Skip to content

Last updated · 18 September 2026

Privacy Policy

PicReplace is an image toolbox. Most of it runs inside your browser and never sends a picture anywhere. The AI features — cut-outs, background scenes, image translation, AI edits — send your picture to a processing provider for the duration of that one call. This page says exactly what is kept, for how long, and how to remove it.

What we store

If you sign in with Google we keep your Google account id, your verified email address, your display name and your profile picture, so we can show you who is signed in and refill your credits every day. If you do not sign in, the only thing that identifies you is a random anonymous id in a cookie; it is not linked to your name or address. To stop one person collecting the free trial many times, we keep a salted hash of your IP address for the current day and the day after — the hash cannot be turned back into the address and is deleted after two days. Every AI call writes one ledger row: the account id, the action, the credits charged, the model, a job id and the time. Ledger rows are kept for accounting and, after thirteen months, reduced to monthly totals.

Your images

Watermarks, grids, splitting, local erase, editing and export run entirely in your browser; those pictures never leave your device. When you use an AI feature, the picture (or the part of it that is being worked on) is sent to a third-party AI provider to be processed: fal.ai for cut-outs, background scenes, AI edits and hosted erase; Google Cloud Vision for reading text; Google Gemini for understanding a picture and for translation; Microsoft Azure and DeepL as fallbacks for text recognition and translation. The picture is held only for the duration of processing and is not kept by us afterwards. Cut-out results are cached for seven days under a hash of the picture, so re-uploading the same file does not cost you twice; the cache holds the cut-out mask, not your account. Each provider processes the data under its own terms; we send only what that one call needs.

Cookies

PicReplace sets four first-party cookies and no advertising or analytics cookies. picreplace.aid holds your anonymous id (one year, renewed as you visit; httpOnly). picreplace.sid holds your session once you sign in (thirty days, renewed as you visit; httpOnly). picreplace.oauth exists only during a Google sign-in and expires after five minutes. picreplace.langhint remembers which language you last read the site in so the language switch can point at it; it is set by your browser and holds no id. On the live site these cookies are marked Secure and are scoped to picreplace.com.

Retention and deletion

Open the account menu (the avatar or the credits pill) and choose Delete account: your profile is removed, your credits are forfeited and your session ends everywhere; ledger rows lose their link to you and remain only as anonymous accounting. Anonymous accounts that have not been used for ninety days are deleted automatically. Signing out of every device (also in the account menu) invalidates every session at once.

Contact

Questions about this policy or about your data go to the address below. We answer requests to see, correct or erase your data within thirty days.

Contact: privacy@picreplace.com