Privacy and advertising measurement

PubFile uses Clerk to manage sign-in and Stripe to process subscriptions. We store account details, publishing settings, API token hashes, published pages, and subscription records to provide the service. Published pages can be read by anyone with their link. Do not publish information you want to keep private.

Product analytics and error reports

We use PostHog's EU Cloud to understand signups, logins, skill downloads, customization requests, publishing, and errors. Our servers send your account ID with account actions so we can investigate bugs. This ID is pseudonymous, not anonymous. Public page views use a new random ID for each request and are not linked to a viewer account.

Events include timestamps, operation names, technical identifiers, content sizes, selected style, response status, and sanitized error locations. They exclude emails, names, IP addresses, API tokens, session credentials, page contents, titles, and customization text. We do not use PostHog cookies, browser storage, session recordings, fingerprinting, or automatic click tracking. PostHog processes this information for us to measure use and help us maintain the service.

Read PostHog's privacy policy for details about the provider.

Signup attribution

We keep the first campaign parameters, advertising click IDs, referring website origin, and landing path in a first-party cookie for up to 90 days. When you sign up, we attach these details to your account to measure where signups come from. We do not store the full referring URL or your IP address. PostHog receives only campaign source, medium, campaign name, and whether a Google click ID is present.

We may import the Google click ID and signup or paid subscription timestamp into Google Ads to measure campaign results, including when the browser tag is blocked. These imports do not include your email, name, or published content.

Optional Google Ads browser measurement

If you accept advertising measurement cookies, Google Ads receives browser and advertising click information and records signups and confirmed Premium purchases with a purchase value, currency, and a random transaction ID. We do not include your email, account ID, API token, or published page contents in these events. We do not enable personalized advertising or enhanced conversions.

Google tags remain blocked until you accept. Rejecting does not affect your access to PubFile. Use Cookie settings at the bottom of the page to change your choice. We remember your choice in your browser; clearing browser storage resets it. Withdrawing consent stops future tracking but does not retract previously sent events.

Google explains its handling of data at Google's business privacy page. You can also manage or delete advertising cookies through your browser settings.

Updated September 14, 2026.