Privacy
whoamifetch runs entirely in your browser. There is no server, no account and no analytics.
- Your photo never leaves your device. An uploaded file is decoded on a canvas in this tab and processed locally. The page cannot upload it anywhere: the site's Content-Security-Policy only allows connections to this site,
api.github.comandavatars.githubusercontent.com. - GitHub prefill calls the public GitHub API from your browser for the username you type, and loads that account's public avatar. Nothing is stored.
- Background removal uses a MediaPipe model served from this site and executed locally via WebAssembly. The MediaPipe runtime attempts anonymous usage pings to
odml.pa.googleapis.com(task type, OS family, latency; never image data); this site's Content-Security-Policy blocks them, so none leave your browser. - Verify it: open your browser's developer tools, network tab, and watch. A few seconds after the page opens it loads the background-removal model from this site; after that, uploading a photo and generating the card produce no requests at all. You can disable the network at that point and the app keeps working.
The generated SVG is your file; it contains only what you typed and the portrait you chose.