1. Introduction
At SecuredSite, we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website security monitoring service.
Our commitment: We only collect data you explicitly provide or request us to analyze. We do not sell your data or use it for purposes other than providing our service.
2. Information We Collect
2.1 Information You Provide
- Account Information: When you create an account, we collect your name, email address, and authentication credentials.
- Domain Information: Domain names you submit for scanning and monitoring.
- Contact Information: Information you provide when contacting us through our contact form.
- Payment Information: If you upgrade to Pro tier, payment processing is handled by third-party payment processors. We do not store full credit card information.
2.2 Automatically Collected Information
- Scan Results: Results from security scans you request, including SSL/TLS certificates, HTTP headers, DNS records, and publicly accessible content.
- Usage Data: Information about how you interact with our Service (pages visited, features used, scan frequency).
- Technical Data: IP address, browser type, device information, and operating system (collected via cookies and server logs).
2.3 Third-Party Website Data
When you scan a domain, we collect publicly accessible information from that website. We only access information that is available to any regular internet user and do not attempt to bypass security measures or access protected content.
3. How We Use Your Information
We use the information we collect to:
- Provide Our Service: Perform security scans, monitor domains, and deliver scan results to you.
- Maintain and Improve: Optimize service performance, fix bugs, and develop new features.
- Communicate: Send you service updates, security alerts, and respond to your inquiries.
- Security: Detect and prevent fraud, abuse, and security incidents.
- Compliance: Comply with legal obligations and enforce our Terms of Service.
4. Data Storage and Retention
What we store:
- User account information (retained while your account is active)
- Scan history for domains you monitor (retention based on your tier: 30 days for Free, unlimited for Pro)
- Technical logs for security and debugging (retained for 90 days)
What we don't store:
- We do not maintain logs of websites you visit outside our Service
- We do not track your browsing behavior across other websites
- We do not create shadow profiles or collect data without your knowledge
5. Data Sharing and Disclosure
We do NOT sell, trade, or rent your personal information to third parties. We may share information only in these limited circumstances:
- Service Providers: Third-party vendors who help us operate our Service (hosting, email, payment processing) under strict confidentiality agreements.
- Legal Requirements: When required by law, court order, or government request.
- Business Transfers: In the event of a merger, acquisition, or sale of assets, your information may be transferred (you will be notified).
- With Your Consent: We may share information with your explicit permission.
6. Cookies and Tracking Technologies
We use cookies and similar technologies to:
- Essential Cookies: Required for authentication and service functionality (cannot be disabled).
- Preference Cookies: Remember your settings and preferences (e.g., theme selection).
- Analytics Cookies: Help us understand how users interact with our Service to improve it.
You can control cookie preferences through your browser settings. See our Cookie Policy for more details.
7. Data Security
We implement industry-standard security measures to protect your information:
- HTTPS encryption for all data in transit
- Secure authentication and session management
- Regular security audits and updates
- Access controls and employee training
- Encrypted database storage
However, no method of transmission over the internet is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
8. Your Rights and Choices
You have the right to:
- Access: Request a copy of the personal data we hold about you.
- Correction: Request correction of inaccurate or incomplete data.
- Deletion: Request deletion of your personal data (subject to legal retention requirements).
- Export: Request a machine-readable copy of your data.
- Object: Object to processing of your data for certain purposes.
- Withdraw Consent: Withdraw consent for data processing where consent was the basis.
To exercise these rights, contact us at daniel@securedsite.org.
9. International Data Transfers
Our service is operated from Romania. If you access our Service from outside Romania, your information may be transferred to and processed in Romania. By using our Service, you consent to this transfer and processing.
10. Children's Privacy
Our Service is not intended for individuals under 18 years of age. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.
11. Third-Party Links
Our Service may contain links to third-party websites. We are not responsible for the privacy practices of these external sites. We encourage you to review their privacy policies.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by:
- Updating the "Last updated" date at the top of this page
- Sending an email notification (for material changes)
- Displaying a prominent notice on our Service
13. Contact Us
If you have questions or concerns about this Privacy Policy or our data practices, please contact us:
14. GDPR Compliance
For users in the European Union, we comply with the General Data Protection Regulation (GDPR):
- We process data lawfully, fairly, and transparently
- We collect data only for specified, legitimate purposes
- We limit data collection to what is necessary
- We maintain data accuracy and allow corrections
- We retain data only as long as necessary
- We implement appropriate security measures