COMMAND NAVIGATION

Where would you like to go?

06 / Privacy

Privacy, stated plainly.

This page describes the current application behaviour and identifies deployment details that still need confirmation before publication.

SUBMITTED URLS

Public pages requested for diagnosis.

When you submit a URL, Web Doctor sends it to this site's server. The server requests the public page and a small number of public SEO resources, such as robots.txt and a likely sitemap, then returns a structured report.

The requested website can record Web Doctor's request under its own policies. No account, email address or user API key is required.

CONTACT MESSAGES

Email delivery, not public chat.

When you choose Send, the contact form submits your email address, selected topic and message to this site's server. They are used to deliver the enquiry and allow a reply to the address you supplied. No account is required, and the site does not create or publish a chat history.

Resend is used as the email delivery provider. The server passes the sender configuration, destination inbox, validated reply address, topic and message content to Resend so the email can be delivered. An unfinished draft containing only your email, topic and message can remain in sessionStorage on your device until it is sent, cleared or the browser session ends. A successfully submitted draft is removed from sessionStorage.

The form uses validation, a hidden honeypot, short-lived rate limiting and an opaque request identifier for spam prevention, duplicate protection and service security. Delivery-failure logs contain the request identifier and controlled error category rather than the submitted email or message.

Cloudflare Turnstile is not currently enabled. If it is enabled, a verification token will be sent to this server and checked with Cloudflare as part of spam prevention; Cloudflare may process associated technical request information under its own terms and privacy materials.

TEMPORARY CACHING

Reports are cached briefly.

Completed structured reports are currently held in application memory for approximately ten minutes to reduce duplicate requests. Downloaded HTML and manually pasted HTML are processed for the diagnosis and are not included in that report cache or intentionally stored permanently by the application.

Short-lived in-memory request counters provide best-effort abuse protection within one running application instance. Production hosting or network infrastructure may apply additional shared request limits.

SERVER LOGS

Infrastructure may create technical logs.

The application code does not create a customer profile from submitted URLs. Hosting and network providers may nevertheless record ordinary request details such as IP address, time, requested route, browser information and response status for security and service operation.

ON YOUR DEVICE

Recent checks and contact drafts use browser storage.

Web Doctor stores analysed URLs, scores and check dates in localStorage. The contact form can store an unfinished email address, topic and message in sessionStorage. These values remain on that device and are not silently uploaded as separate history features. Browser controls can clear either storage area.

ANALYTICS

No analytics integration is currently installed.

The current application does not include an analytics SDK or tracking tag. If analytics is introduced, this notice and the Cookies page must be updated before deployment, including the provider, data collected, purpose, retention and consent behaviour.

ADVERTISING

Advertising is not currently enabled.

No AdSense or advertising network code is currently loaded. The application is designed to keep future ads disabled unless a certified consent-management platform reports the required advertising consent. Enabling advertising will require updated disclosures covering the provider, cookies or storage, personalisation settings and choices available to visitors.

COOKIES

No intentional application cookies today.

The application currently uses localStorage and sessionStorage rather than application cookies. Deployment infrastructure may set essential security or delivery cookies; this must be verified against the live hosting configuration. See the Cookies page for the current inventory and review notes.

THIRD PARTIES

Only necessary service relationships should be listed.

Current requests can involve the production hosting and network providers, Resend for contact-email delivery and the public website submitted for analysis. Turnstile would add Cloudflare only if it is enabled. Links to external social profiles and project websites take you to services operating under their own notices.

YOUR QUESTIONS

Contact the site owner.

For privacy questions, use the details on the contact section. Statutory rights and complaint information depend on the final controller and deployment details and must be reviewed before publication.