AssetLinks

Last updated September 24, 2026

Privacy Policy

This page explains the information AssetLinks processes to provide account access, store files, and create sharing links. We are a beta service, and some operational retention details are still being finalized.

Information we process

  • Account and sign-in information. Clerk provides account authentication. AssetLinks receives account identifiers and profile details needed to associate activity and files with your account. Sign-in uses session cookies.
  • Files and file details. When you upload content, the file bytes are stored in Cloudflare R2. AssetLinks stores related records in Cloudflare D1, such as filenames, sizes, account ownership, product associations, and sharing settings.
  • Sharing and access activity. A person with a valid sharing link may view or access the content allowed by that link. AssetLinks records some delivery activity, including account or product context, timestamps, an IP-derived hash, and browser user-agent information. These records do not establish that a recipient saved a file.
  • Billing information. If you purchase a paid plan, checkout is handled through Stripe. AssetLinks receives subscription and billing status needed to manage account access; payment-card details are handled by Stripe.
  • Support and communications. If you contact us or use an invitation or email-sharing feature, we process the addresses and message details needed to respond or carry out that request.

How we use information

We use this information to authenticate users, operate file storage and delivery, enforce account permissions and upload limits, manage subscriptions when enabled, prevent abuse, troubleshoot reliability and security issues, and respond to support requests.

Service providers

The application is hosted through Vercel. Account authentication is provided by Clerk. File storage, database, and API services use Cloudflare. Stripe processes payments when billing is enabled. These providers process information to provide their services to AssetLinks; their own privacy terms also apply to their handling.

Sharing links

Sharing links act like access keys. Anyone who obtains an active link may be able to access the content permitted by that link until it expires or is revoked. Share links only with intended recipients and revoke them when they are no longer needed.

Cookies and local storage

Clerk uses essential session cookies for sign-in and account security. The public landing page also uses browser local storage to remember when its cookie notice has been dismissed. The landing page does not load optional analytics or advertising cookies.

Retention and deletion

You can manage and delete files through the product controls available to your account. A recoverable Deleted files workflow is being tested, but no 30-day or 180-day recovery period is guaranteed today; deleted bytes may continue to occupy storage while recovery remains possible. We are still confirming retention periods for account records, service logs, and provider backups. Contact us if a specific deletion or retention requirement matters to you before uploading content.

Your choices and questions

For questions about account information, files, or this policy, contact hello@assetlinks.io. We will review and respond to privacy requests through that address.

DRAFT — NOT FINAL OR LEGALLY APPROVED. This operational summary is for the current beta. The service owner and legal reviewer still need to confirm provider terms, retention and account-deletion behavior, email processing, legal contact details, and applicable privacy rights before publication as a final policy.