YOUR WORDS ARE PERSONAL

Care, with privacy.

Your message and photo are encrypted in your browser before being stored.

Who can read a card

The complete recipient link contains the key material needed to open a card. Anyone with an unprotected link can read it. Password-protected cards also need the password; send that separately and choose a long, unique phrase. Offline password guessing remains possible.

What we store

We store encrypted card content, a hash of the management key, version information and an expiry time. We do not receive the card password or the reading key in a normal web request. A resized photo is encrypted with the message; the original file is not uploaded. We do not inspect encrypted messages or verify who wrote them.

Expiry and revocation

New cards expire after 7, 30 or 90 days. Access is blocked at expiry; physical database cleanup may happen later. Your management link lets you edit the card or revoke access immediately. Copies in browser history, screenshots, messaging services or backups cannot be remotely deleted. Legacy database-free links remain immutable and cannot be revoked.

Drafts on your device

Drafts are stored only when you choose “Save draft on this device.” They include your message and resized photo in this browser’s local storage, without password protection. Anyone using the same browser profile may access them. Use “Remove draft” to delete them. Passwords and management keys are not saved in drafts.

Hosting and abuse prevention

AWS hosts this service and processes normal connection information. Short-lived hashed IP counters limit card creation. Operational logs have a seven-day retention setting; application code does not log card bodies, passwords or access keys. Infrastructure providers may process technical information for service operation and security.

Gift links

Some gift links are affiliate links. Retailers and affiliate providers may process information or set cookies when you follow those links, under their own policies. Personal card content is not included in gift links. This site does not install advertising pixels or send recipient read receipts.

Anonymous usage counts

We keep daily totals of public page visits, message copies, gift-link clicks, and successful card creation. These totals do not contain messages, names, card IDs, full URLs, or recipient activity. Browser events count at most once per page load; they are not counts of unique people. Totals expire after 30 days. Brief hashed IP counters limit event requests and are separate from the totals.

There are no third-party analytics scripts or advertising cookies. Browser usage events respect Do Not Track, Global Privacy Control, and the preference below. Server totals of successful card creation remain part of operating the service. The preference itself is saved locally on this device.

Contacting us

If you email support@imsorry.ca, your email provider and ours process the message and reply address. Include only what is necessary; do not send passwords, complete private links, or sensitive photos. For privacy questions or a request about a support email, contact us.

Keep your links safe

Do not publicly post personal links. Keep the management link separate from the recipient link. We cannot recover lost keys or passwords. Use another communication channel for information that requires verified identity or guaranteed deletion.