Skip to content
helpyself

Privacy

What we hold, why, and how to get rid of it.

Last updated

The short version

The tools do their work in your browser. Using one does not upload your file — it is read and processed on your own computer.

A file reaches us only when you choose to send it, and there are three ways to do that: pressing “Save to my files”, pressing “Share a link”, or using our API, which is a server by design. All three are deliberate acts and none of them happens as a side effect of using a tool. Sharing is the one worth pausing over — it puts the file at a public web address that anyone holding the link can open, until it expires or you stop it.

Using the tools tells us nothing about you beyond an anonymous count of how often a page was opened. We hold something about you only if you give it to us — by creating an account, or by writing to us from the contact page, which needs an address so we can reply.

There are no advertising cookies and no third-party trackers, so there is no consent banner to click.

Who holds your data

The data controller is the business named below. That means it decides what is collected and why, and it is who to write to about any of it — including the rights further down this page.

HelpySelf is one person's work, so “we” throughout this page means that business and nobody else.

Digital Tomorrow
Hæstvej 34, 8380 Trige
Denmark
hello@helpyself.com
VAT DK27032168

If you create an account

Your email address and password are held by our sign-in service, auth.digitaltomorrow.dk, run by the same people as HelpySelf. It stores your login and nothing else about you.

HelpySelf itself stores: your email address, the nickname you choose, your avatar colour, whether you want to be credited on tool pages, whether you want reply emails, which plan you are on, the dates you joined and were last seen, and — if you subscribe — the name of the tool you used most recently beforehand, so we know which tools are worth building more of.

If you write to us, we store the message, our replies, and a note of which browser and window size you had at the time — captured so the first reply is not always “which browser were you using?”. If you star a tool, we store its name. If a suggestion of yours ships, we store which tool it was and what changed.

Why we are allowed to hold it

GDPR asks us to say not just what we hold but on what basis. There are three, and each covers a different thing.

To do what you asked. Your account, your saved files, your subscription and your messages exist because you asked for them, and we cannot provide them without holding them. This is the contract basis, and it covers most of what is here.

Because you said so. Reply emails, being credited by name on a tool page, and saving a file to your account are each off until you turn them on, and each can be turned off again without losing anything else. This is consent, and withdrawing it is a toggle, not a request.

Because it is reasonable and does not cost you anything. Keeping the service standing up — rate limits, abuse prevention — and counting how often each tool is used so we know which ones to improve. This is legitimate interest, and it is why those counts are built so they cannot be traced to a person: an interest that required identifying you would not be a balanced one.

Files you choose to save

Saving is opt-in and stores only the result — never the file you fed into the tool.

Saved files are held on our file service, cdn.digitaltomorrow.dk, on Cloudflare R2 in the EU. They are private by default: reachable only through a signed link that lasts five minutes and is issued after we have checked the file is yours. The exception is a file you deliberately share, which is covered in the next section.

On the free plan they are deleted 30 days after saving. On Pro they are kept for as long as you subscribe; if you cancel, they stay for another 30 days and are then deleted. You can delete any of them yourself at any time from My saves.

Work you save inside a tool

Some tools can keep what you put into them, so you can come back to it: a run of speed-test readings, a list you compare every month, a draft. This is separate from saved files — a file is what a tool produced, this is what you typed.

It is stored as text in our own database on Cloudflare D1, in the EU, alongside your account. Nothing goes into it unless you save it, or unless a tool you are using records as you go and says on the page that it is doing so — the speed test does this while you are signed in, and keeps nothing at all when you are not.

There is no expiry. Unlike saved files, which are deleted after 30 days on the free plan, saved work is kept until you delete it or delete your account. It is small and it is the thing you came back for, so removing it on a timer would be the wrong promise.

How much you may keep is a number rather than a size: three on the free plan, a hundred on Pro. Reaching the limit never stops you editing what you already have — only starting something new.

You can delete any of it from My saves, it comes out in full in your data export, and it is erased with your account.

Files you choose to share

Sharing a file makes it public. The link is a web address on helpyself.com that anybody holding it can open — no account, no sign-in, no check of who they are. That is the point of it, and it is the one action here that publishes something.

A shared file is a saved file first, so everything in the section above applies: it is stored on cdn.digitaltomorrow.dk, on Cloudflare R2 in the EU. The share itself is a separate record holding the link's token, when it expires, how many times it has been opened, and a password if you set one. One file can have several links, and stopping one leaves the others working.

Every link expires on its own — an hour, a day, a week, or thirty days, whichever you chose. Nothing is permanent: the failure we are avoiding is a link somebody sent once and forgot that keeps serving a file for years. You can stop any of them earlier from My saves, and doing so takes effect immediately.

We count how many times a link has been opened, so that a link being used as though it were a public download service stops answering. We do not record who opened it.

Anyone who receives a link can report it, without opening the file. A reported link stops working straight away and we look at it. Deleting the file, or your account, removes the link with it.

The public API

Every tool can also be called directly — over our API, or through the Model Context Protocol server that lets an AI assistant use them. Both run on our servers, so anything sent that way is processed by us rather than by your browser.

Requests are not logged with their contents and nothing is kept after the response is sent — but it is a server, and the browser-only claim on the tool page does not apply to it. An assistant calling a tool sends it whatever you gave the assistant, so that is worth knowing before handing one a file you would not upload yourself.

Payments

Subscriptions are handled by Stripe. Card details are entered on Stripe's own page and never touch HelpySelf — there is no field anywhere on this site that a card number could be typed into.

We store the identifier Stripe gives us for your customer record, your plan, its status and its renewal date. That is all we can see.

Analytics

We count how often each tool is opened, how often it finishes, and how often it errors, grouped by day, tool, language and country — and, for calls that arrive over the API or through an AI assistant, which of those two it came from and which plan it was on.

These are counts, not visits. No identifier is stored, nothing is joined to an account, and there is no way to work backwards from them to a person.

Like any site, ours is reached over the internet, so our hosting provider sees the IP address a request came from in order to answer it. We do not store IP addresses, do not put them in these counts, and do not use them to identify anyone.

Cookies and local storage

We set no tracking cookies and use no advertising or profiling cookies, so there is no consent banner to click. Your browser's local storage holds your sign-in token, the tools you have starred, and whether you chose light or dark — all readable only by this site, and all cleared when you sign out or delete your account.

Email we send

Sign-up confirmation, password resets and sign-in links, sent when you ask for them.

One digest a day at most, when a reply is waiting for you. That one can be switched off in your account settings, and switching it off does not stop the reply — only the email about it.

If you wrote to us without an account, our reply goes to the address you gave, and replying to it comes back to us — the message is stored with your conversation so the thread stays in one place. Mail is delivered and received by Cloudflare on our behalf.

We do not send marketing email.

How long we keep it

Saved files: 30 days on the free plan, and for as long as your subscription runs on Pro, plus 30 days after it ends.

Your account and its settings: for as long as the account exists. We do not delete accounts for being inactive, and we do not keep them after you delete them.

Messages you send us and our replies: for as long as your account exists, because a conversation you can no longer read is not much of a record. Deleting your account deletes them. A message sent from the contact page without an account is kept while we are dealing with it and for up to a year afterwards, so that a follow-up has something to attach to.

Tool usage counts: kept indefinitely, because they are counts. There is nobody in them to forget.

Your rights, and how to use them

Under GDPR you have the right to see what we hold about you, to have it corrected, to have it deleted, to object to how we use it, to restrict how we use it, and to take it elsewhere in a portable form.

Most of these are buttons rather than requests. Your data is visible in your account, your nickname and settings are editable there, and “Delete my account” does the deletion in full and immediately. For anything the account pages do not cover — a copy of everything in one file, an objection, a correction we have not given you a field for — write to us from the contact page and we will answer within a month.

If you think we have got it wrong, you can complain to your data protection authority. In Denmark that is Datatilsynet (datatilsynet.dk); elsewhere in the EU it is the authority where you live.

Getting your data back, or getting rid of it

Everything we hold about you is visible in your account: your messages, your saved files, your contributions, your plan.

“Delete my account”, on the My account page, erases all of it — the messages, the replies, the saved files and the objects behind them, the favourites, the contributions, and the login itself. It cannot be undone and we cannot recover it afterwards. The tools keep working without an account.

If you want a copy of something, or have a question about any of this, write to us.

My accountContact

Who else is involved

Cloudflare hosts the site, the database and the file storage, in the EU, and delivers our email — both the mail we send and the replies that come back. Stripe processes payments. Our own sign-in, file and mail services run on Cloudflare in the EU.

Each of these processes data on our behalf, under a contract that says what they may do with it and requires them to keep it secure. Stripe is the exception: for payments it is a controller in its own right, because card data never reaches us at all.

↑↓ to move · Enter to open · Esc to close