scopeweb.io

Privacy

Plain language. If a sentence here needs a lawyer to read, it is our bug.

What we store

  • Drafts — the HTML you create, and its versions. Served at a preview URL.
  • Domains — the names in your Territory, their verification state, and what we have observed about them (does it resolve, does it serve, when we last looked).
  • Watchlists — names you asked us to keep checking.
  • Registrant profiles — the ICANN-required contact details for registering a domain: name, address, phone, email. Encrypted at rest with AES-GCM. Never written to our audit log — the audit trail records that a profile changed, never what is in it.
  • Scan history — what we observed about a domain and when. This is what the proof meter is computed from.
  • Audit log — which token did what, and when. Fingerprints, not secrets.

What we never do

We do not sell your data. Not to registrars, not to brokers, not to anyone.

We do not vary price by buyer. The same name costs the same to everyone, regardless of budget, history, or how badly you appear to want it. This is enforced in the code: budget context is computed from an already-fixed price and has no path back into pricing.

We do not tip anyone off about what you searched. Your scans are not shared with registrars or resellers.

We do not spend your money. No API scope authorises a purchase, for us or for any connected application.

Third parties we actually talk to

Only these, and only to answer your question:

  • Registry RDAP and WHOIS servers — to check whether a name is registered.
  • Cloudflare DNS (1.1.1.1) — to check whether a name resolves.
  • OpenSRS — our registrar, when you ask for a price or register a name.
  • npm, PyPI and GitHub — for cross-namespace availability, when you ask.

We do not send them anything about you beyond the name being checked.

Retention and deletion

Backups are kept 30 days. Anonymous draft previews expire after 72 hours.

DELETE /account removes it all — drafts, files, domains, tokens, entitlements, registrant profile. An audit stub remains, recording that an account was deleted and when, because a deletion that leaves no trace cannot be proven to have happened.

Connected applications

Applications you connect see only what their scopes allow, and you can revoke any of them at any time. Revoking kills its access and refresh tokens immediately, not eventually.

Contact

ops@scopeweb.io