Privacy policy
Handout Forge is a free tool that runs in your browser. If you do not sign in, we collect nothing about you at all. An account exists only so that you can keep your documents with us, and this policy says what it stores.
Who is responsible
The controller of your personal data is Grzegorz Marczewski. Write to legal@gralrpg.com about anything in this policy.
If you do not sign in
Nothing is collected. There is no analytics, no advertising, no tracking pixel and no third-party script anywhere on this site. Your drafts are saved in your own browser's storage, on your device, and are never sent anywhere. Images you upload live in the page until you reload it and never become part of a saved document.
Our hosting provider records ordinary request logs, including the IP address the request came from. That is what keeps the site running and lets us see abuse.
If you sign in
An account comes into being the first time you sign in; there is no separate registration step and there are no passwords. From that moment we store:
- the identifier your sign-in provider gives us (Google or Discord), or the email address you typed to receive a code
- your email address, if the provider confirmed to us that it is yours
- the date the account was created and the date you last signed in
- the documents you choose to save to the account, with their titles
We ask your provider for no name at all, and hold none: not the one Google shows on your account, not your Discord nickname. We do not ask for and do not hold a password, a telephone number, a postal address, a date of birth or any payment details. We do not profile you and we make no automated decisions about you.
Why, and on what legal basis
- To run your account and keep the documents you save — art. 6(1)(b) GDPR, performance of the contract the terms describe.
- To send a sign-in code to the address you gave — art. 6(1)(b) GDPR.
- To keep the service available and unabused: request logs, rate limits, quotas — art. 6(1)(f) GDPR, our legitimate interest in a service that works and is not flooded.
Who else sees it
- Cloudflare — serves the site itself.
- Fly.io — runs our API, in Frankfurt.
- MongoDB Atlas — holds the database, in Frankfurt.
- Resend — receives your address in order to deliver a sign-in code, and only if you sign in that way.
- Google and Discord — if you sign in through them. They are separate controllers of what happens on their side, under their own policies.
Your data sits on servers in the European Union. The providers above are companies from outside it whose staff may hold administrative access; where that happens it rests on standard contractual clauses or on an adequacy decision. We sell nothing to anybody and we have no advertising partners.
How long we keep it
Your account and its documents stay until the account is deleted, and we delete an account you have not signed into for two years. A sign-in code and its record are deleted automatically within an hour. Server logs live as long as the hosting provider keeps them.
Your rights
You may ask for access to your data, for a copy of it, for it to be corrected, deleted or restricted, and you may object to processing based on our legitimate interest. Write to legal@gralrpg.com and we will answer within one month.
You may delete the account yourself, from your library, or write to us from the address the account holds. Either way the account goes with everything saved to it, and this cannot be undone. If you think we are handling your data wrongly, you may complain to the President of the Personal Data Protection Office (ul. Stawki 2, 00-193 Warszawa).
Cookies and browser storage
There is no cookie banner here because there is nothing to ask consent for. We use no advertising or analytics cookies. Three things are stored on your device, all of them necessary for the service you asked for:
- browser storage holding your drafts, on your device, until you clear it
- session storage holding your sign-in token, which disappears when you close the tab
- one technical cookie on our API, set only while a sign-in is in progress, which expires after ten minutes
You can clear all of it in your browser's settings at any time. Clearing it also removes the drafts kept in that browser, which exist nowhere else.
Security
Every connection is encrypted. We hold no passwords, because there are none. A sign-in code is stored only as a cryptographic digest, works once and expires after ten minutes. A saved document is readable only by the account that saved it.
Changes
This version is of 22 September 2026. We will say on the site before anything material changes, and the current version is always here. The rules of using the service are in the terms of service.