Pinchana
PrivacyTerms

Legal · Privacy

Privacy, without surprises.

How Pinchana processes requests, protects the web interface, and stores the few preferences needed to make the app work.

Effective July 15, 2026

01

Introduction

Welcome to Pinchana. We respect your privacy and are committed to protecting any personal data processed through our website.

02

Data processing and storage

Pinchana operates as a direct stream downloader utility. We do not build a user media library. Private-download files exist only for the job lifetime and are deleted after expiry.

Completed YouTube files are handed to the browser's own download manager instead of being assembled in page memory. The private download URL remains same-origin, requires the HttpOnly Pinchana session on every full or resumed request, and is not shared with third parties. The resulting file and download-history entry are stored by the browser or device under its own settings.

Submitted URLs and technical request details may appear in short-lived operational logs used for security, abuse prevention, and troubleshooting.

For a private download, the browser encrypts a selected cookie profile directly to one assigned ephemeral worker. The Next.js application, gateway, Redis queue, logs, and persistent server storage receive ciphertext only. The selected worker briefly receives plaintext because yt-dlp must use it; its cookie directory is RAM-backed and the worker is destroyed after the job.

If the deployment operator configures Sentry, Pinchana may send sanitized operational error reports. They exclude submitted URLs, filenames, job IDs, request bodies, cookies, Cookie Vault data, and identity. Browser performance measurements are sent only after you opt in.

03

Turnstile security

We use Cloudflare Turnstile to protect our API endpoints from automated spam and bot abuse. Cloudflare Turnstile collects telemetry, device parameters, and browser details to perform verification checks.

For more information, refer to the Cloudflare Turnstile Privacy Policy.

04

Cookies and local storage

We use storage that is necessary for security and local preferences, plus a local record of your optional anonymous analytics choice.

pinchana_web_session
An HttpOnly, SameSite=Strict session cookie containing a signed verification credential. It authorizes web downloads and becomes invalid when the verification session expires.
pinchana_instance
An HttpOnly, SameSite=Strict cookie containing the project-signed certificate for a custom API origin selected in Settings. It expires with that certificate and is removed when the default API is restored.
pinchana_locale
An HttpOnly, SameSite=Lax cookie storing the interface language selected in Settings. It expires after one year and is also used to keep translated server-rendered pages consistent.
cf_clearance
Cloudflare may set this strictly necessary security cookie only when Turnstile pre-clearance or a Cloudflare Challenge is enabled. It records that the browser passed a security check and expires according to the configured challenge-passage period.
pinchana-settings
Local browser storage for Save immediately, ZIP multiple files, background paws, reduced motion, and the selected download mode.
pinchana-privacy-preferences
Versioned local browser storage recording your anonymous analytics choice and when the privacy notice was acknowledged.
pinchana-cookie-vault
A versioned IndexedDB database containing one AES-256-GCM encrypted payload. Profile names, domains, and cookie values are encrypted. Only the salt, calibrated PBKDF2 iteration count, cipher version, IV, and ciphertext are stored unencrypted.

We do not use advertising, marketing, or cross-site tracking cookies. Anonymous browser performance analytics is off until you enable it and can be disabled in General Settings. Sanitized operational error reports may still be sent when the host configures monitoring.

The vault key remains only in browser memory and the vault locks after a browser restart. Pinchana cannot recover a forgotten passphrase. Erasing the vault permanently deletes its encrypted local record; there is no server backup, account synchronization, or recovery key.

This design does not protect cookies from malicious scripts running in the page, a malicious browser extension, a compromised device, or a malicious API instance operator. Import only user-exported Netscape cookies.txt files and use a trusted Pinchana instance.

05

External platforms

This service interacts server-side with third-party platforms such as Instagram, TikTok, and YouTube. Pinchana does not embed their login widgets or scripts, so using the downloader does not itself let those platforms set cookies in your browser.

Following an external link is subject to that platform's own privacy and cookie policies.

06

Fonts

Space Grotesk for English and Manrope for Ukrainian are packaged with Pinchana and served from the same origin as this website. Your browser does not contact Google Fonts or another font CDN when loading Pinchana, so those providers receive no font-loading request through this integration.

07

Icons

Font Awesome icons are packaged and served locally with this website. The browser does not contact a Font Awesome CDN, and Font Awesome does not set cookies through this integration.

Pinchana · Privacy PolicyReturn to the downloader