Back to JSON Formatter Lab

JSON Formatter Lab

Privacy Policy

Last updated: August 21, 2026

Controller and processing boundary

JSON Formatter Lab is the public controller for the canonical production website. Use [email protected] for privacy, legal, analytics consent, error-reporting objection, and data-rights requests.

JSON Formatter Lab uses consented analytics page measurement and scrubbed application-error reporting on the canonical production website. These services must not receive JSON content, editor state, filenames, search terms, diagnostics, or other payload-derived data.

JSON payloads stay in your browser unless you explicitly copy or download them. Formatting, validation, repair suggestions, search, projections, and comparison run in browser code and workers, not in an application backend.

Data categories, purposes, and lawful bases

Payload and editor-session data are used to provide the formatting, validation, repair, projection, search, and comparison actions you request. JSON Formatter Lab does not receive that content as part of normal tool use.

Site-delivery and security data, such as IP address, user agent, request URL, timestamp, response status, and security events, is used to deliver the static site, protect availability, and investigate abuse. The lawful basis is legitimate interests in secure and reliable delivery.

Aggregate page-measurement data is used only to understand general page usage after explicit consent. Scrubbed application-error reporting is used for service security and reliability under legitimate interests, subject to the right to object.

Analytics measurement can include pages viewed, page titles, timestamps, referrers, broad location, browser and device information, and consented client and session identifiers. JSON Formatter Lab sends only the page origin and path, without query strings or fragments, and does not configure custom events from JSON or editor actions.

Contact correspondence is used to answer and follow up on requests. The lawful basis is responding to your request, legitimate interests in handling legal and security issues, and legal obligations where they apply.

Analytics consent

Aggregate page analytics is used only after explicit consent. Accept and Reject are equally available, and rejection does not affect the tool.

No analytics tag, cookie, identifier, or cookieless consent ping is loaded before consent. Advertising signals, advertising personalization, profiling, and cross-service sharing features are disabled in the site tag.

The consent choice stores only accepted or rejected state, this policy version, and a decision timestamp. It expires after six months or when a relevant vendor, purpose, or policy version changes. Expiry leaves analytics off until a new decision.

Analytics user-level and event-level data used for detailed reporting is retained for two months, with reset on new activity disabled. Standard aggregated reports may remain under the analytics provider's service settings. Withdrawing consent stops later analytics collection and deletes analytics cookies and local identifiers where JSON Formatter Lab can control them. Already submitted anonymous prior analytics events cannot reliably be linked back to you for deletion.

Error reporting objection

Application-error reporting is separate from analytics consent and uses legitimate interests for service reliability and security. You can object through [email protected].

Error reporting creates no cookie or persistent user identifier. It uses strict payload scrubbing, sends only approved application metadata, excludes JSON content, editor state, filenames, search terms, diagnostics, attachments, console capture, request bodies, and other payload-derived data, and retains events for 30 days before deletion.

Objecting to error reporting does not affect the tool. Anonymous prior error events remain only until the 30-day retention period because they cannot reliably be linked back to you.

Site delivery and security

A hosting and security provider is used for delivery, caching, TLS, abuse prevention, and security filtering. Request and security records are retained according to the shortest contractually available settings and operational need.

JSON Formatter Lab keeps no separate application access log. Any JSON Formatter Lab-controlled or accessible copy of request or security data is capped at 30 days unless a legal obligation, active security investigation, or dispute requires longer retention.

Cookies and browser storage

JSON Formatter Lab stores Application appearance and Editor theme preferences and the six-month analytics consent choice in browser storage.

Encrypted page-lifetime recovery storage keeps an active editing session recoverable within the same browser page lifecycle without exposing clear payload text in storage metadata. Browser storage is not used to create an account or transmit JSON payloads to analytics or error reporting.

Analytics cookies or identifiers exist only after opt-in consent, are capped at six months from first creation without refreshing expiry on each page load, and are cleaned up on withdrawal where JSON Formatter Lab can control them.

Recipients and transfers

Service recipients are limited to providers used for site delivery and security, analytics after consent, and scrubbed application-error reporting.

Analytics processing is governed by the analytics provider's applicable data-protection and international-transfer terms. The analytics provider's privacy information is available at Analytics provider privacy policy.

Your privacy rights

Depending on where you live, you may have rights of access, correction, erasure, restriction, portability, withdrawal, and objection. You can use [email protected] to make a request.

To withdraw or change analytics consent, use Change analytics preference on this page or clear JSON Formatter Lab site data in your browser; analytics then remains off unless you make a new choice. Use [email protected] to object to error reporting. You may also have the right to complain to a supervisory authority in your country or region.

Contact and rights requests

Use [email protected] for privacy, legal, objection, and data-rights requests. The address is used to answer and follow up on requests, not for marketing.

Routine correspondence is deleted within 90 days after resolution unless a legal obligation, active security investigation, or dispute requires longer retention.

Children under 16

JSON Formatter Lab is a general developer tool and is not directed to children under 16. It does not knowingly collect children's personal data or use child-oriented content, advertising, or profiling.

If children's personal data reaches analytics, error reporting, or contact correspondence, JSON Formatter Lab deletes it when legally and technically possible. Parents and guardians can use [email protected].

Security

JSON Formatter Lab limits production processing to a static site bundle, browser workers, same-origin application assets, a consent-gated analytics tag, no remote fonts or advertising scripts, payload scrubbing for error reporting, and browser controls for analytics consent and error-reporting objection.

No security measure is perfect, so avoid emailing sensitive JSON payloads unless you have independently decided email is appropriate for that data.

Policy changes

JSON Formatter Lab may update this policy as processing, vendors, retention settings, safeguards, or legal requirements change. The Last updated date shows the current version.

A relevant vendor, purpose, or policy-version change expires the stored analytics choice and leaves analytics off until a new decision.