Privacy Policy

Updated: February 26, 2023

XSSeeker LLC ("XSSeeker", "we", "our", "us") is a limited liability corporation located in the United States of America that operates the XSSeeker website at xsseeker.com (https://www.xsseeker.com) and associated websites and applications (collectively our “Services”). This XSSeeker Privacy Policy (our “Privacy Policy”) explains how we collect, use, process, and disclose personal information when you use our Services.

Our Services may contain links to third-party websites, applications, and services. Any information collected by a third party is governed by their own privacy policy.


ACKNOWLEDGMENT OF PRIVACY POLICY

By using our Services you are agreeing to the terms of our Privacy Policy. If you do not agree with our Privacy Policy do not use our Services.


CHANGES TO THIS PRIVACY POLICY

We update our Privacy Policy when our privacy practices change. When we update our Privacy Policy the updated date will change on this page.


MINORS

We do not knowingly collect the personal information of minors. If this happens the information is deleted immediately.


CONTACT US

Any questions about this privacy policy or your personal information can be sent to [email protected].


COOKIES

We use cookies to manage access to our Services. We don't use cookies for any other purpose.


INFORMATION WE COLLECT AND USE

We collect data through the following methods:

Contact Data
You provide this information when you use any of the contact forms (e.g. contact, abuse, advertise) on our Services. This data includes:
* name
* contact details such as email address, phone number, mailing address, company
* other personal data you include as part of your message

We use this data to respond to your contact request. We may ask for additional information in order to appropriately handle your contact request.

We retain this data for 7 years.

Account Data
You provide this information when you request an account or update your account on our Services. This data includes:
* name
* username, handle, referrer
* contact details such as email address, phone number, mailing address
* citizenship and country of residence
* payment information (Venmo, Paypal)
* PGP public key
* other personal data we request in order to manage your account

We use this data so you can request an account, login to, use, and pay for our Services.

We retain this data for 7 years.

Probe Data
By using our Services to test a third party's websites, applications or services you agree to be bound by our Terms of Use. As part of the Terms of Use you have acknowledged you have the consent of the third party to use our Services to identify vulnerabilities in their websites, applications or services. You have further agreed to use an appropriate configuration of our Services in line with the contract between you and the third party. The probe data collected by our Services are configurable by you.

Data collected by our probes can include:
* metadata (URL, cookies, referer, user agent, time, origin, local storage, IP address)
* document object model (DOM)
* screenshot
* pages

All of the probe data can be encrypted based on configuration settings making the probe data only viewable to you. We use this data to present it to you in our Services. We do not view, modify, or delete any probe data except when bound by legal demands.

We retain probe metdata for 90 days and then it is automatically deleted. We retain all other probe data up to 30 days. You can permanently delete all probe data whenever you want.

Log Data
We collect information when you visit our Services. This data includes:
* your location
* Internet Protocol (IP) address
* access times
* web log information
* other information sent by your web browser

We use this information to monitor the health and security of our Services.

We retain this data for 7 years.


HOW WE DISCLOSE YOUR INFORMATION

We will disclose your personal information as follows:
* When required by law or valid government order.
* When investigating a violation of our Terms of Use.
* To protect the health and safety of our Services and other users of our Services.
* To investigate fraud, security or technical issues with our Services.
* When you direct us to.


WHERE WE STORE YOUR PERSONAL INFORMATION

Our Services and data are located in the United States. Any information that we collect from you will be transferred and stored in the United States. We will take all reasonable steps to make certain your information is handled securely and in accordance with this Privacy Policy.


RETENTION

We use industry standards to safeguard your information in transit and at rest. These standards include, but aren't limited to encryption, automatic data deletion, and other security measures.

We retain your information only as long as we need it to comply with legal obligations or as otherwise outlined in this Privacy Policy.


YOUR RIGHTS

You may have rights under relevant laws. Those rights may include:

* Request access to your data
* Correct inaccurate data
* Delete your data
* Restrict use of your data
* Opt out of selling your data
* Object to processing your data

These rights may be restricted when we are required by law to retain your data.


CPRA

In the last 12 months for business purposes we collected and disclosed the following categories of personal information about consumers:

* Identifiers such as name, user name, mailing address, IP address, and email address
* Information such as payment methods
* Professional or employment-related information

We do not sell or share your personal information for money.