Privacy Policy
Last updated: September 2026
This Privacy Policy explains what information AustroCyber ("we", "us") collects, how we use it, and who we share it with, across austrociberseguridad.com, austrocyber.com, checkintruder.com, austrocybersecurity.com, and their associated domains.
1. Information we collect
Account information: the email address you sign in with, and, when you create an account, your name, phone number, and company/role type.
Scan data: the domain name(s) or IP address(es) you submit for auditing, the public DNS/TLS/HTTP-header/port information our checks collect about them, and your conversation with the audit chat agent (including the plain-language findings it generates).
Technical information: your IP address (used to enforce per-IP rate limits and to complete anti-abuse checks), and a small number of cookies used to keep you signed in and to remember your language preference. We do not use advertising or cross-site tracking cookies.
Payment information: we do not collect or store your card details. Payments are handled entirely by Paddle.com Market Ltd, our merchant of record — see their own Privacy Policy for how they process payment data.
2. How we use this information
- To create and secure your account, and to send you sign-in links and account-related notifications.
- To run the security checks you request and to generate the plain-language findings and reports you see in the chat and in downloadable/emailed reports.
- To verify that you are authorized to audit a given domain (via the DNS TXT record check) and, for paid features, that you control an email address at that domain.
- To process payments (via Paddle) and provide the paid features you purchase.
- To prevent abuse of the Service, including per-IP and per-account rate limiting.
3. Who we share it with
We share the minimum data necessary with the following processors, each bound by its own data-processing terms:
- Anthropic (Claude API) — processes the content of your scan/chat conversation to generate the plain-language audit findings.
- Mailjet — sends transactional email (sign-in links, verification links, emailed reports) on our behalf.
- Paddle.com Market Ltd — processes payments as merchant of record for paid features.
- Cloudflare — provides bot-protection (Turnstile) on our forms, and DNS/email routing infrastructure for our own domains.
We do not sell your personal information, and we do not share scan results or domain/IP targets with anyone other than you and the processors listed above.
4. Data retention
We retain account and scan data for as long as your account is active, plus a reasonable period afterward for accounting, legal, and abuse-prevention purposes. You can request deletion of your account and associated data at any time — see Section 6.
5. Security
Access to your account does not require a password — we use single-use, time-limited "magic links" sent to your verified email address instead. Production infrastructure is hardened (firewalled, key-only SSH access, automatic security updates) and all traffic to the Site is encrypted in transit (HTTPS).
6. Your rights
Depending on where you live, you may have the right to access, correct, export, or delete your personal information, or to object to certain processing. To exercise any of these rights, contact us through our contact form; we will respond within a reasonable time.
7. Changes to this policy
We may update this Privacy Policy from time to time. We will post the updated version on this page with a new "Last updated" date.
8. Contact
Questions about this policy can be sent through our contact form.