Terms & Privacy

Plain-English summary. The full legal text lives next to it for the rare case it's needed.

Acceptable use

  1. You may only submit URLs you own, manage, or have written permission to scan. Scans run from this server's public IP — the operator of the target site can see we visited.
  2. SevinShield respects robots.txt on the Free tier. Paying tiers may disable that for their own properties.
  3. No reverse-engineering, no scraping our results to resell, no using SevinShield against active legal investigations or attack surfaces you do not own.

Data we store

  1. For every scan: URL, timestamp, screenshot, HAR file (network log), detected findings.
  2. For your account: email, username, IP and user-agent of last login.
  3. HAR files are deleted after 30 days on Free, 90 days on Pro, 365 on Agency. Screenshots are kept for the same window.
  4. We never sell or share your scan data. Aggregated, anonymised threat intelligence (e.g. "this domain is flagged") may appear in the global blocklist — without your identity.

Threat-intel attribution

We re-distribute selected feeds under their licences. With gratitude to: abuse.ch URLhaus, OpenPhish, PhishTank, Google Safe Browsing, Steven Black's hosts, EasyList, AdGuard DNS filter.

GDPR / DPA

Operator: SevinHub (sevinhub.com). Data is stored within the EU. EU customers can request a DPA at hello@sevinhub.com.

Contact

Anything legal, privacy or abuse-related: abuse@sevinhub.com.