SScreenshotMCPScreenshot API + MCP for AI agents
Legal · ScreenshotMCP

Privacy Policy

Effective: 24 August 2026.

This notice explains how ScreenshotMCP, operated under the AgentForge Labs brand, handles personal information when you visit the commercial website, buy a plan, configure the service or submit screenshot/Page Context requests. The controller for our own business processing is the service operator identified in the applicable order or invoice.

1. Information you provide

We may receive account and contact information such as name, work email, organization and support messages; billing and subscription identifiers; service configuration; and URLs, request options or other input you submit for capture.

2. Capture inputs and outputs

To perform a request, the service retrieves the customer-selected URL and may process page HTML, text, images, scripts, network responses and rendered pixels needed to create a screenshot or Page Context result. Generated output may include screenshots, structured context, manifests, ZIP files and error diagnostics. Customers are responsible for ensuring they have lawful authority to submit target URLs and process resulting content.

3. Technical and usage data

We may process IP address, user agent/browser information, timestamps, request identifiers, target host/domain, viewport/options, execution duration, cache status, result/failure status, usage counts and security logs. We use this data to operate, meter, secure, troubleshoot and improve the service and to enforce plan limits.

4. Payments

Checkout may be handled by Dodo Payments or Lemon Squeezy. Full card numbers and card-security codes are processed by the payment provider rather than stored by ScreenshotMCP. We may receive order, customer, plan, tax jurisdiction, transaction status and subscription identifiers for provisioning, accounting, fraud prevention and support.

5. Purposes and legal bases

We process information to perform the service and our contract; authenticate and support customers; meter and bill usage; maintain reliability and security; prevent abuse and fraud; comply with legal obligations; and improve product performance. Depending on the context and jurisdiction, legal bases may include contract, legitimate interests, legal obligations and consent.

6. Sharing

We may share information with infrastructure, storage, observability, security, customer-support and payment providers that help us operate the service; with third-party destinations you explicitly instruct the service to contact; with professional advisers under confidentiality; or with authorities where legally required. Target websites are independently operated third parties and receive normal web requests from the capture infrastructure when you direct us to visit them.

7. Retention and caching

Request metadata, artifacts and cached successful captures are retained according to product settings, plan limits, operational needs and legal obligations. Some requests may use a successful-capture cache to improve performance. Failed or blocked requests may have shorter or no artifact retention. Billing/accounting records and security events may be kept longer when required for legal, fraud-prevention or incident-response purposes. Backups may retain deleted data for a limited rotation period.

8. International transfers

Depending on infrastructure and payment providers, information may be processed in the European Economic Area, United States or other countries. Where required, we use lawful transfer mechanisms such as adequacy decisions, Standard Contractual Clauses or another permitted safeguard.

9. Security

We use safeguards appropriate to the service, including access controls, protected server-side configuration, restrictions for private-network and credential-bearing targets, transport encryption where supported, signed payment webhooks, logging and operational controls. No online service can guarantee absolute security, and customers must secure their API keys, target credentials and destination systems.

10. Your rights

Depending on your location, you may have rights to access, correct, delete, restrict or object to processing, obtain portability, withdraw consent and complain to a data-protection authority. Rights may be limited where retention is legally required or necessary to establish or defend legal claims.

11. Customer-controlled personal data

When a business customer submits URLs or content containing personal data and ScreenshotMCP processes that data solely to provide requested captures/context, the customer ordinarily acts as controller and ScreenshotMCP's Provider acts as processor. The Data Processing Addendum applies to that processing.

12. Children

The commercial service is intended for business and developer use and is not directed to children under 18. If you believe a child has supplied personal information without appropriate authorization, contact us so the matter can be reviewed.

13. Changes and contact

We may update this notice as the service or law changes and will post a revised effective date. Privacy requests can be submitted through the support contact shown in the service, order confirmation or purchase receipt. Do not include API keys or website credentials in a privacy request.