Privacy Notice
This notice explains what personal data Dropvi collects when you send or receive files, sign in, pay for a plan, report a transfer or contact us; why we collect it; how long we keep it; and what your rights are.
It covers dropvi.com, branded subdomains such as yourname.dropvi.com, api.dropvi.com and the emails Dropvi sends.
Last updated 22 September 2026.
Key points
- Dropvi is run by Zorinto Ltd, a UK company. You can contact us at info@dropvi.com.
- A transfer’s files are deleted from storage at the first hourly clean-up after the transfer expires. The sender chooses an expiry of 1 to 7 days on the free plan, or up to 30 days on a paid plan.
- The record of a transfer (its title, message, sender details and recipients’ email addresses) is not deleted with the files. Dropvi currently keeps these records indefinitely.
- Files are encrypted in transit and at rest, but not end to end: Dropvi’s systems can read them.
- If you use Reply with files on a download page, Dropvi gives your email address to the person who sent you the transfer.
- Dropvi loads no analytics or advertising scripts and sets no advertising cookies. It does record which of its own links brought a sender to Dropvi, and it does not sell personal data.
Who we are and how to contact us
Dropvi is a file transfer service run by Zorinto Ltd, a private limited company registered at Companies House with company number 15494238. Our registered office is 136 Littlebrook Avenue, Slough, England, SL2 2NE.
Zorinto Ltd is the controller of the personal data described in this notice, which means we decide why and how it is used.
Email info@dropvi.com about anything in this notice, including requests to use your rights.
What we collect and why
The lawful bases below are those in Article 6 of the UK GDPR. Contract means we need the data to provide a service you asked for. Legitimate interests means we need it for a purpose of ours that does not override your rights. Legal obligation means the law requires it.
Transfers you send
What we collect
- The title and message you add, if any.
- When you send by email: the sender name you type and the email addresses of up to 50 recipients.
- Your account email address, when you ask Dropvi to email your recipients or to tell you when the first download starts.
- Your settings: the expiry date, any download limit, and any PIN or password, which is stored only as a hash.
- The number of files, their total size, how many times the transfer has been downloaded, and when it was created, finished uploading and was deleted.
- If you are signed in, which account sent it; on a paid plan with a branded subdomain, the subdomain.
Anyone with the link can see the title, message and sender name. If the transfer has a PIN or password, the title, message and files are shown only after it is entered, but the sender name is shown before.
Why
To store and deliver your files, show them on the download page, send the emails you ask for, and let you see and revoke your transfers.
Lawful basis
Contract: we need this to provide the transfer you asked for.
Recipients of a transfer
What we collect
- Your email address, if a sender enters it.
- Dropvi sends you one email with the download link, the sender’s name (or their email address if they gave no name), the title and message, the number and size of the files and the expiry date. If you reply to the email, your reply goes to the sender’s email address.
- Each recipient gets a separate email, and recipients’ addresses are not shown on the download page. The sender gets a confirmation email that lists every recipient, except for a reply with files (see below).
- If you use Reply with files on the download page, Dropvi emails the sender a link to your files and gives them your email address. See Replies with files.
You do not need an account to download.
Why
To deliver the files a sender chose to send you.
Lawful basis
Legitimate interests: delivering a transfer that the sender asked us to deliver.
Replies with files
What we collect
- A download page offers Reply with files when the transfer was emailed to recipients by a signed-in sender and is not branded. Anyone with the link can reply after confirming their email address with a sign-in code, and, if the transfer has a PIN or password, after unlocking it.
- A reply is stored as a transfer, with the replier’s account email address as its sender address and any sender name they type. Dropvi also stores which transfer it answers and its place among that transfer’s replies: a transfer can take up to 5 replies, and up to 2 from any one account.
- Dropvi looks up the original sender’s email address itself and stores it as the reply’s recipient. Dropvi does not show that address to the person replying: the download page, the reply form and their confirmation email give only the original sender’s name, if they gave one.
- The original sender receives the reply as a transfer email. It shows the replier’s name, or their email address if they gave no name, and replies to it go to the replier’s confirmed email address. Replying therefore shares your email address with the original sender.
Why
To deliver files back to the person who sent you a transfer, and to limit how many replies one transfer can receive.
Lawful basis
Contract with the person replying, who asks us to deliver their files. Legitimate interests for the original sender’s address: delivering replies to a transfer they sent by email.
Files and file details
What we collect
- The files you upload. They can contain personal data about you or about other people.
- For each file: its name, size and type, and its SHA-256 and CRC-32 checksums, which your browser works out while the file uploads. If your browser cannot work them out, the file is stored without them.
Dropvi does not scan files for their content or build any index of what they contain. Recipients can preview some file types in their browser; the preview is read from the stored file.
Why
To store the files until the transfer expires and deliver them to people who have the link.
Lawful basis
Contract with the sender.
Downloads and previews
What we collect
- Each time a file is downloaded or previewed, or a transfer is downloaded as a ZIP file: which transfer and file, the type of event, the time, the size of the file or ZIP file, the country that Cloudflare associates with the connection, your browser’s user agent (up to 512 characters) and a hash of your IP address.
- The hash is made by combining your IP address with a secret key and applying SHA-256, so the address itself is not stored. The same address always gives the same hash, so events from one address can be linked.
- When the first download of a transfer starts, Dropvi emails the sender: always for transfers sent by email, and for link transfers when the sender ticked the option to be told. The email says that a download has started. It does not say who downloaded.
Why
To tell senders that a download has started, investigate misuse, and produce service statistics such as downloads per day and per country.
Lawful basis
Legitimate interests: running, securing and improving the service, and giving senders notice that a download has started.
Sign-in codes, accounts and sessions
What we collect
- Your email address when you ask for a sign-in code, a keyed hash of the six-digit code (not the code itself), when it was sent and used, and how many wrong attempts were made.
- When you confirm your address with a code, Dropvi creates a free account for that address if there is none. The account holds your email address, your plan, and when it was created and last updated.
- When you sign in, a random session token linked to your account, with its start and expiry dates.
You need to sign in to have Dropvi email your recipients or tell you about downloads, to reply with files, to use a paid plan, and to see your transfers in the dashboard. Sharing a link needs no account.
Why
To confirm that you control the email address, provide your account and keep you signed in.
Lawful basis
Contract.
Branded portals (paid plans)
What we collect
- If you set up a branded portal: your subdomain, brand name, headline, accent colour, background image and logo address.
- While your paid plan is active, anyone can see these on your portal and on your branded transfers.
- Your logo loads from the address you enter. If it is hosted on another website, a recipient’s browser requests it from that website, which can see the recipient’s IP address. The background images you can choose from are served by Dropvi.
Why
To show your branding, as part of your plan.
Lawful basis
Contract.
Payments and subscriptions
What we collect
- When you upgrade, Dropvi sends your email address and account ID to Stripe and takes you to a Stripe checkout page. You enter your card details on Stripe’s page; Dropvi never receives them.
- From Stripe we store your Stripe customer and subscription IDs, the price you chose, your subscription status and the end of the current billing period.
- A history of plan changes: the old and new plan, what caused the change, and when.
Why
To take payment, apply your plan, and let you manage billing in Stripe’s customer portal.
Lawful basis
Contract; and legal obligation where tax and accounting law requires us to keep payment records.
Reports of misuse
What we collect
- Anyone can report a transfer from its download page. We store the transfer, the reason, any details you write (up to 1,000 characters), your email address if you give it, a hash of your IP address made in the same way as for downloads, and the date.
- Dropvi emails the report to info@dropvi.com, including your email address and the sender email stored with the transfer. While a report is open, further reports about the same transfer for the same reason are stored without another email.
- If we disable a reported transfer, its files are deleted.
Why
To investigate reports, remove unlawful or harmful transfers, and contact you about your report if you gave an address.
Lawful basis
Legitimate interests: keeping Dropvi safe and dealing with misuse.
Messages to info@dropvi.com
What we collect
- Your email address, your name if you give it, and what you write.
Why
To answer you.
Lawful basis
Legitimate interests; contract where your message is about your account or a transfer.
Request logs, rate limits and error reports
What we collect
- Cloudflare, which hosts Dropvi, receives the IP address of every visitor in order to deliver the service. Our website and API record requests in Cloudflare’s Workers Logs: the time, the web address requested, and other details of the request and response that Cloudflare adds. They also hold messages our API writes. When a request fails unexpectedly, our API logs the method, the path of the web address with transfer and file IDs replaced, and the type of error with its message and stack trace; if a database query failed, the values the query used are cut out of that message. Its other messages can still name a transfer or a file, and, when a stored file cannot be deleted, its file name. Where our API catches a database error itself, its message holds the query and the values it used, such as the country, browser and hashed IP address recorded with a download. A message about an email we could not send can hold the address it was for.
- To slow down misuse, we count recent requests over one-minute periods using Cloudflare’s rate limiting: by IP address (for IPv6, each /64 network), by email address for sign-in, and by account for transfers and replies sent while signed in.
- When error reporting is configured, errors in our API are sent to Sentry. A report holds the type of error, its message and stack trace, the time, the request method and the path of the web address with transfer and file IDs replaced. If a database query failed, the message keeps the query but not the values it used. A report does not hold your IP address, the time zone Cloudflare associates with your connection, a record of what our API did earlier in the same request, or the request’s headers, cookies, query string or body, so a PIN, password, sign-in code or session token is not sent.
Why
To run, secure and fix the service.
Lawful basis
Legitimate interests.
Where visitors come from
What we collect
- Some links in Dropvi’s emails and download pages carry a fixed label, such as ?src=email_recipient or ?src=portal_return, that says where the link was placed. Each label comes from a fixed list and does not identify you or the transfer.
- When you follow one of these links, the label is recorded in Cloudflare’s request logs as part of the web address, and your browser keeps it in session storage for that tab.
- The next transfer you create in that tab stores the label with the transfer record, and the label is then removed from your browser. A reply is stored with the label reply and the transfer it answers, as described under Replies with files.
- Our admin view counts transfers by label.
Why
To see which links bring people to Dropvi and how many transfers they lead to.
Lawful basis
Legitimate interests: understanding which of our links bring people to Dropvi.
Analytics and tools
Dropvi loads no analytics or advertising scripts, and its fonts and scripts are served from Dropvi itself. Our admin view shows totals and recent activity worked out from the data described above, such as the number of accounts, transfers and downloads, downloads by country, and transfers by link label.
The checksum verifier and the bitrate calculator run in your browser. The checksum verifier reads your file on your device and does not upload it.
We also disclose personal data where the law requires us to.
How long we keep it
- Files and file details
- Deleted from storage at the first hourly clean-up after the transfer expires. The sender sets the expiry: from 1 to 7 days on the free plan, or up to 30 days on a paid plan (7 days unless changed). When a download uses up a transfer’s download limit, the transfer’s expiry is brought forward so that the download can finish: to one hour after it starts or, for a ZIP file that would take longer than an hour at 2 MiB per second, to the time it would finish at that speed. A transfer that was already due to expire sooner keeps its expiry. Its files are then deleted in the same way. Each clean-up handles up to 100 transfers, so a backlog can take longer than an hour to clear.
- Revoked and disabled transfers
- Files are deleted straight away when the sender revokes a transfer or we disable it after a report. If the deletion fails, the hourly clean-up tries again.
- Unfinished uploads
- Files from an upload that never finished are deleted by the clean-up once 24 hours, plus one hour for every 5 GiB of the transfer, have passed since it started. Cloudflare removes the parts of any unfinished file upload seven days after the upload began.
- Transfer records
- The title, message, sender name, sender email address, recipients’ email addresses, settings and dates are kept after the files are deleted. Dropvi does not currently delete these records, so they are kept indefinitely.
- Link labels and replies
- The link label stored with a transfer, and the link from a reply to the transfer it answers (including the original sender’s email address as the reply’s recipient), are part of the transfer record and are also kept indefinitely.
- Download and preview records
- Kept indefinitely.
- Sign-in codes
- A code works for 15 minutes, can be used once, and stops working after 5 wrong attempts or when you ask for a new code. The record of the code, with your email address and the keyed hash of the code, is deleted at the first hourly clean-up once 24 hours have passed since the code expired. Records of codes sent before about 18:40 UTC on 18 September 2026 may hold the code itself rather than a hash. Those codes expired long ago, and the clean-up deletes their records within an hour of this change reaching our API.
- Accounts
- Kept until the account is deleted. There is no way to delete an account from the dashboard yet: see Your rights.
- Sessions
- A session lasts 30 days and is deleted when you sign out. A session that expires without you signing out can no longer be used, and its record is deleted at the first hourly clean-up after it expires.
- Plan history and Stripe IDs
- Kept indefinitely with the account. Stripe keeps its own payment records under its own policy.
- Reports of misuse
- Kept indefinitely, including after we have dealt with them. The email copy stays in the info@dropvi.com mailbox until we delete it.
- Messages to info@dropvi.com
- Kept in the mailbox until we delete them.
- Request logs
- Cloudflare keeps our Workers Logs for 3 days.
- Rate limit counts
- One minute.
- Error reports
- Sentry keeps them for up to 90 days.
- Emails we send
- ZeptoMail keeps records of the emails it sends for us. If our account is set to keep email content, ZeptoMail deletes the content 60 days after the email was sent.
Who processes data for us
We use these providers to run Dropvi. They process personal data for us under their terms with us, except where noted.
- Cloudflare, Inc. (United States)
- Hosts the website and API, stores files (R2) and our database (D1), keeps request logs and provides rate limiting.
- Cloudflare runs data centres around the world. Our file storage is not limited to a region, so Cloudflare chooses where files are kept.
- Zoho Corporation, through its ZeptoMail service
- Sends Dropvi’s emails: sign-in codes, transfer emails, download notices and report notices.
- Our ZeptoMail account uses Zoho’s service in India.
- Stripe
- Takes payments and runs the billing portal. For some activities Stripe decides how to use the data itself, as its privacy policy explains.
- Stripe processes data in the United States and other countries.
- Sentry
- Receives error reports from our API, when error reporting is configured.
- Sentry stores error reports in the United States or the European Union, depending on the region of the Sentry account.
- Microsoft (Microsoft 365)
- Hosts the info@dropvi.com mailbox, which receives your messages and report notices.
- The Microsoft 365 organisation that holds this mailbox is registered in India, and Microsoft stores mailbox content in the country where the organisation is registered.
Stripe’s privacy policy is atstripe.com/gb/privacy.
International transfers
Dropvi is provided by a UK company, but the providers above process some personal data in other countries, including the United States and India.
The UK has adequacy regulations for the European Economic Area, and for US organisations certified under the UK Extension to the EU-US Data Privacy Framework. India does not have UK adequacy regulations. A transfer to a country without adequacy regulations needs a safeguard, such as the International Data Transfer Agreement or the International Data Transfer Addendum to the EU standard contractual clauses, both issued by the Information Commissioner’s Office.
Cloudflare’s data processing addendum uses the International Data Transfer Addendum. We are confirming the safeguards for our other providers, including ZeptoMail and Microsoft 365 in India, and will update this notice when we have done so.
What Dropvi stores in your browser
Dropvi uses cookies, local storage and session storage only for the features below. None of them is used for advertising, and only the link label described under Where visitors come from is used to measure how people find Dropvi. Clearing your browser’s site data for Dropvi removes them.
Cookies
dropvi_sessionon dropvi.com- Your sign-in token. Expires after 30 days, and is removed when you sign out.
dropvi_dt_followed by a transfer and file ID on api.dropvi.com- A download ticket that lets an interrupted file download resume without counting as a new download. Expires after one hour.
Local storage
These stay in your browser until you clear them, except where stated.
dropvi_session- Your sign-in token. Removed when you sign out.
dropvi_sender_email- Your email address, saved when you sign in or send by email, to fill in the form next time. It is not removed when you sign out.
dropvi_sender_name- The sender name you last used when sending by email.
dropvi_transfer_mode- Whether you last chose to send by email or by link.
dropvi_anon_transfers- Up to 50 transfers you sent without signing in: each transfer’s ID, deletion key, title, and creation and expiry dates, so that you can revoke them from this browser. An entry is removed when you revoke the transfer, or the next time you open the page after the transfer expires.
dropvi_wallpaper- The background image you chose.
Session storage
Session storage belongs to one browser tab. It is cleared when you close the tab, if it has not been removed before.
dropvi_src- The link label you arrived with (see Where visitors come from), if it is one of Dropvi’s labels. It is sent with the next transfer you create in that tab and then removed.
dropvi_reply- Set when you choose Reply with files: the ID of the transfer you are replying to, its sender’s name, and a download token for that transfer that expires after two hours. It is removed when your reply has finished uploading.
Offline cache
Dropvi installs a service worker that keeps copies of the home page, icons and site files (scripts, styles and images), so the site loads faster and the home page opens without a connection. This cache holds no personal data.
How we protect your data
- Dropvi’s website sends uploads, downloads and sign-in requests to our API over HTTPS, which encrypts them in transit with TLS.
- Cloudflare encrypts stored files and our database at rest with AES-256.
- Files are not end-to-end encrypted. Uploads pass through Dropvi’s API, and Dropvi’s systems read stored files to deliver and preview them. For highly sensitive material, encrypt files yourself before you upload them.
- Anyone with a transfer’s link can open it until it expires. On paid plans you can add a PIN or password and a download limit. PINs and passwords are stored in our database only as hashes, not as entered. New PINs and passwords are hashed with salted PBKDF2 (SHA-256, 50,000 iterations), and 10 wrong attempts lock the transfer for 15 minutes.
- Upload keys and deletion keys are stored only as SHA-256 hashes, and the IP addresses in our download and report records only as keyed hashes. Sign-in codes are stored as keyed hashes, and a code’s record is deleted 24 hours after the code expires.
- Download pages tell search engines not to index or archive them, and api.dropvi.com tells crawlers not to fetch anything from it.
- Only Dropvi’s operator can use the admin view, which shows reports and recent activity.
Your rights
Under the UK GDPR you have the right to:
- Access: ask for a copy of the personal data we hold about you.
- Rectification: ask us to correct data that is wrong or incomplete.
- Erasure: ask us to delete your data.
- Restriction: ask us to limit how we use your data.
- Objection: object to our use of your data where we rely on legitimate interests.
- Portability: ask for data you gave us under a contract in a machine-readable format.
Some rights apply only in certain situations. Dropvi does not make decisions about you based solely on automated processing that have legal or similarly significant effects. Automatic limits, such as rate limits and PIN lockouts, only slow down repeated requests.
How to use your rights
Email info@dropvi.com and tell us which email address or transfer your request is about. We may ask you to confirm the request from that email address. We reply within one month, which the law lets us extend by two further months if requests are complex or numerous. There is no charge unless a request is manifestly unfounded or excessive.
What you can do yourself
A sender can revoke a transfer from the dashboard when signed in, or from the browser it was sent from. This deletes the files straight away; the transfer record is kept as described in How long we keep it. Signing out ends your session.
There is no way to delete an account from the dashboard yet. To ask us to delete your account, emailinfo@dropvi.com from the address on the account.
Complaints
If you are unhappy with how we use your data, please contact us first so that we can try to put it right.
You can also complain to the Information Commissioner’s Office (ICO), the UK data protection regulator, atico.org.uk/make-a-complaintor by calling its helpline on 0303 123 1113.
Children
Dropvi is a service for adults and businesses and is not designed for children. We do not knowingly collect personal data from children. If you think a child has given us personal data, emailinfo@dropvi.com.
Changes to this notice
We update this notice when Dropvi changes how it uses personal data, and change the date at the top of this page.
