Privacy Policy
Last updated: February 18, 2026
1. Information We Collect
Information You Provide
- URLs: Website addresses you submit for scanning
- Email: If you opt to receive reports via email
- Account Information: Email and authentication data if you create an account
- Payment Information: Processed securely by Stripe; we do not store card details
Information Collected During Scans
- Publicly accessible HTML, JavaScript, and HTTP headers from URLs you submit
- This data is analyzed and then discarded after report generation
- We do NOT access private/authenticated areas of your website
- We do NOT store the full content of scanned pages long-term
Automatically Collected Information
- IP address (for rate limiting and security)
- Browser type and device information
- Usage analytics (pages visited, features used)
2. How We Use Your Information
- To perform security scans you request
- To generate and deliver scan reports
- To process payments and manage subscriptions
- To communicate about your account or service updates
- To improve our service and fix issues
- To prevent abuse and enforce our Terms of Service
3. Data Retention
- Scan Reports: Stored for 90 days, then automatically deleted
- Scanned Content: Processed in memory and NOT stored permanently
- Account Data: Retained while your account is active
- Payment Records: Retained as required by law for financial records
4. Data Sharing
We do NOT sell your data. We share information only with:
- Service Providers:
- Supabase (database hosting)
- Anthropic (AI analysis - processes scan data)
- Stripe (payment processing)
- Resend (email delivery)
- Vercel (website hosting)
- Legal Requirements: When required by law or to protect our rights
5. Data Security
We implement security measures including:
- HTTPS encryption for all data transmission
- Secure authentication and session management
- Rate limiting to prevent abuse
- Regular security reviews
6. Your Rights
You have the right to:
- Access: Request a copy of your data
- Correction: Update inaccurate information
- Deletion: Request deletion of your account and data
- Export: Receive your data in a portable format
To exercise these rights, contact us at the email address provided on our website.
7. Cookies
We use essential cookies for:
- Authentication and session management
- CSRF protection
- Remembering your preferences
We do not use tracking cookies for advertising purposes.
8. Third-Party Links
Our service may contain links to third-party websites. We are not responsible for the privacy practices of these external sites.
9. Children's Privacy
Our service is not intended for users under 18 years of age. We do not knowingly collect information from children.
10. International Data Transfers
Your data may be processed in countries outside your own. We ensure appropriate safeguards are in place for such transfers.
11. Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of significant changes via email or through our service.
12. Contact Us
For privacy-related questions or concerns, please contact us at the email address provided on our website.
See also: Terms of Service