Skip to main content

Privacy Policy

Last updated: January 2026

This page describes how TrustDepth ("we", "us") handles information when you use our free website safety checker. This document is maintained by the TrustDepth team to answer common privacy questions about our service and is not a substitute for legal advice.

1. What we collect

Domain queries. When you check a website, we store the queried domain, the resulting safety signals, and the timestamp. We use this to cache results, power the Recently Checked and Trending pages, and improve accuracy. We do not tie a domain query to a personal identifier unless you are signed in and explicitly submit a review.

Technical data. Standard web-server logs (IP address, user-agent, referrer, request path) are retained transiently for abuse prevention and debugging, then discarded on a rolling window.

Account data. If you create an account (when reviews open), we store the email address you use for sign-in via our authentication provider, Supabase. We do not receive or store your password.

Analytics. If the site operator has enabled a privacy-friendly analytics tool (for example Plausible or Google Analytics 4), aggregated, non-identifying usage statistics may be collected. See the "Cookies & tracking" section below.

2. What we do not collect

  • We do not sell personal data.
  • We do not fingerprint you across the web.
  • We do not scrape content from the domains you check — only public metadata (WHOIS, DNS, TLS handshake, HTTP status).

3. Third-party data sources

To generate a safety score we query public data sources including Google Safe Browsing, URLhaus, PhishTank, WHOIS/RDAP registries, and DNS resolvers. Only the domain you queried is transmitted to these sources; no personal information about you is shared with them.

4. Cookies & tracking

TrustDepth itself does not require cookies to browse safety scorecards. If you sign in, an authentication cookie/local-storage token from Supabase is used to keep you logged in. If analytics is enabled by the operator, that tool may set a cookie or use first-party storage; details depend on which tool is configured.

5. Your rights

Depending on your jurisdiction (EU/UK GDPR, California CCPA, others), you may have rights to access, correct, export or delete personal data we hold about you. Contact us at the address in the Contact page to exercise these rights. We respond within 30 days.

6. Data retention

Domain scan results are retained indefinitely to power historical trends and re-scans; they contain no personal data. Account data is retained for the life of the account and deleted on request.

7. Children

TrustDepth is not directed to children under 13 and we do not knowingly collect data from them.

8. Changes

We may update this policy from time to time. Material changes will be surfaced on this page with an updated "last updated" date.

9. Contact

See the Contact page.