security

Privacy Policy

We prioritize your anonymity. Our scanner is built with a zero-data-retention architecture.

No Storage

We do not store the email addresses you scan. Once the result is generated, the data is wiped from memory.

No Logging

Search queries are never logged to our servers or any third-party analytics services.

Secure Processing

All scanning logic is processed server-side. No API keys or sensitive endpoints are exposed to the browser.

Data Sources

Our tool uses the public HaveIBeenPwned database list to identify potential breaches. We do not transmit your full email address to their API; instead, we fetch the complete breach list once and perform domain-level matching locally on our server.

Compliance

While we do not store personal data, we aim to follow best practices aligned with GDPR and the Bangladesh Data Protection Act (DPDP). Since no data is retained, there is no "Right to be Forgotten" needed—your data is forgotten the moment the scan ends.

Contact

For questions about this policy, please open an issue on our GitHub repository.