Legal · Effective August 19, 2026

Privacy Policy

Markovo is designed to keep document handling bounded, visible, and short-lived.

Information we process

We process account details you provide, authentication identifiers from Google or GitHub when you choose social sign-in, billing references, API key metadata, OAuth client registration and consent records, service logs, the files you submit for conversion, and feedback reports you choose to send. If you opt in to checkout recovery reminders, we also process your consent choice, account email, selected product, and Checkout reference for that purpose. For URL to Markdown Beta, we process the one public HTTPS URL you explicitly authorize, its public response, and bounded fetch measurements; the submitted path, query, and fragment are not written to the delivered bundle. A feedback report includes the email address and problem description you enter and may include an optional screenshot. We never store plaintext API keys or anonymous job tokens.

Remote MCP authorization

When you connect a compatible MCP client, Markovo processes the client's registered name, redirect URI, approved scopes, consent record, and short-lived or refresh-token metadata needed to maintain the connection. Markovo shows the requested permissions before approval and issues tokens bound to the Markovo MCP resource. The client does not receive your Markovo password, billing credentials, administrator access, or document contents merely by connecting. You can revoke access through the connected client or ask support to remove a consent.

Files, public pages, and retention

Source files are used to perform the requested conversion and are deleted after processing. An authorized public page is fetched once without your cookies, authorization headers, or browser session; its origin can observe Markovo’s request and network address. Markovo stores only the sanitized page snapshot needed for the same conversion lifecycle. Conversion results expire after 1 hour for anonymous and Free use, 7 days for Plus, and 30 days for Pro. You can delete an owned job earlier from the app. Feedback reports and optional screenshots are kept for up to 90 days so we can investigate the report; you may request earlier deletion. Backups and security logs may persist for a limited operational period.

Why we use data

We use data to authenticate accounts, deliver conversions, prevent abuse, meter Credits, provide support, secure the service, and understand aggregate product reliability. When you separately opt in, we use your email to let Creem send reminders that return you to an unfinished Checkout. Markovo’s first-party product funnel accepts only allowlisted event names and pathname values; it rejects query strings and paths containing personal information.

Website analytics

We use Cloudflare Web Analytics and Google Analytics 4 to understand visits and improve the website. Google Analytics may process the page path and title, time of visit, referrer, browser and device information, language, and approximate region, and may use first-party analytics cookies to distinguish visits. Our Google tag removes the page query string and hash before sending the page location, does not set a Markovo account or user ID, and disables Google Signals and advertising-personalization signals. We do not send filenames, uploaded content, job tokens, email addresses, account details, conversion results, or billing data to Google Analytics.

Service providers

Cloudflare provides edge compute, storage, queues, databases, aggregate web analytics, and Workers AI. When you submit an audio file or a video's audio track, bounded decoded audio chunks may be sent to Cloudflare Workers AI for transcription; Cloudflare states that Workers AI content is not used to train models without consent. Aliyun DirectMail delivers account emails. Google provides website analytics and optional OAuth login, and GitHub provides optional OAuth login. Creem processes live payments on Markovo’s behalf. When you create or complete a payment, Markovo shares only the minimum necessary billing identifiers, subscription and refund events, amounts, currency, and—only when you opt in—your account email and recovery consent metadata with Creem. File contents, converted documents, API keys, and account credentials are not sent to Creem. Each provider processes data under its own terms.

Cookies and security

Markovo uses secure, HTTP-only session cookies required for sign-in. Google Analytics may use separate first-party analytics cookies; these are not used to authenticate you or access your documents. We use access controls, hashed credentials and tokens, encrypted OAuth tokens, HTTPS, and tenant checks. No internet service is risk-free; please avoid submitting documents you are not authorized to process.

Your choices

You may leave the optional checkout reminder box unchecked and still complete a purchase. The choice applies only to that Checkout; you can make a different choice next time. You may also block or clear analytics cookies through your browser, use a content blocker or Google’s Analytics opt-out browser add-on, use the anonymous trial, disconnect social login through the relevant provider, delete conversion jobs, or request access, correction, export, or deletion of account data. Some choices may vary by browser and legal rights vary by location.

Contact

For privacy or data requests, email support@markovo.net. We may update this policy as Markovo adds formats, providers, or paid production service; material changes will be dated here.