What we process

EasyBin temporarily stores encrypted ciphertext. All content metadata (file type, name, size) is encrypted client-side. The server stores only the ciphertext, PIN record, expiry timestamp, and a one-way hash of the verification token — never cleartext content or decryption keys. We do not require accounts and we do not sell personal data.

Data minimization and retention

Payloads are encrypted in your browser and deleted after retrieval or expiry. Operational metadata is kept only as long as required for abuse prevention, reliability, and deletion workflows.

Cookies and tracking

We do not use tracking cookies by default. Only essential functionality is used to run the service safely.

Legal bases and abuse prevention

We process limited request metadata to prevent abuse and protect service availability under legitimate interests. Abuse controls include rate limiting (per-PIN and global per-IP), throttling, and temporary blocks.

Regional rights and frameworks

This policy is designed to support GDPR and UK GDPR principles, CCPA/CPRA rights, and PDPA-style requirements for data minimization, transparency, and retention limits.

Your choices

Deletion is automatic after retrieval or expiry. For questions or requests, contact support@easybin.xyz.