Privacy Policy

Your privacy matters. Learn how Subto.One protects your data and maintains transparency in our privacy practices.

Last Updated: December 7, 2025

1. Introduction

Welcome to Subto.One's Privacy Policy. We are committed to protecting your privacy and being transparent about what information we collect and how we use it. This policy explains our practices regarding data collection, use, and protection when you use our browser fingerprinting and privacy analysis service.

2. Information We Collect

2.1 Browser & Device Information

Our Service collects the following technical information locally in your browser:

  • Browser name, version, and user agent string
  • Operating system and version
  • Device type, model, and screen resolution
  • Installed fonts and language preferences
  • Canvas and WebGL fingerprints
  • Hardware capabilities (CPU cores, memory, GPU)
  • Available sensors (battery, geolocation, motion)
  • Network connection type and quality

2.2 IP Address & Location

We use third-party APIs to detect your IP address and approximate location (country/city level). This information is retrieved from external services and is not stored on our servers.

2.3 Analytics Data

We may collect anonymous usage statistics such as page views, scan completions, and feature usage to improve our Service. This data is aggregated and does not personally identify you.

3. How We Use Your Information

The information we collect is used for the following purposes:

  • Display Analysis Results: All fingerprinting and detection is performed locally to show you your privacy exposure
  • Calculate Privacy Score: Analyze your browser's trackability and generate a privacy score
  • Improve Service: Understand how users interact with our Service to make improvements
  • Educational Purpose: Help users understand browser fingerprinting and privacy concepts

4. Data Storage and Processing

Local Processing: All fingerprinting and analysis is performed entirely in your browser using JavaScript. Your fingerprint data is NOT transmitted to or stored on our servers.

Local Storage: We may use browser local storage to save your preferences (such as theme selection) on your device.

Third-Party APIs: When detecting your IP address, we send requests to third-party IP detection services. These services may have their own privacy policies and data retention practices.

5. Third-Party Services

Our Service uses the following third-party services:

  • IP Detection APIs: ipapi.co, ipify.org, and myip.com for IP and geolocation data
  • CDN Services: Cloudflare for content delivery and performance
  • Font and Icon Libraries: Third-party CDNs for web fonts and icons

These third parties may collect information as per their own privacy policies. We recommend reviewing their policies if you have concerns.

6. Cookies and Tracking

We do not use traditional cookies for tracking. However, we use browser local storage to save your preferences. You can clear this data at any time through your browser settings.

7. Data Retention

Since we process data locally in your browser and do not store fingerprint data on our servers, there is no server-side data retention. Any locally stored preferences remain on your device until you clear them.

8. Data Security

We take reasonable measures to protect the Service from unauthorized access, but no method of transmission over the Internet is 100% secure. Since all processing happens locally in your browser, your data's security largely depends on your device's security.

9. Your Privacy Rights

You have the following rights regarding your data:

  • Access: You can view all collected data directly in the Service's interface
  • Deletion: Clear your browser's local storage to remove saved preferences
  • Opt-Out: Simply stop using the Service to prevent any future data collection
  • Export: Use our "Export Report" feature to download your analysis results

10. Children's Privacy

Our Service is not directed to children under the age of 13. We do not knowingly collect information from children under 13. If you are a parent or guardian and believe your child has used our Service, please contact us.

11. International Data Transfers

Since processing happens in your browser, no international data transfers occur through our Service. However, third-party APIs we use may process data in different jurisdictions.

12. Changes to Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last Updated" date. Continued use of the Service after changes constitutes acceptance of the updated policy.

13. Do Not Track Signals

Some browsers include a "Do Not Track" (DNT) feature. Since our Service performs all analysis locally and doesn't track users across websites, DNT settings do not affect our Service's functionality.

14. Contact Information

If you have questions or concerns about this Privacy Policy or our data practices, please contact us through our website or GitHub repository.

Privacy-First Approach

Subto.One is built with privacy as a core principle. Unlike many fingerprinting services, we process everything locally in your browser and do not build tracking profiles or sell your data. Our goal is to educate users about browser privacy, not to exploit it.