// legal

Privacy Policy

How we collect, use and protect your personal data.

Last updated: May 2026
Sample policy: this template document is provided for reference. Replace with your final, legally-reviewed version before production use.

01. Introduction

SecurityRating.com ("we", "us") respects your privacy. This policy explains what personal data we collect, how we use it, and your rights under GDPR, UK GDPR and the CCPA.

02. Data we collect

Account data (name, email, company, role) when you sign up.

Usage data (pages viewed, features used, IP address) for product analytics.

Scan data (domains you submit, scan results) — never shared without consent.

03. How we use data

To deliver the service, send the reports you request, secure the platform, and (where permitted) send relevant product updates. We do not sell personal data.

04. Sharing & sub-processors

We share data only with sub-processors required to run the service (cloud, email, analytics). A current list is available on request.

05. Retention

We retain account data for the life of the account plus 90 days. Scan reports are retained 24 months unless you delete them earlier.

06. Your rights

You may access, correct, export or delete your data at any time. Email privacy@securityrating.com to exercise any right.

07. Contact

SecurityRating.com, Unit 206, 315 Chiswick High Road, London W4 4HH, United Kingdom. privacy@securityrating.com

Questions about this policy? Contact our legal team →