Legal
Privacy Policy
Effective date: August 28, 2026 — Apten Inc.
This Privacy Policy explains what information Perimeter, operated by Apten Inc., collects when you use the service at perimeter.thomaspeng.ca, how we use it, and with whom we share it. We collect the minimum needed to run the service. We do not sell your data.
1. What we collect
Free report (no account)
- Domain name you submit — stored alongside the scan result so the report can be retrieved via its shareable link. The result is retained for a limited period and then deleted.
- IP address (hashed) — your IP is hashed with a server-side secret before storage. We never store your raw IP address. The hash is used only to enforce the per-IP rate limit (3 reports per hour); it cannot be reversed to recover your IP.
Account holders
- Email address — used for account authentication and to deliver alert emails when your monitored domains change. We use Resend (see §4) to send transactional and alert email.
- Domains you add to your account — stored so we can run scheduled scans and compare results against your saved baseline.
- Scan results and alert history — the output of each passive scan (subdomains, cert data, DNS records, lookalike candidates) is stored as your monitoring baseline and alert feed. This data pertains to your own domain and is visible only to you.
- Billing information — managed entirely by our payments broker (see §4). We do not store payment card numbers or bank account details. We receive a subscription status and a customer identifier from the broker.
- Session data — a signed, short-lived session cookie is used to keep you logged in. No tracking cookies are set.
2. How we use the information
- To run the passive scans and produce reports you request
- To detect changes against your saved baseline and send you alerts
- To enforce the free-report rate limit via hashed IP
- To authenticate you and maintain your session
- To process subscription billing via our payments broker
- To respond to support requests you initiate
We do not use your data to build advertising profiles, infer personal attributes, or train machine-learning models.
3. Data Perimeter queries on your behalf
When you submit a domain (free report or monitored domain), Perimeter queries public registries about that domain on your behalf:
- crt.sh — we send your domain name to crt.sh's JSON API to retrieve CT log entries. crt.sh is operated by Sectigo; their privacy practices govern what they log about inbound requests.
- RDAP registries — we query RDAP endpoints (bootstrapped via
rdap.org) with candidate lookalike domain names to check registration status. - Public DNS resolvers — we resolve your domain's DNS records using standard recursive DNS. The queries are observable to any on-path resolver.
These are lookups about publicly-registered domain names. No personal information about you is transmitted in these queries beyond the domain name itself.
4. Third-party sub-processors
- Resend (resend.com/privacy) — transactional and alert email delivery. We send Resend your email address and the content of each alert. Resend processes this data solely to deliver the email.
- Payments broker — subscription billing. When you subscribe, you enter payment details directly on the broker's hosted page; we receive only your subscription status and a broker-assigned customer identifier. Refer to the broker's privacy policy for details on how it handles payment data.
We do not use any advertising networks, analytics platforms, or tracking pixels. No third-party JavaScript is loaded on any page.
5. Data retention
- Free report results are retained for 30 days, then deleted.
- Hashed IP rate-limit records are retained for 24 hours.
- Account data (email, domains, baselines, alert history) is retained for as long as your account is active and for a reasonable period after closure to support billing disputes or support requests.
- Billing events are retained as required for financial record-keeping.
6. Your rights and data deletion
To request deletion of your account and associated data, email thomas@thomaspeng.ca with the subject line "Data deletion request." We will process the request and confirm deletion within a reasonable time (typically 14 days). Note that billing records may be retained for the period required by applicable financial regulations even after account deletion.
7. Security
Scan data is stored in a SQLite database on a server running under a locked-down systemd service. Passwords are hashed; raw IP addresses are never stored. Session cookies are signed with a server-side secret and are HttpOnly. We apply standard VPS hardening (UFW, fail2ban, unattended security upgrades) to the host running Perimeter.
8. Changes to this policy
Material changes will be communicated by email to account holders at least 14 days before taking effect. The effective date at the top of this document will be updated with each revision.
9. Contact
Privacy questions: thomas@thomaspeng.ca.