The short version
This site collects as little as technically possible. No advertising, no tracking pixels, no selling of data — a privacy policy on a security blog should be boring, and this one is.
What runs in your browser
The Password Strength Lab, Encoder/Decoder and Hash Generator run entirely on your device. Passwords you test, text you encode and files you hash are never transmitted, stored or logged.
What touches the server
- Link Inspector — the URL you submit is fetched by this site's server to follow its redirects. URLs are processed transiently and not stored.
- IP & DNS Lookup — your browser queries Cloudflare's DNS-over-HTTPS resolver and the ipwho.is API directly; their privacy policies apply to those requests.
- Contact form — your name, email and message are forwarded to the site owner's inbox (via FormSubmit.co) so they can reply. Used for nothing else.
- Push notifications — if you opt in, your browser's push subscription (an anonymous endpoint, no email or name) is stored on our own server solely to deliver new-post alerts. Turn it off any time with the button on the site and the record is deleted. The data is never shared with a third party.
Cookies & analytics
The site sets no cookies. If aggregate, privacy-friendly analytics (such as Plausible or Umami) are enabled in the future, they will collect no personal data and this policy will be updated.
Your rights
Want a contact message deleted, or your push subscription removed? Email cybersearch.in@gmail.com (or just turn notifications off with the button on the site) and it will be handled promptly.