Privacy Policy
TraceScope privacy policy for browser fingerprint checks and evidence reports.
1. Scope and principles
This policy applies to TraceScope, its browser-checking tools, report exports and related APIs. We follow lawfulness, fairness, necessity, purpose limitation, data minimisation and transparency.
TraceScope is a technical diagnostic service. It does not aim to identify a real-world person by default, and its conclusions are not absolute facts.
2. Information processed
Browser-local data may include User-Agent, Client Hints, language, timezone, screen, hardware concurrency, memory, permission state, cookie support, Canvas, WebGL, WebGPU, Audio, fonts, media capabilities, WebDriver and cross-context consistency.
Server proof may include public IP, time, request headers, ISP, ASN, approximate location, TLS/HTTP capabilities and available proxy, VPN, Tor, hosting or risk-database signals. Special probes may use WebRTC/STUN and DNS. Sensitive permissions are not requested by default.
To improve probe accuracy and identify anomalous environments, the site automatically stores a bounded, sanitised diagnostic sample containing browser-exposed software and hardware characteristics, findings, a pseudonymous browser-instance identifier, and server-observed public IP and network proof. These signals cannot reliably identify a physical computer or real-world person.
3. Purposes and legal bases
We process data to show exposure and consistency findings, detect network leaks and automation signals, generate reports you request, secure APIs, rate-limit abuse and diagnose faults.
Applicable bases may include performing the diagnostic you requested, legitimate security interests, consent where required and other bases permitted by law.
4. Storage, cookies and retention
Acknowledgement of the notice may be stored in localStorage. Necessary cookies or equivalent storage may support security, language and session state; fingerprint results are not stored merely because you acknowledge the notice.
Local results are processed in the current page session by default. Security logs may temporarily retain IP, time, route, status, User-Agent and security events, then be deleted or anonymised when no longer necessary.
Raw visit samples and exact public IP values are retained for 90 days by default; pseudonymous aggregate profiles are retained for 365 days. The internal console is restricted to authorised operators and is not used for cross-site advertising or sale.
6. Your rights and choices
Subject to applicable law, you may request access, correction, deletion, restriction, objection, portability or withdrawal of consent. You may also clear local storage or stop a check.
Disabling JavaScript, cookies, WebRTC or browser APIs may produce “not run,” “unsupported” or “review” results. Scores are technical guidance and are not used for decisions producing legal or similarly significant effects.
You may stop future diagnostic-sample contribution from this page. Opting out does not disable browser-local checks.
7. Security, children and changes
We use access controls, transport protection, least privilege, logging and data minimisation, but no Internet transmission or browser API is completely secure.
The service is not directed to children. Material updates will be reasonably signposted on this page.
8. Contact and requests
Use the contact channel published on this website to exercise rights, ask about sources, request deletion or complain. We may verify identity or request origin where necessary to protect data.
Effective date: 13 July 2026.
Diagnostic sample settings
Opting out does not affect browser-local checks. Resuming applies only to future, sanitised diagnostic samples.