Policies
Privacy Policy
- Effective date:
- October 2, 2026
- Last updated:
- October 2, 2026
This Privacy Policy describes how Glyffio (“Glyffio,” “we,” “us,” or “our”) handles personal data in connection with Glyffio’s websites, Speargly, and other Glyffio services where this policy is referenced.
Speargly is a SaaS product provided by Glyffio — a Visual Experience Platform (asset optimizer / visual delivery control plane). There is no separate Speargly Privacy Policy.
1. Scope and Roles
- 1.1
This policy applies to:
- Glyffio websites (including https://glyffio.com and https://glyffio.com/welcome);
- Speargly (ingest, assets, queue, and explain workflows for media optimization); and
- other Glyffio services that link to this policy.
- 1.2
Glyffio as a business. When you visit our websites, contact us, or interact with us as a prospective or current customer, Glyffio processes personal data for its own business purposes (for example, responding to inquiries, operating public pages, and improving products).
- 1.3
Glyffio on behalf of customers. When customers use Speargly to ingest origin URLs, run optimization jobs, or otherwise process media that may include personal data, Glyffio may process that data on the customer’s behalf to provide Speargly. In that case, the customer’s privacy notices and instructions generally govern that data, and a separate Data Processing Agreement may apply where required.
- 1.4
Rights and obligations may vary by location. This policy does not claim compliance with a specific privacy framework unless Glyffio later publishes that claim after legal review.
2. Information We Collect
Depending on how you interact with Glyffio and Speargly, we may collect:
2.1 Account and contact information
- Name, email address, and organization name, if you provide them when contacting Glyffio or registering for a future account feature
- Support or inquiry correspondence sent to support@glyffio.com or privacy@glyffio.com
- Billing or plan information only if you later purchase a paid plan (Speargly is currently presented as a free web-based tool with no payment processor integrated in product materials)
2.2 Technical and usage information
- Device, browser, and approximate location derived from IP address
- Log data, timestamps, referral URLs, and feature usage on Glyffio and Speargly pages
- Diagnostic data related to ingest, probe, queue, and explain flows
2.3 Customer-provided and service-processed information (Speargly)
- Origin image URLs you submit (including URLs prefilled from the Speargly landing page into Ingest)
- Optional probe metadata (format, bytes, width, height)
- Asset-type tags (for example, hero, product, editorial, avatar, logo, icon, ugc, background, marketing)
- Optimization policy selections and transform settings (format ladders such as AVIF → WebP → JPEG, resize bounds, quality mode, metadata strip, and related options)
- Job/queue status and original-versus-delivered comparison data (format, size, dimensions, savings)
- Media retrieved from origins you designate, processed to provide Speargly — assets otherwise remain at your origin; Speargly is not a permanent media archive
Customer Content may include personal data if the media, URLs, or metadata you submit contain it. Customers decide what to submit.
2.5 Information from third parties
- Media and metadata retrieved from origin servers you designate when you ingest a URL
- Font delivery from Google Fonts when you load Glyffio or Speargly pages that embed those fonts (see Cookies Policy)
- No authentication provider, analytics vendor, or payment processor is identified in current Glyffio/Speargly product materials
3. How We Use Information
We use personal data to:
- provide, operate, and maintain Glyffio websites and Speargly;
- run ingest, probe, optimization, queue, and explain workflows you request;
- communicate about the Services, including support via support@glyffio.com;
- monitor usage, prevent abuse, and secure the Services;
- improve features and user experience (for example, Core Web Vitals–oriented optimization tooling described on Speargly pages);
- administer any future subscriptions if introduced; and
- comply with legal obligations.
4. Service Providers
- 4.1
We may use service providers to host infrastructure, deliver fonts or other static assets, send email, or support operations.
- 4.2
Providers reflected in current public site materials:
- Google Fonts (fonts.googleapis.com / fonts.gstatic.com) — typography on Glyffio and Speargly about pages
- Customer-designated media origins — third-party hosts of images you choose to ingest (not Glyffio subprocessors; you control which origins you point to)
- 4.3
No other subprocessors (hosting, analytics, or payments) are named in current Glyffio/Speargly materials. When additional vendors are engaged, Glyffio will update this section or publish a subprocessor list.
5. Data Retention
- 5.1
We retain personal data as long as needed for the purposes described in this policy, including providing the Services, responding to support requests, and meeting legal requirements.
- 5.2
Speargly-specific retention consistent with product design:
- Origin media — remains at your origin; Speargly is not a permanent archive
- Asset inventory / job state — treated as a transient working set for the optimize workflow (Ingest → Assets → Queue → Explain), not long-term DAM storage
- Browser session data — `speargly_ingest_url` in `sessionStorage` lasts for the browser session (or until cleared)
- Account and support records — retained while needed to operate the relationship and for a reasonable period afterward for legitimate business and legal needs
6. Security
- 6.1
We take reasonable administrative, technical, and organizational measures designed to protect personal data.
- 6.2
No method of transmission or storage is completely secure. Current Glyffio/Speargly materials do not claim SOC 2, ISO 27001, HIPAA, PCI DSS, or similar certifications. Speargly product pages describe secure distribution and access-control concepts at a product level for Glyffio’s broader platform positioning; they are not a substitute for a certified security report.
8. International Transfers
- 8.1
If you access Glyffio websites or Speargly from outside the region where systems are operated, your information may be processed in other countries.
- 8.2
Specific hosting regions are not published on https://glyffio.com or Speargly product pages. For current location details, contact privacy@glyffio.com.
9. Privacy Rights
- 9.1
Depending on where you live, you may have rights to access, correct, delete, or export personal data, or to object to or restrict certain processing.
- 9.2
To exercise rights regarding data Glyffio processes for its own purposes, contact privacy@glyffio.com.
- 9.3
If Glyffio processes personal data on a customer’s behalf through Speargly, please contact that customer first. We will assist customers with verified requests as appropriate.
- 9.4
Specific statutory rights and response timelines depend on applicable law and are not enumerated as a compliance claim in this MVP policy. Contact privacy@glyffio.com for assistance.
10. Children’s Privacy
- 10.1
Glyffio’s websites and Speargly are directed to businesses and professionals (startups, SMEs, and teams shipping digital products), not children. We do not knowingly collect personal data from children under 13 (or the higher age required in your jurisdiction). If you believe we have collected such data, contact privacy@glyffio.com.
11. Changes to This Policy
- 11.1
We may update this Privacy Policy from time to time. The “Last updated” date will change when we do. Material changes may be communicated through the Services, https://glyffio.com, or by email when appropriate.
- 11.2
Current version: https://glyffio.com/policies/privacy.
12. Contact Information
- Organization:
- Glyffio
- Website:
- https://glyffio.com
- Welcome / contact:
- https://glyffio.com/welcome
- Privacy contact:
- privacy@glyffio.com
- Support:
- support@glyffio.com
- Registered address / jurisdiction:
- Singapore