Policy

Privacy

Effective: July 24, 2026

Checking a domain

Checks are anonymous by default. When you check a domain we record what was checked — the domain, the time, the detected role, and each check's status — as service history. That record contains no account identity, and never your IP address or browser user-agent. The domains you check are queried against public DNS and web infrastructure; the queries identify this service, not you.

If you sign in

Sign-in is optional and adds one thing: checks you run while signed in are linked to your account id so you can see your own history on the account page. The saved record is the same summary as above (domain, time, role, per-check statuses) — never report contents. History is kept until you ask us to delete it: email [email protected] from your account address.

Authentication is handled by Descope, which stores your sign-in identifiers (such as email) under its own privacy policy. Session tokens live in your browser's local storage — we don't set authentication cookies.

Analytics and logs

We use Cloudflare Web Analytics, which is cookieless and does not store per-visitor IP addresses (Cloudflare's policy). Our edge keeps a request log whose raw IP and user-agent live at most 10 days — the practice in the EFF Do Not Track policy — after which only aggregate, IP-free counts remain. Application telemetry (Azure Application Insights) stores IPs masked to 0.0.0.0 with city-level geography only. Cloudflare, as our security provider, may set operational security cookies of its own; we set no advertising or analytics cookies.

Sharing

We don't sell or share your data for advertising. It's processed only by the providers named above (Descope, Cloudflare, Microsoft Azure) to run the service, or if the law requires it.

Contact

Questions or deletion requests: [email protected].