Privacy Policy
Last updated: April 7, 2026
1. Who we are
IsMySiteHacked.com ("we", "us", "our") is a website security scanning service operated by [Company Name]. This policy explains how we handle your data when you use our service.
2. What we collect
We collect the following information:
- URLs you scan — the website addresses you submit for security analysis
- Email address — if you sign in or use our email capture feature
- Account data — name and avatar from Google OAuth if you sign in
- Usage data — pages visited, features used, scan history (via PostHog analytics)
- Error data — application errors and performance data (via Sentry)
3. How we use your data
- To perform security scans on websites you submit
- To generate and store your security reports
- To send you scan results and rescan reminders (if you opt in)
- To improve our service and fix bugs
- To communicate about your account and our service
4. What we scan
We only analyze publicly available information about the websites you submit. Our scans check SSL certificates, HTTP headers, DNS records, open ports, and other publicly accessible data. We do not perform intrusive penetration testing or access any private systems.
5. Third-party services
We use the following third-party services to operate:
- Vercel — hosting and deployment
- Supabase — database and authentication
- PostHog — product analytics
- Sentry — error monitoring
- Google OAuth — sign-in authentication
Each of these services has their own privacy policy governing how they handle data.
6. Cookies
We use essential cookies for authentication and session management. Our analytics provider (PostHog) may set cookies to understand how visitors use our service. You can disable non-essential cookies in your browser settings.
7. Data retention
Scan results are stored indefinitely so you can access your reports later. You can request deletion of your account and associated data by contacting us.
8. Your rights
You have the right to access, correct, or delete your personal data. You can also request a copy of your data or ask us to stop processing it. To exercise these rights, contact us at the address below.
9. Contact
For privacy-related questions or requests, contact us at: [email@company.com]