Privacy Policy
Effective Date: July 13, 2026
At Smart Image Resizer (operating at smartimageresizer.com), we believe digital privacy is a fundamental human right. Our architecture is purposely built around a zero-upload client-side processing engine. This Privacy Policy details how we handle user data, third-party advertising cookies, and regulatory rights under the General Data Protection Regulation (GDPR) and US State Privacy Laws (including California CCPA/CPRA).
1. 100% Zero File Upload Architecture
Unlike traditional cloud conversion websites, Smart Image Resizer does not upload, transmit, store, or inspect your images or documents on external servers:
- Local Browser Memory: All image scaling, cropping, DPI adjustments, EXIF inspections, and compression routines execute exclusively inside your web browser's sandboxed memory using HTML5 Canvas APIs.
- Zero Network Transmission of Files: When you drag a photo into our resizer, zero bytes of image data travel across the internet. You can verify this at any time using your browser's Developer Tools Network Inspector (F12).
- Instant De-allocation: Once you download your transformed image or close the browser tab, the temporary local memory Blob is instantly released using
URL.revokeObjectURL().
2. Google AdSense & Third-Party Advertising
To maintain our infrastructure, provide free unlimited usage without paywalls, and continually develop new image tools, we display advertisements via Google AdSense:
- Ad Serving Cookies: Third-party vendors, including Google, use cookies to serve ads based on a user's prior visits to this website or other websites on the internet.
- Personalized Advertising: Google's use of advertising cookies enables it and its partners to serve personalized advertisements to you based on your visit to our site and other destinations across the web.
- Ad Technology Providers: Google works with certified third-party vendors and ad networks. You may review the comprehensive list of Google Ad Technology Providers to understand how your data is utilized.
- Opt-Out of Personalization: Users may opt out of personalized advertising at any time by visiting Google Ads Settings or through the AboutAds Opt-Out Portal.
3. European Privacy Rights (GDPR & UK GDPR) & Consent Management
For visitors situated within the European Economic Area (EEA), United Kingdom, and Switzerland, we utilize Google's certified Consent Management Platform (CMP) (IAB Europe Transparency and Consent Framework TCF v2.2 compliant):
- Prior Consent: In accordance with Google Consent Mode v2, non-essential cookies (including ad storage, personalization, and analytics cookies) are blocked by default for EEA and UK visitors until explicit consent is granted.
- Consent Options: When visiting from Europe, you are presented with a consent dialog allowing you to "Accept All", "Reject All", or configure granular partner permissions.
- Right of Access & Erasure: Under Articles 15–20 of the GDPR, you have the right to request access to, rectification of, or erasure of personal data held about you, as well as the right to lodge a complaint with your national supervisory authority.
4. US State Privacy Rights (California CCPA / CPRA & Other States)
Residents of California (under CCPA/CPRA), Virginia, Colorado, Connecticut, Utah, and other US states with enacted privacy legislation possess specific rights regarding personal information:
- Do Not Sell or Share My Personal Information: We do not sell personal data for monetary consideration. However, sharing online identifiers with advertising networks for cross-context behavioral advertising may be considered "sharing" under California law. You may opt out using the cookie preferences dialog or via standard browser Global Privacy Control (GPC) signals.
- Right to Know & Delete: You have the right to request disclosure of categories of personal information collected and request deletion without discrimination.
5. Web Analytics & Server Logs
We employ Google Analytics 4 (GA4) with IP anonymization enabled to analyze aggregated visitor trends (such as page view counts, device types, and browser versions). GA4 cookies measure interactions without associating identifiable personal records. Standard server logs (IP address, user-agent, request timestamp) are automatically recorded by Cloudflare for network security, DDoS prevention, and rate-limiting, and are retained for up to 30 days.
6. Cookie Categories Deployed on This Site
| Category | Provider | Purpose | Duration |
|---|---|---|---|
| Necessary | smartimageresizer.com | Theme preferences (Dark/Light mode) in localStorage. | Persistent |
| Consent Management | Google CMP | Records GDPR/US consent choices and TCF string. | 13 months |
| Analytics | Google Analytics (_ga) | Aggregated site metrics and traffic telemetry. | 2 years |
| Marketing / Ads | Google AdSense (__gads) | Ad delivery, frequency capping, fraud prevention. | 13 months |
7. Contact Data Protection Officer & Privacy Inquiries
For privacy questions, data rights requests, or feedback regarding our local processing principles, please reach us directly: