requests to it, and tells us the approximate country a request came from so we can price in the right currency.
- Razorpay processes payments. When you check out, the card, UPI, or netbanking details you enter go directly to Razorpay — they never pass through our servers, and we never see or store them. Razorpay returns only a payment reference, the amount, and whether the payment succeeded. Razorpay handles your payment data under its own privacy policy and under RBI rules.
- Resend delivers our transactional email. Your email address and the contents of that email — account verification and password reset links, and order receipts listing the packs you bought — are processed by Resend so the message can reach your inbox. We do not use it for marketing.
- Upstash backs our rate limiting. It briefly holds a counter keyed to your account or request so we can block automated abuse. These counters expire on their own and contain no message or payment content.
These providers process data only as needed to deliver their part of the service. Some of them operate servers outside your country, so using Picocade involves transferring your data internationally.
Cookies, Browser Caching & Memory Usage
To ensure Picocade delivers maximum loading speed and a fast, seamless experience, we utilize standard browser storage and edge performance technologies:
- Essential Session Cookies: We use authentication cookies solely to keep you securely signed in to your account. We do not use third-party advertising or cross-site tracking cookies.
- Local Storage (Browser Memory): We use client-side local storage to temporarily remember items in your bag so your selections are saved while you browse.
- Browser & CDN Caching: Static assets, fonts, and preset preview images are cached in your browser and on global Edge Content Delivery Networks (CDNs) for lightning-fast page loads.
- In-Memory Data Processing: Temporary operational data (such as signed download link generation and preset previews) is processed in volatile memory (RAM) and temporary edge caches, which automatically purge after completion.
You can clear your local browser cache, cookies, and local storage at any time via your browser settings without affecting your account status or purchased preset access.
Data retention
We keep your account details and download history for as long as your account is active. If you ask us to delete your account, we remove your personal data, retaining only what we are required to keep for legal or security reasons.
How we protect your data
Preset files are stored in a private bucket and are never publicly reachable. Every download is delivered through a short-lived signed link that we generate only after re-checking that you are signed in and that your purchase is valid. Access to your account data is restricted by database-level security rules rather than by what the interface chooses to show. No system is perfectly secure, but we design for the assumption that any link or page may be shared.
Children
Picocade is not intended for children under 18, and we do not knowingly collect their personal data. If you believe a child has created an account, contact us and we will remove it.
Your rights
You can request a copy of the personal data we hold about you, or ask us to delete it. Just contact us and we’ll take care of it.
Contacting us about your data
For any privacy question, data access or deletion request, or a complaint about how we have handled your information, email us at help@picocade.com or use our contact form. We aim to respond within 7 days and to resolve complaints within 30 days.
This policy is governed by the laws of India.
Changes to this policy
We may update this policy from time to time. When we do, we’ll revise the “last updated” date at the top of this page.