Privacy Policy
In force since 5 September 2026
This copy is not complete. The operator's legal identity and contact address have not been configured on this deployment, so they are not shown rather than shown wrong. Everything below describes what the service actually does with your data.
This page describes what this service actually does with your data. It is written against the code, not copied from a template: every item below corresponds to a field that exists in the database or a request that is really made.
1. What we collect
| Data | Why | Kept |
|---|---|---|
| Your email address | It is your account. It is how you sign in and how we can reach you about the service. | While the account exists |
| A hash of your password | To check your password without storing it. The password itself is never written down anywhere, so we cannot tell you what it is — only reset it. | While the account exists |
| The URLs you audit and the reports produced | They are the product. You need to be able to open a report again and compare it with an earlier one. | While the account exists, or until you delete the audit |
| Domains you have verified as yours | Active checks (crawling, browser rendering, load and injection testing) only run against domains whose ownership you have proved. | While the account exists |
| Your plan, the audits used this month and any extras | To bill correctly and to show you where you stand. | While the account exists; billing records for as long as tax law requires |
| A Stripe customer identifier | To connect your account with your subscription. Card numbers never reach our servers — the payment happens on Stripe's own pages. | While the subscription exists |
| Your IP address, in memory, briefly | Rate limiting. Without it one script can exhaust the service for everyone. | Minutes, in a cache — not in the database |
If you sign in with Google
We ask Google for two things and nothing else: your email address and whether Google has verified it. We do not receive your Google password, your contacts, your files or your calendar, and we cannot act on your Google account.
2. What we do not do
- We do not sell or share your data. Not to advertisers, not to data brokers, not to anyone.
- There are no advertising or tracking cookies, and no third-party analytics script on this site. That is also why you are not being asked to accept cookies: there is nothing to accept.
- We do not build a profile of you and there is no automated decision-making with legal effects.
- We do not read audited sites for any purpose other than producing your report.
3. Cookies
Two, both strictly necessary:
- A session cookie that keeps you signed in. Without it you would be signed out on every page.
- A short-lived sign-in cookie (about ten minutes) used only while you are signing in with Google, to prove that the reply coming back is the answer to the request you started. Without it, someone else could finish the sign-in on your behalf.
4. Who else processes your data
- Stripe — payments and subscriptions. They receive your email and your card details, which they handle directly; we never see the card.
- Google — only if you choose to sign in with Google, and only for that sign-in.
- Our hosting provider — runs the servers and the database and therefore holds the data at rest.
That is the complete list. Nobody else receives your data.
5. Your rights
You can ask us to show you the data we hold, correct it, delete it, give you a copy in a portable format, or object to a particular use. Write to the contact address above and we will act on it. If you are in the EU or the UK you can also complain to your data protection authority; in Australia, to the Office of the Australian Information Commissioner (OAIC).
Deleting your account deletes your audits and reports with it.
6. How it is protected
- Everything travels over HTTPS.
- Passwords are stored hashed, never in the clear.
- The process that opens a browser on audited pages runs without the service's credentials in its environment, so a flaw in the browser cannot reach them.
- The audit engine refuses to fetch anything that resolves to a private or internal address, so it cannot be pointed at our own infrastructure — or anyone's.
7. Changes
If this policy changes in a way that affects you, the date at the top changes and we tell you before it takes effect.