Skip to content
Legal

Privacy Policy

Last updated: July 2026

Data We Collect

We collect minimal data: email addresses for newsletter/alert subscribers (with explicit opt-in), server-side access logs (IP address, timestamp, path — retained 30 days for security monitoring), and aggregated, anonymised usage analytics.

Free Tools

All client-side tools (Password Generator, Hash Generator, Base64 Encoder, JWT Decoder, CIDR Calculator) process data exclusively in your browser. No data is transmitted to our servers. API-based tools (DNS, SSL, SPF, DMARC, DKIM, WHOIS, IP Reputation, Port Scanner) send only the domain/IP/host you query to our API, which queries third-party services on your behalf.

Third-Party Services

API tools query: Cloudflare DNS (DoH) for DNS lookups, RDAP services (rdap.org, ARIN, RIPE) for WHOIS, ip-api.com for geolocation, AbuseIPDB (if configured) for abuse scoring, and NIST NVD for CVE data. These services have their own privacy policies.

Cookies

We do not use tracking cookies. No third-party advertising networks. No social media pixels. We may use a strictly necessary session cookie for authenticated features. You can disable cookies without affecting free tools.

Your Rights

Under GDPR and applicable Indian data protection law: right to access your data, right to erasure, right to rectification, right to restrict processing, right to data portability. Email [email protected] to exercise these rights.

Data Retention

Email subscribers: until unsubscription + 30 days. Access logs: 30 days rolling. Aggregated analytics: indefinite (no personal identifiers). We do not sell data to third parties under any circumstances.

Security

Data in transit protected by TLS 1.3. Servers hardened per CIS Benchmarks. Regular penetration testing. Responsible disclosure program at [email protected].

Contact

Data Controller: ENCSE Technologies. Email: [email protected]. We will respond to privacy requests within 30 days.