Privacy Policy
We respect your privacy. Here is exactly what data we collect and why.
This document was last updated on January 1, 2025. Please read it carefully before using the service.
1. Information We Collect
Account data: When you sign up, we collect your email address and name. This is necessary to create and manage your account.
Scan data: The URLs you submit for scanning are stored so you can access your scan history and re-run scans. We do not store the content of scanned pages beyond the violation data.
Payment data: All payments are handled entirely by Stripe. We never see, store, or have access to your credit card number. Your payment information is subject to Stripe's privacy policy.
Usage data: We track basic usage (pages visited, features used) to improve the product. This is anonymous and not tied to any identifying information beyond your account.
Cookies: We use only essential session cookies required for login to work. We do not use tracking cookies, advertising cookies, or analytics cookies from third parties.
2. How We Use Your Information
- To provide and operate the scanning service.
- To send you scan results and monitoring alerts (if enabled).
- To process payments via Stripe.
- To respond to support requests.
- We do NOT sell your data to any third party. Ever.
3. Data Storage & Security
All data is stored in Supabase, hosted on AWS infrastructure that is SOC2 compliant. Passwords are hashed using bcrypt — we cannot see them. Scan URLs are stored with Row-Level Security enabled, meaning you can only access your own data.
4. Your Rights (GDPR & CCPA)
- Right to access: Email us at support@wcagscanner.com and we'll send you all your data within 30 days.
- Right to deletion: Email us and we'll delete your account and all associated data within 7 days.
- Right to correction: Update your profile information anytime in the Settings page.
- Right to portability: Request a CSV export of your scan history.
5. Cookies
We use only essential session cookies — no tracking cookies, no analytics cookies, no third-party advertising cookies.
6. Third-Party Services
- Stripe (payment processing) — see stripe.com/privacy
- Supabase (database hosting) — see supabase.com/privacy
- Vercel (website hosting) — see vercel.com/legal/privacy-policy
7. Children's Privacy
This service is not directed at anyone under 18 years old. We do not knowingly collect data from children.
8. Changes to This Policy
We will email registered users at least 14 days before any material changes to this policy.
9. Contact Us
Email: support@wcagscanner.com
Questions? Email us at support@wcagscanner.com