Privacy Policy
The Privacy Auditor (Privacy Auditor Institute S.A.S. de C.V. with registration number SF2025005022 referred to as ‘we’ and ‘us’) provides cybersecurity consulting services, publish about digital security vulnerabilities and trends to promote transparency, awareness, and data protection, as well as offering related technological services such as training, cybersecurity audits, and any other activity related to information technology and technological innovation.
The Privacy Auditor was founded to combat online privacy and security intrusions people face every day, empowering users with tracker information, personalized consultations, and tools to safeguard their lives.
The Privacy Auditor Service
Subscribers have the ability to use anonimous traffic logging which requires the user to specifically create a custom profile on a logging server that has special configuration to allow query logs. Query logs are kept on completely different servers and databases than the ones that hold user account settings. We self-host our own servers and databases for query logs (based on Open Source software) on our own encrypted infrastructure at Flokinet (from Iceland), a privacy respecting service provider. There is no identifying information in the logs other than the profile ID that’s only known to the user. Query logs do not save IP addresses. Users can delete query logs at any time. Query logs are automatically deleted every 14 days anyways. Our service goes beyond logging: we offer personalized paid consultations (30-minute per month or, 60-minute per month) to block trackers, ads, and malware while ensuring app compatibility. We manage new trackers and app updates as an ongoing process to keep your life secure, all with no installation required. Our Premium Plan also includes 24/7 email and chat support with rapid responses for your privacy needs.
The Privacy Auditor query servers are built on hardware servers leased from Flokinet Iceland, a privacy respecting service provider. All components used in query servers are built using open source software. There are no other providers or cloud services used in our query servers whatsoever. To detect and prevent attacks, abuse, and/or misuse, our network flags hostnames that make a massive number of connections and exceed certain bandwidth thresholds that are way above and beyond any possible normal use and offending server hostnames may be blocked thereafter. It is important to note that this detection and prevention happens in “runtime” in network server RAM, so there are no logs associated to that.
ThePrivacyAuditor.institute Website
Logs: Like most web servers, this one has web logs showing visitors having connected to the website and which pages were viewed. We use these logs to block malicious IP addresses automatically. The web logs are rotated every 3 days (completely and permanently deleted). Web logs are kept physically on the server and never uploaded/downloaded anywhere or shared with anyone for any reason.
Cookies: Public pages on this website do not try to set or read any cookies of any kind. We do not even use session cookies.
Emails: If you contact us via the “Contact Us Form”, rest assured that your info and your message will be encrypted in transit and absolutely no third party is involved in delivering your message to our inbox from our side. This site is TLS enabled. We run our own email servers. Connections to our email servers are also encrypted. Your message moves from this form to our email server directly via an encrypted channel. Your email address is only used to respond to your messages, communicate your subscription information to you, and provide you with important service updates. Your email messages are deleted after 30 days. Your email address is never saved in the “cloud”, shared with anyone, or used by marketing services.
(In process, not yet live) Crypto Payments via BTCPay: The website includes button links for users to submit payments and/or subscribe to our services using cryptocurrency via BTCPay. The Privacy Auditor BTCPay Server is a self-hosted, open-source payment system that respects your privacy. We only collect your email address when making a crypto payment. The email address is used to provision your subscription account and communicate payment status to you. You are welcome to use privacy-enhancing email services; however, the use of disposable email addresses or alias services is strictly prohibited and is considered abuse of the service, as this prevents us from securely communicating your subscription details and payment status to you. There are no third-party service providers involved with Crypto payments. By using Crypto payments you agree, confirm, and attest to the following:
- You, your company, and/or your country are not under any U.S sanctions that prohibit you from transacting with U.S entities.
- You, your company, and/or your country are not on any U.S sanctions list of any kind.
- The cryptocurrency you use for payment belongs to you.
- The cryptocurrency you use for payment was not obtained from or involved in any illegal activities whatsoever.
You must submit the full crypto amount showing on the BTCPayServer invoice in one transaction. The invoice is only active for 30 minutes. If the invoice expires, you can always click the payment button again and generate a new invoice.
(In process, not yet live)Payments via PayPal and Stripe: The website includes button links for users to submit payments and/or subscribe to our services via either PayPal or Stripe. Payment information is not collected by this website. Payment information is submitted to and through the payment service providers directly. When using PayPal or Stripe for payment, your information is subject to their respective privacy and legal policies, which can be found here: PayPal and Stripe. After completing your subscription payment through PayPal or Stripe, your payment information is confirmed by the payment service providers and the payment method is then added to your the Privacy Auditor subscription for auto-renewal. Any changes to your payment information can only be made through the payment service providers, which we provide links to from by email.
Terms and Agreement
This website and services offered are run by the Privacy Auditor. All use of this website and all associated services is subject to the terms and conditions outlined here. By accessing, browsing, and/or using this website and all related services, you agree to be bound by these terms. The service is accessible to the public and community based on best effort. The Privacy Auditor is free to end offering the service at any time with or without prior notice. Additionally, the service is provided without any warranty and we renounce liability for any claim, damages, or other liability arising from the use of this service. Commercial use and/or resale of the Privacy Auditor query service (for any of our servers) is prohibited without written approval. If you wish to use the Privacy Auditor query in your company, product, or service, please contact us by email for arrangements. Unauthorized access, abuse, misuse of any the Privacy Auditor asset - or any attempt of such activities - and/or the use of abusive language towards support staff are absolutely prohibited and we reserve the right to revoke your access and deny you service in such cases with no expectations of a refund. The information contained in or made available through this website, our email communication, and/or other websites by us is provided for informational purposes only and should not be construed as rendering consulting, technical, security, engineering, legal, or other professional advice of any kind. Privacy is an ongoing process, not a one-time fix. We provide continuous support to manage new trackers and adapt to app updates, striving to ensure app compatibility, but we cannot guarantee that blocking trackers will never impact app functionality (e.g., if an app relies on a blocked tracker). By using our service, you acknowledge this limitation and agree that The Privacy Auditor is not liable for any app malfunctions resulting from tracker blocking. A valid email address is required to establish and maintain a the Privacy Auditor account. Your email address is only used to communicate to you account management details and service updates, as outlined in privacy policy above. Do not associate your the Privacy Auditor account to a fake, temporary, or disposable email address or it likely will stop working. If the Privacy Auditor emails are not properly delivered (or bounce) to the email address associated to your account, the Privacy Auditor will revoke and delete your account. The Privacy Auditor cannot provide any account management support whatsoever, unless you communicate your request from the email address associated to your account. You may update the email address associated to your the Privacy Auditor account at any time by email. If you lose access to your the Privacy Auditor account and you have also lost access to the email address associated to your account, for security reasons, the Privacy Auditor support will not be able to help you recover your account. Any future release, update, or other addition to the Privacy Auditor will be subject to these terms, which may be updated from time to time. If you make a recurring payment and you wish to no longer support the service, you are free to cancel it anytime through your PayPal account (if you used PayPal to subscribe), or through Stripe (if you used Stripe to subscribe), which we provide links to, or contact us by email.
Paid Subscriptions Additional Terms
The Privacy Auditor offers three paid plans: DIY for automatic blocking, Accelerate with a 30-minute monthly consultation, and Professional with a 60-minute monthly consultation and 24/7 email support. Your access to paid tool to block trackers is conditional on making subscription payments prior to account expiration date. Upon successful payment, account expiration date is extended accordingly. Subscriptions will auto-renew - using the payment method you set up - indefinitely until you take action and cancel auto-renewal. If your subscription goes past expiration, your the Privacy Auditor account will be immediately and irreversibly deleted from our servers after 14 days of grace period. It is important for you to keep your the Privacy Auditor account associated to a valid payment method if you wish to keep it active. You can cancel or change the payment method used for auto-renewal by email. Your the Privacy Auditor account will remain fully active and functional until it reaches the expiration date. If you do not wish to be charged for renewal, it is useful that you cancel the auto-renewal payment method prior to payment being made. If you cancel auto-renewal prior to expiration and wish to completely delete your account immediately, you can do so at any time by email.
The Privacy Auditor offers a Free Plan that serves as your trial, giving you access to a tracker report with no payment information required. Upgrade to a paid plan to start protecting your privacy with consultations and advanced tools.
If your free account is not being used, your account will be immediately and irreversibly deleted from our servers after 14 days of grace period. If you wish to delete your account prior to expiration, you can do so at any time by contacting us by email.
Terms & Privacy Policy Changes
- We collect only your email address for account management and communication, as outlined above. We do not collect telephone numbers or other personal information.
- Technology updates are part of our service, and customers will receive automatic notifications via email about significant changes that impact their privacy protection.
- An update to our refund policy (19-Mar-25): We now offer a 30-day money-back guarantee for all paid plans, ensuring you can try our service risk-free.
Address:
Privacy Auditor Institute S.A.S. de C.V.
Millennium Plaza, 4th Floor
Paseo General Escalón #3675
San Salvador
El Salvador
Made by Expats in El Salvador.
El Salvador, a Bitcoin nation!