Terms & Privacy
Plain-English summary. The full legal text lives next to it for the rare case it's needed.
Acceptable use
- You may only submit URLs you own, manage, or have written permission to scan. Scans run from this server's public IP — the operator of the target site can see we visited.
- SevinShield respects
robots.txt on the Free tier. Paying tiers may disable that for their own properties.
- No reverse-engineering, no scraping our results to resell, no using SevinShield against active legal investigations or attack surfaces you do not own.
Data we store
- For every scan: URL, timestamp, screenshot, HAR file (network log), detected findings.
- For your account: email, username, IP and user-agent of last login.
- HAR files are deleted after 30 days on Free, 90 days on Pro, 365 on Agency. Screenshots are kept for the same window.
- We never sell or share your scan data. Aggregated, anonymised threat intelligence (e.g. "this domain is flagged") may appear in the global blocklist — without your identity.
Threat-intel attribution
We re-distribute selected feeds under their licences. With gratitude to: abuse.ch URLhaus, OpenPhish, PhishTank, Google Safe Browsing, Steven Black's hosts, EasyList, AdGuard DNS filter.
GDPR / DPA
Operator: SevinHub (sevinhub.com). Data is stored within the EU. EU customers can request a DPA at hello@sevinhub.com.
Contact
Anything legal, privacy or abuse-related: abuse@sevinhub.com.