GipnoArkSystems
Privacy Policy
ArkC3D is designed to keep C3D content local while collecting only the technical information needed to operate the service.
Effective September 6, 2026
1. C3D files and exported CSV data
C3D files are processed locally in your browser. ArkC3D does not upload the file contents, file names, local file paths, extracted marker data, analog data, subject information, or generated CSV contents to the ArkC3D server for viewing or export. GipnoArkSystems does not claim ownership of your source C3D data or exported CSV data.
2. Anonymous file-open metrics
ArkC3D sends limited technical events to a Cloudflare D1 database to understand whether file opening succeeds and where failures occur. These events can include the ArkC3D version, an event timestamp assigned by the server, a random identifier for one file-open attempt, the entry point and input method, processing milestones, fixed failure categories, repair codes, and elapsed time. When a file-open failure occurs, the random attempt identifier may also be shown to you as a Diagnostic ID so that you can include it in a support request.
These metrics do not include file names, file sizes, file contents, extracted C3D data, IP addresses stored by the application, User-Agent values stored by the application, cookies, or persistent user identifiers. ArkC3D does not use Google Analytics or another third-party web analytics tag.
3. CSV Export license verification and usage audit
When you verify or use CSV Export, the License Key is sent to the ArkC3D license API. The API validates that key with Lemon Squeezy and checks that it belongs to an accepted ArkC3D entitlement and license state. The raw License Key is not stored in the CSV Export usage-audit table.
For each successful CSV Export authorization, ArkC3D records the Lemon Squeezy License Key record ID, UTC day, ArkC3D version, a SHA-256 hash of the request User-Agent environment string, an authorization count, and the first and last authorization timestamps for that daily aggregate. ArkC3D does not store the raw User-Agent value in this audit table. It does not add the request IP address, email address, buyer name, C3D file information, or CSV contents to the audit record.
This limited pseudonymous audit is used for license-compliance review, abuse prevention, security, and support. Environment hashes are signals only and are not treated by themselves as proof that a License Key was shared. Audit rows older than the 90-day audit window are deleted during later successful license checks.
A successfully verified License Key is stored in your browser local storage so it can be checked again on a later export. You can remove it by clearing the site data for ArkC3D.
4. Purchase-session data handled by ArkC3D
To securely deliver a License Key immediately after checkout, ArkC3D creates a short-lived purchase session. It stores hashed purchase-intent and browser-verifier values, the accepted Terms version and acceptance timestamp, technical order and webhook state, and, when necessary, an AES-GCM encrypted License Key until it is claimed. Purchase sessions expire after 15 minutes. Encrypted License Key material is deleted when a successful one-time claim completes. If an order is created, the accepted Terms version, acceptance timestamp, and technical order identifiers are retained as a record of the purchase terms after the short-lived session is removed. Order-linked Terms acceptance records are retained for the life of the license and as reasonably necessary afterward to establish the applicable purchase terms and meet legal obligations.
The ArkC3D purchase-session database does not store purchase email addresses, C3D data, CSV data, IP addresses, device fingerprints, or machine IDs.
5. Lemon Squeezy purchase data
Lemon Squeezy acts as the Merchant of Record for CSV Export. Lemon Squeezy processes the buyer information, billing information, payment details, taxes, order records, receipts, and License Key information required to complete and administer the purchase. That processing is governed by Lemon Squeezy's own terms and privacy notices. ArkC3D does not represent that information processed by Lemon Squeezy as data stored by the ArkC3D license API.
6. Cookies and browser storage
ArkC3D uses a short-lived HttpOnly purchase-session cookie during the secure checkout-to-license delivery flow. A verified License Key may be stored in browser local storage. ArkC3D does not set analytics cookies for Google Analytics because Google Analytics is not used.
7. Cloudflare
ArkC3D is hosted using Cloudflare services, including Cloudflare Pages, Pages Functions, and D1. Cloudflare may process network and infrastructure information as part of providing those services under Cloudflare's own terms and privacy policy. ArkC3D does not intentionally add the request IP address or raw User-Agent to its D1 anonymous file-open metrics. The separate CSV Export audit uses only the hashed User-Agent value described above.
8. Contact by email
If you contact GipnoArkSystems by email, the contents of your message, your email address, and related correspondence are processed as necessary to answer the inquiry, provide support, handle a refund request, or satisfy a legal disclosure request. If GipnoArkSystems specifically requests a C3D file or other research data to reproduce a support issue, you must be authorized to provide it. Such support material is kept only as needed for the investigation and is deleted within 30 days after the investigation is completed.
9. Your choices
You can use the free C3D viewing functions without purchasing CSV Export. You can remove a saved License Key by clearing ArkC3D site data in your browser. For a privacy question or request, contact [email protected].
10. Related policies
See the Terms of Use, Refund Policy, and Commercial Transactions Disclosure.