1. Scope and operator
This Privacy Policy applies to Web2UI, a service provided by Lynavo. It covers the website, Web2UI API, Figma plugin, Chrome extension, and related support interactions.
Questions or privacy requests can be sent to support@lynavo.io.
2. Information we process
We process information needed to operate the service. The exact data depends on the features you use.
- Account information, including your name, email address, authentication identifiers, session records, and device authorization records.
- Content you submit for conversion, including URLs, page titles, HTML or ZIP files, DOM and style data, screenshots, images, fonts, render plans, and Chrome capture content from signed-in or interactive pages.
- Service activity, including conversion source, status, timestamps, warning and fallback counts, credit usage, subscription status, and support communications.
- Security and operational data, including IP addresses used for audit events, request identifiers, failure categories, and service health information. We do not intentionally place page bodies, cookies, passwords, device tokens, or private asset contents in application logs.
- Billing metadata supplied by Paddle or PayPal, such as plan, subscription identifier, transaction status, billing interval, and payment event identifiers. Web2UI does not receive or store complete payment-card details.
- Local client state stored on your device by the website, Figma plugin, or Chrome extension, such as session preferences, device-authorization status, and temporary capture or render-plan data needed to finish Copy or Send.
3. Website, Figma plugin, and Chrome extension
The website uses account cookies or equivalent session storage to keep you signed in and to complete device authorization for the plugin and extension.
The Figma plugin talks to the Web2UI API over HTTPS to authenticate your account, submit jobs, list account captures, download render plans, and fetch short-lived signed asset URLs. It does not receive your browser cookies for third-party sites.
The Chrome extension runs only after an explicit capture action you start. Depending on the capture mode, it may read the active tab’s DOM, computed styles, images, fonts, and screenshots; use scripting and temporary debugger-based viewport or media emulation so Full Page and theme captures match the selected layout; write a self-contained result to the clipboard for Copy; and upload capture data to Web2UI when you choose Send to Figma. Host access is requested so you can capture the page you are viewing, including pages outside web2ui.lynavo.io. The extension does not browse the web on its own, and debugger access is not used to monitor your ordinary browsing outside an active capture.
Web2UI’s use of information received from Chrome APIs adheres to the Chrome Web Store User Data Policy, including the Limited Use requirements.
4. How we use information
We use this information to authenticate users, accept and process conversions, deliver Figma-compatible results, enforce account permissions and credits, administer subscriptions, prevent abuse, investigate failures, provide support, and improve reliability.
We do not sell personal information or captured page content. We do not use submitted private page content to train third-party foundation models, and we do not use it to bypass access controls on third-party sites.
5. Content you submit
You must have permission to submit and process the webpages, files, and account-visible content you capture. Chrome captures can include content visible only after you sign in to another service, so review the selected page and capture scope before sending it to Web2UI.
URL conversion does not receive your browser cookies or authorization headers. Chrome capture is initiated by an explicit user action and processes the selected browser state.
7. Retention and deletion
Chrome capture access tokens expire after 72 hours. Expiration prevents claiming the conversion result with that short-lived token; the account may still list capture metadata or an available thumbnail, and backend capture content and related artifacts may not be deleted immediately.
Automated physical deletion and the final production retention executor are still being completed. Until that work is deployed, contact support@lynavo.io to request deletion of capture content or your account. We will verify the request and process it using the controls available at that time.
Job, audit, subscription, payment, and security records may be retained longer when needed for account history, fraud prevention, dispute handling, legal obligations, or service recovery. Limited backup copies can remain until the applicable backup cycle expires.
8. Security
We use access controls, account-bound capture records, short-lived signed asset links, transport encryption, input validation, and service isolation controls. No online service can guarantee absolute security, and you should avoid submitting content you are not authorized to process.
9. Children
Web2UI is directed to adults and professional design or engineering users. It is not intended for children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided personal information, contact support@lynavo.io and we will take appropriate steps to delete it.
10. Your choices and rights
Depending on where you live, you may have rights to access, correct, export, restrict, object to, or request deletion of personal information. You can also cancel an active subscription from the Billing tab, sign out of connected devices, and remove or disable the Chrome extension or Figma plugin on your own devices.
Send requests to support@lynavo.io from the email associated with your account. We may ask for additional verification before acting on a request.
11. Changes and contact
We may update this policy as the product, providers, or legal requirements change. The updated date at the top of this page identifies the current version.
Privacy questions and requests: support@lynavo.io.
