Tools

Privacy Policy

Last updated: September 14, 2026

Most privacy policies use one vague paragraph to cover every situation. This one does not, because TutuDrive is really two things: 37 free tools that run entirely inside your browser, and a cloud drive that stores files on our servers. The privacy rules for the two are completely different, so they are described separately below.

Two sets of rules — first, which one are you using?

Online tools (37)

Your files never leave your device. Merging PDFs, unzipping archives, converting encodings, generating QR codes — all of it is computed in your browser. We cannot receive your file, because it is never sent. You can verify that claim yourself.

Three ways to check this yourself

Cloud drive

Files you choose to upload are stored on our servers — otherwise they would not open on your other devices. Every section below describes the rules for that half.

What we collect

  • Account information

    Your email address or phone number, username, and an encrypted password (we store a one-way hash, never the password itself). If you sign in with Tutu ID, we only receive your Tutu account identifier — never the password you use there.

  • Files you upload to the drive

    The files themselves, plus metadata such as name, size, type and modification time. This is used to show you your files and sync them across your devices. Nothing else.

  • Technical logs

    Access times, IP address, browser type and error stack traces. Used for troubleshooting and abuse prevention — not for profiling you.

  • What we do not collect

    Any file you process in the 37 online tools — those are never sent to a server, so there is nothing to collect. The same goes for editor drafts: they live in your browser's IndexedDB, where we cannot read them.

What we never do

  • We do not sell your data to anyone, and we do not hand it to "partners" for marketing.
  • We do not use your files to train AI models.
  • We do not run ads, and there are no advertising trackers on our pages.
  • We do not scan the contents of your files for recommendations, ranking or advertising.

Retention and deletion

Here, deleting means deleting — not flagging a row as removed and keeping the bytes.

  • Deleted files go to Trash first and stay for 30 days by default, so you can restore them at any point during that window.
  • Once the retention period passes, or once you empty the Trash yourself, the database record and the file on disk are removed together.
  • Closing your account deletes every file you own along with your account data.

Where third parties are involved

In exactly three places, and each one requires an action from you — nothing is ever sent while you sit still.

  • Tutu ID sign-in: when you use it, what passes between us and Tutu ID is an account identifier and a sign-in credential.
  • Print orders: only when you choose to send a piece to print do the order and the corresponding image go to TutuPrints.
  • AI high-quality restoration: only when you press "high-quality restore" is that one image sent to TutuPrints for processing.

Your rights

None of these require contacting support — you can do them straight from the interface:

  • Download all of your files at any time; whole folders can be downloaded as a single archive.
  • Delete any file at any time, or close your account outright.
  • Ask us what data is stored under your account.

Cookies and local storage

We use no third-party cookies and no analytics trackers. Your browser holds exactly three things locally: your sign-in token, your chosen interface language, and editor drafts. Clearing the first two means signing in again and the language resetting to the default; drafts stay on your device, where we cannot read them.

Changes and contact

When this page changes in substance, the date at the top changes with it. If you have questions, reach us through in-app feedback or by email.