Document Comparison Tool
Legal

Privacy Policy

Last updated: March 2026

1. Introduction

Differino ("we", "us", "our") operates the document comparison service at differino.com. This Privacy Policy explains what data we collect, how we use it, and your rights under the General Data Protection Regulation (GDPR) and other applicable data protection laws.

2. Data We Collect

We collect only the data necessary to provide our service:

  • Account data: Email address and password hash (for email sign-up), or profile information provided by Google (for OAuth sign-up). We store your name only if provided by your OAuth provider.
  • Uploaded documents: Files you upload for comparison (PDF, DOCX, TXT). These are stored in our cloud storage to perform comparisons and are subject to retention limits.
  • Comparison results: The diff output generated from your document comparisons.
  • Usage data: Monthly comparison counts per workspace, used to enforce free-tier limits. No behavioral analytics or tracking data is collected.
  • Payment data: When you purchase credits, payment is processed by Stripe. We store your Stripe session ID, pack purchased, and credits granted. We do not store your credit card number or payment details.

3. Anonymous Users

You can try Differino without creating an account. Anonymous sessions use a temporary identifier. Documents uploaded during an anonymous session are automatically deleted when the session ends. Anonymous users are limited to 1 comparison and cannot share or export results.

4. Document Retention

Uploaded documents and comparison results are retained according to your plan:

  • Anonymous users: Deleted after session ends.
  • Free plan: 14 days from upload.
  • Pro plan: 365 days from upload.

You can delete your documents at any time from your dashboard. Deletion removes both the document metadata and the stored files.

5. How We Use Your Data

  • To perform document comparisons and display results.
  • To manage your account, credits, and plan status.
  • To process payments via Stripe.
  • To enforce usage limits and prevent abuse.
  • To verify anonymous sessions via Cloudflare Turnstile (CAPTCHA).

We do not use your data for advertising, profiling, or any purpose unrelated to providing the Differino service.

6. Third-Party Services

We use the following third-party services to operate Differino:

  • Supabase: Database, authentication, and file storage. EU hosting available. Processes your account data and stores your uploaded documents.
  • Stripe: Payment processing. Handles credit card information directly — we never see or store your full payment details. See Stripe's Privacy Policy.
  • Vercel: Web hosting and cookieless analytics. Vercel Analytics collects no personal data and uses no tracking cookies. See Vercel Analytics Privacy.
  • Google: OAuth authentication (optional). If you sign in with Google, we receive your email and profile name from Google. See Google's Privacy Policy.
  • Cloudflare Turnstile: CAPTCHA verification for anonymous sessions only. No tracking cookies are set. See Cloudflare's Privacy Policy.

7. Cookies

Differino does not use advertising or third-party tracking cookies. The only cookies we set are essential session cookies required for authentication (managed by Supabase Auth). Vercel Analytics is fully cookieless. No cookie consent banner is required because we do not use non-essential cookies.

8. Data Security

All data in transit is encrypted using TLS 1.3. Data at rest is encrypted using AES-256. Access to production systems is restricted and audited. We follow the principle of least privilege for all service integrations.

9. Your Rights (GDPR)

If you are in the European Economic Area, you have the following rights:

  • Access: Request a copy of the personal data we hold about you.
  • Rectification: Request correction of inaccurate data.
  • Erasure: Request deletion of your data. You can delete your account and all associated data from your account settings at any time.
  • Data portability: Request your data in a machine-readable format.
  • Restriction: Request that we limit processing of your data.
  • Objection: Object to processing of your data.

To exercise any of these rights, contact us at support@differino.com.

10. Account Deletion

You can delete your account at any time from your account settings page. When you delete your account, we permanently remove your profile, all uploaded documents, comparison results, and associated files from our storage. Purchase records may be retained for legal and accounting purposes.

11. Children

Differino is not intended for use by individuals under the age of 16. We do not knowingly collect personal data from children.

12. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be communicated via email or a notice on the website. Continued use of Differino after changes constitutes acceptance of the updated policy.

13. Contact

For questions or concerns about this Privacy Policy or your data, contact us at support@differino.com.