SAFEPROOF LEGAL
Privacy Policy (SafeProof)
1. Introduction
SafeProof ("we," "us," "our," or "the App") is committed to protecting your privacy. This Privacy Policy explains how we handle the text you submit for scam analysis, what information we collect, and your rights in relation to that data.
2. Information We Collect
A. Text You Submit for Analysis
- When you paste or share a message into SafeProof, that text is sent to our secure server for analysis. It is processed immediately and is not stored, logged, or linked to you in any way.
- The text is forwarded to OpenAI's API solely to produce an analysis result. OpenAI's data usage policies apply to that processing; we do not control their systems.
B. Information Collected Automatically
- Device Information: Device type, operating system version, and app version — used to maintain app compatibility.
- Crash Reports: Anonymous error logs to diagnose and fix bugs. No message content is included in these logs.
C. No Account Required
- SafeProof does not require you to create an account. We do not collect your name, email address, or any personal identifier.
3. How We Use Your Information
- To provide the service: Analyse the message you submit and return a risk score and safe reply suggestion.
- To improve the app: Review anonymous crash reports and usage metrics to fix bugs and improve reliability.
- For security: Detect and prevent abuse of our API endpoints.
- Legal compliance: Meet applicable regulatory and legal obligations.
4. Data Sharing & Disclosure
- OpenAI: The text you submit is sent to OpenAI for analysis. OpenAI's privacy policy governs their handling of that data.
- Legal Requirements: We may disclose information if required by law or to protect the safety of users.
- Business Transfers: If SafeProof is acquired or merged, your information may be transferred as part of that transaction.
We do not sell, rent, or trade your information to third parties for marketing purposes.
5. Data Retention
- Submitted Text: Not stored. Each analysis request is processed in real time and discarded immediately after a response is returned.
- Crash Logs: Retained for up to 90 days in anonymous form, then deleted.
- No personal data is retained beyond the duration of a single analysis session.
6. Data Security
- Encryption in Transit: All communication between the app and our server uses TLS/SSL encryption.
- JWT Authentication: API endpoints are protected by short-lived JSON Web Tokens issued per session.
- Secure Configuration: API keys and secrets are stored server-side in a directory outside the public web root and are never exposed in the app or in transit.
- Access Controls: Only authorised personnel have access to server infrastructure.
7. Your Rights & Choices
Access & Deletion. Because we do not store any personal data linked to you, there is no profile or history to retrieve or delete. If you believe we hold information about you, contact us at info@domcreator.co.uk and we will investigate.
Opt-Out of Analytics. You can limit anonymous usage tracking by adjusting your device's privacy settings.
Stop Using the App. You may stop using SafeProof at any time. Uninstalling the app ends all data transmission.
8. Third-Party Services
SafeProof relies on OpenAI to process analysis requests. We encourage you to review OpenAI's Privacy Policy to understand how they handle data sent through their API.
9. Children's Privacy
SafeProof is not intended for users under 13. We do not knowingly collect information from children under 13. If we become aware that a child has submitted information, we will take immediate steps to address this.
10. International Data Transfers
Analysis requests are processed via servers which may be located outside your country of residence. By using SafeProof you consent to this processing. We take appropriate steps to ensure your data is handled in accordance with this policy wherever it is processed.
11. California Privacy Rights (CCPA)
California residents have the right to:
- Know what personal information is collected — see Section 2 above.
- Know whether personal information is sold or disclosed — we do not sell it.
- Delete personal information — we do not retain personal data beyond a single session.
- Opt-out of the sale of personal information — we do not sell personal information.
To exercise these rights, contact info@domcreator.co.uk with "California Privacy Request" in the subject line.
12. European Privacy Rights (GDPR)
If you are located in the EU or UK, you have rights including:
- Access, rectification, and erasure of personal data.
- Restriction of processing and data portability.
- Right to object and to withdraw consent.
Contact info@domcreator.co.uk with "GDPR Request" in the subject line. We will respond within 30 days.
13. Changes to This Policy
We may update this Privacy Policy periodically. Material changes will be reflected by updating the "Effective Date" above and posting the revised policy on this page and within the app.
14. Contact Us
If you have questions about this Privacy Policy or our privacy practices:
- Email: info@domcreator.co.uk
- Website: domcreator.co.uk
Need the corresponding terms? Read the SafeProof Terms of Service.
General support requests can also be submitted through the Domcreator contact form.