Privacy Policy

Last updated: February 18, 2026

1. Information We Collect

Information You Provide

  • URLs: Website addresses you submit for scanning
  • Email: If you opt to receive reports via email
  • Account Information: Email and authentication data if you create an account
  • Payment Information: Processed securely by Stripe; we do not store card details

Information Collected During Scans

  • Publicly accessible HTML, JavaScript, and HTTP headers from URLs you submit
  • This data is analyzed and then discarded after report generation
  • We do NOT access private/authenticated areas of your website
  • We do NOT store the full content of scanned pages long-term

Automatically Collected Information

  • IP address (for rate limiting and security)
  • Browser type and device information
  • Usage analytics (pages visited, features used)

2. How We Use Your Information

  • To perform security scans you request
  • To generate and deliver scan reports
  • To process payments and manage subscriptions
  • To communicate about your account or service updates
  • To improve our service and fix issues
  • To prevent abuse and enforce our Terms of Service

3. Data Retention

  • Scan Reports: Stored for 90 days, then automatically deleted
  • Scanned Content: Processed in memory and NOT stored permanently
  • Account Data: Retained while your account is active
  • Payment Records: Retained as required by law for financial records

4. Data Sharing

We do NOT sell your data. We share information only with:

  • Service Providers:
    • Supabase (database hosting)
    • Anthropic (AI analysis - processes scan data)
    • Stripe (payment processing)
    • Resend (email delivery)
    • Vercel (website hosting)
  • Legal Requirements: When required by law or to protect our rights

5. Data Security

We implement security measures including:

  • HTTPS encryption for all data transmission
  • Secure authentication and session management
  • Rate limiting to prevent abuse
  • Regular security reviews

6. Your Rights

You have the right to:

  • Access: Request a copy of your data
  • Correction: Update inaccurate information
  • Deletion: Request deletion of your account and data
  • Export: Receive your data in a portable format

To exercise these rights, contact us at the email address provided on our website.

7. Cookies

We use essential cookies for:

  • Authentication and session management
  • CSRF protection
  • Remembering your preferences

We do not use tracking cookies for advertising purposes.

8. Third-Party Links

Our service may contain links to third-party websites. We are not responsible for the privacy practices of these external sites.

9. Children's Privacy

Our service is not intended for users under 18 years of age. We do not knowingly collect information from children.

10. International Data Transfers

Your data may be processed in countries outside your own. We ensure appropriate safeguards are in place for such transfers.

11. Changes to This Policy

We may update this Privacy Policy periodically. We will notify you of significant changes via email or through our service.

12. Contact Us

For privacy-related questions or concerns, please contact us at the email address provided on our website.


See also: Terms of Service