Privacy

Minimal data by default.

Effective 26 August 2026.

Tool inputs

Website URLs and domain names are processed transiently to perform the requested public check. They are not intentionally written to an application database. Operational infrastructure may process request metadata for security and reliability.

Secret text and CSP text are analyzed locally in your browser and are not sent to Exposure Audit by the tool.

Payments

Stripe processes checkout, billing details, tax IDs and payment credentials. Exposure Audit receives payment status, the purchased offer and identifiers needed to deliver the digital pack. Do not submit sensitive system data through checkout fields.

Analytics

Cloudflare Web Analytics and Google Analytics 4 are used for aggregate traffic measurement. Google Consent Mode keeps analytics storage, advertising storage, advertising user data and advertising personalization denied. Google Analytics receives measurements without analytics cookies, while advertising signals and personalization remain disabled. No non-essential analytics cookie is stored by this configuration.

Retention and rights

Payment and accounting records are retained as required by applicable law. Infrastructure and analytics data follow provider retention settings. For access, correction or deletion requests, email privacy@exposureaudit.net.

Providers

Cloudflare provides DNS, hosting, security and cookieless analytics. Google provides cookie-free aggregate analytics under denied storage consent. Stripe provides payment processing. Their own terms and privacy notices apply to their services.