Privacy notice
- Version
- 1.0
- Prepared
- 19 August 2026
- Effective date
- 19 August 2026
This notice describes what this website does with personal data. Every row in the table below was read out of the code that runs the site, or measured against the site as it is served.
1. Controller and contact
The controller is SZEINER s.r.o., IČO 05822882, a limited liability company established in the Czech Republic.
Registered seat and postal address: Zbýšov 90, 683 52 Zbýšov, Czech Republic.
No data protection officer is designated. The controller is not a public authority, its core activities are neither regular and systematic monitoring of people on a large scale nor large scale processing of special categories of data, so the conditions for a designation are not met. Data protection questions go to the address below.
Contact address for data protection questions and requests: [email protected]
2. What this notice covers
This notice covers this website. It does not describe the BetterTranslator desktop application, which is a separate program and is not part of this repository. Section 4 says what can and cannot be stated about it today.
This website publishes public pages. It has no user accounts, no sign-in, no contact form and no payment. The download controls lead to a release published on GitHub, which serves the file itself.
3. What is processed, why, and on what basis
Each row states the purpose, the data, the legal basis under Article 6, the storage period, who receives the data and whether it leaves the European Union.
| Operation | Purpose | Data | Legal basis | Storage period | Recipients | Transfer outside the EU |
|---|---|---|---|---|---|---|
| Serving the pages | Deliver the pages you request. | Your IP address and the ordinary request metadata a browser sends. The application itself writes no per-request log. | Article 6(1)(f), the legitimate interest in operating and securing the site. | Set by Cloudflare and by the hosting provider in their own log configuration. This site keeps no request log of its own. | Cloudflare, which operates the network in front of this site, and the hosting provider that runs the server. Both act as processors. | Possible. Cloudflare is established in the United States. See section 7. |
| Language cookie bt_locale | Remember the interface language you picked in the header. | A language code such as en, cs or de. No identifier. | Article 6(1)(f), the legitimate interest in showing the page in the language you chose. | 12 months, set as Max-Age in the code. | None. Read only by this site. | None. |
| Consent cookie bt_consent | Record your cookie choice and the version of the policy you were shown. | The choice, the category it covers and the policy version number. | Article 6(1)(c), the obligation to be able to demonstrate consent under Article 7(1). | 12 months, set as Max-Age in the code. | None. Read only by this site. | None. |
| Google Analytics | Count visits and see which pages are read. | The identifiers in the _ga, _gid and _gat cookies and the data the Google tag sends with them. | Article 6(1)(a), your consent. Nothing loads until you accept. | The _ga cookie lasts 400 days on the device. Google keeps the event data for 14 months, the retention period set in the property. | Google. | Possible. See section 7. |
There is nothing else. The site carries no advertising, no retargeting, no social media technology, no third party fonts, no embedded video and no fingerprinting. No form exists, so nothing you type is sent anywhere. This site serves no download and counts none: the download controls lead to a release asset hosted by GitHub, so requesting the file discloses your address to GitHub under its own terms, and the thank you page starts that request itself after a short countdown.
4. The desktop application
The application is a separate program that runs on your machine, and this notice does not describe it as a processing operation of this website. Its source is public and was read for what follows. Translation is computed against a model on your own disk, through a runtime the application reaches at 127.0.0.1 and pins there with a constant, so the text you translate does not leave the machine over the network.
Outbound requests happen in one case: when you ask for a model or a runtime component. Those are fetched from Google's user content domain, or from a Hugging Face page or a direct file link that you paste yourself. Each is an ordinary request for the file and carries no identifying header. The source contains no telemetry, no analytics, no crash reporting and no update check. The agent endpoint is off by default and binds 127.0.0.1, and binding a public address is refused unless a token is set.
Each sentence above is drawn from a named file in the application's public source, and those files are cited on the security page.
This is a description of the program, not a statement of processing carried out by this website. The application runs on your machine and the controller receives nothing from it.
5. Analytics and your choice
Google Analytics is off until you accept it. The notice you see on your first visit offers Reject and Accept, and rejecting, closing the notice or ignoring it all have the same result: the analytics script is not loaded and no analytics cookie is stored.
You can change your mind at any time. Cookie settings, in the footer of every page, reopens the notice. Rejecting there deletes the Google Analytics cookies for this site and stops the script from loading on later visits.
6. Recipients and processors
Three parties handle data on the controller’s behalf. Cloudflare operates the network in front of this site, so every request reaches it before it reaches the server. The hosting provider runs that server. Google receives analytics data, and only when you accept analytics. All three act as processors, and no other recipient exists.
Cloudflare terminates the connection, which means your IP address and the request metadata reach it on every visit, whatever you chose about analytics. The responses this site sends also carry Network Error Logging headers, which ask your browser to report failed requests to Cloudflare rather than to this site.
7. Transfers outside the European Union
Two recipients are established in the United States. Cloudflare receives your address on every visit. Google receives analytics data only when you accept analytics, and your browser then sends requests to googletagmanager.com and to google-analytics.com. Rejecting analytics stops the Google requests; it cannot stop Cloudflare, because the page reaches you through it.
Both rely on the EU-US Data Privacy Framework, and both keep the European Commission’s standard contractual clauses as a second basis. Cloudflare states this in its GDPR trust hub, and Google states it in its frameworks page; each is the recipient’s own published statement, and a copy can be obtained from it.
8. How long data are kept
The two cookies this site sets itself expire after 12 months, which is the Max-Age the code writes. This site stores nothing on a server: the application opens no database and writes no file while serving.
Google keeps analytics event data for 14 months, the retention period set in the property. The _ga cookie lasts 400 days on the device.
This site keeps no request log. Cloudflare and the hosting provider keep operational logs under their own configuration and their own retention, which the controller does not set.
9. Security
These measures are implemented in the code that serves this site. Nothing beyond them is claimed.
- A Content Security Policy that allows scripts only from this site and from the Google tag domain, with the one inline snippet pinned by hash. The build refuses to start if that snippet stops matching.
- X-Content-Type-Options set to nosniff, a strict-origin-when-cross-origin referrer policy, form-action and object-src that allow no source, and a locked base-uri.
- Both cookies this site sets carry SameSite=Lax, and the Secure attribute when the page is served over https.
- Fonts, the map data and the two JavaScript libraries are served from this site, so a page load fetches nothing from a third party origin. Your address still reaches Cloudflare, because the page is delivered through its network, and section 3 names the other exception: the thank you page starts the download from GitHub.
- The application serves read-only embedded files. It opens no database and writes no file while serving.
Transport encryption, backups, access control and patching at the network and the hosting layer are operated by Cloudflare and by the hosting provider. They are configured outside this repository and are not claimed here.
10. Your rights
Under the General Data Protection Regulation you have the rights below. They apply to the processing in section 3. Where this site holds no data that identifies you, a request can be answered by saying so.
- Access: confirmation of whether your data are processed, a copy, and the information in this notice.
- Rectification: correction of inaccurate data and completion of incomplete data.
- Erasure: deletion where the conditions in Article 17 are met.
- Restriction: processing limited to storage while a dispute is resolved.
- Portability: the data you provided, in a structured, commonly used, machine-readable format, where the processing rests on consent or a contract and runs by automated means.
- Objection: an objection to processing that rests on legitimate interests, on grounds relating to your situation.
- Withdrawal of consent: withdrawing analytics consent at any time, as easily as it was given, without affecting what was lawful before.
11. Complaint to the supervisory authority
You may complain to a supervisory authority, in particular in the country where you live or work or where you think the infringement happened. The Czech authority is the Office for Personal Data Protection (Úřad pro ochranu osobních údajů). You may also seek a judicial remedy.
12. Whether you have to provide anything
No. This site has no form and no account, so there is nothing you are asked to provide and no consequence for providing nothing. The one choice you are offered is analytics consent, and refusing changes nothing about the site: every page works the same.
13. Automated decision making
There is none. This site makes no decision about you, automated or otherwise, and does no profiling. The code contains no scoring, ranking or personalisation of any kind.
14. Children
This site is not directed at children. It offers no account and collects nothing beyond the cookies in section 3, and it runs no age check.
No age check is applied to the analytics consent. In the Czech Republic a child can consent to an information society service from the age of fifteen, and this site is not directed at children, offers no account and collects nothing beyond the cookies in section 3, so no gate is applied.
15. Changes, version and effective date
This notice carries a version number and an effective date. Both change together whenever the text changes, and a change is published here before it takes effect. This is the first version in force, so it takes effect on the date below.
- Version
- 1.0
- Prepared
- 19 August 2026
- Effective date
- 19 August 2026