Privacy Policy
TraceScope privacy policy for browser fingerprint checks and evidence reports.
1. Scope and principles
This policy applies to TraceScope, its browser-checking tools, report exports and related APIs. We follow lawfulness, fairness, necessity, purpose limitation, data minimisation and transparency.
TraceScope is a technical diagnostic service. It does not aim to identify a real-world person by default, and its conclusions are not absolute facts.
2. Information processed
Browser-local data may include User-Agent, Client Hints, language, timezone, screen, hardware concurrency, memory, permission state, cookie support, Canvas, WebGL, WebGPU, Audio, fonts, media capabilities, WebDriver and cross-context consistency.
Server proof may include public IP, time, request headers, ISP, ASN, approximate location, TLS/HTTP capabilities and available proxy, VPN, Tor, hosting or risk-database signals. Special probes may use WebRTC/STUN and DNS. Sensitive permissions are not requested by default.
3. Purposes and legal bases
We process data to show exposure and consistency findings, detect network leaks and automation signals, generate reports you request, secure APIs, rate-limit abuse and diagnose faults.
Applicable bases may include performing the diagnostic you requested, legitimate security interests, consent where required and other bases permitted by law.
4. Storage, cookies and retention
Acknowledgement of the notice may be stored in localStorage. Necessary cookies or equivalent storage may support security, language and session state; fingerprint results are not stored merely because you acknowledge the notice.
Local results are processed in the current page session by default. Security logs may temporarily retain IP, time, route, status, User-Agent and security events, then be deleted or anonymised when no longer necessary.
6. Your rights and choices
Subject to applicable law, you may request access, correction, deletion, restriction, objection, portability or withdrawal of consent. You may also clear local storage or stop a check.
Disabling JavaScript, cookies, WebRTC or browser APIs may produce “not run,” “unsupported” or “review” results. Scores are technical guidance and are not used for decisions producing legal or similarly significant effects.
7. Security, children and changes
We use access controls, transport protection, least privilege, logging and data minimisation, but no Internet transmission or browser API is completely secure.
The service is not directed to children. Material updates will be reasonably signposted on this page.
8. Contact and requests
Use the contact channel published on this website to exercise rights, ask about sources, request deletion or complain. We may verify identity or request origin where necessary to protect data.
Effective date: 13 July 2026.