Privacy Policy

Your privacy is important to us. Learn how we collect, use, and protect your information when you use our DMARC reporting service.

Privacy Protection

Your data security is our priority

Privacy Policy for SpoofMon

Last Updated: July 15, 2025

Important Notice

This Privacy Policy describes how SpoofMon ("SpoofMon," "we," "us," or "our") collects, uses, maintains, and discloses information collected from users ("User," "you") of the SpoofMon website and DMARC reporting services.

This Privacy Policy applies to the Site and all products and services offered by SpoofMon.

1. Information We Collect

We collect personal data that is necessary to provide the DMARC reporting services you sign up for. The types of personal data we collect include:

  • Account Information: Your Email Address and Company Information, provided during the signup process.

  • Service Usage Data:

    • DMARC Report Data: Aggregate reports and failure reports from email providers and ISPs regarding your domain's email authentication status. These reports do not contain email content but include authentication statistics and policy information.

    • Domain Information: Domain names you add to our monitoring service for DMARC report collection.

  • Payment Information: While we do not store your payment card details, we integrate with Stripe for payment processing. Stripe collects and processes your payment information (e.g., card details, Google Pay, Amazon Pay information).

  • Technical Data: Information collected automatically through your use of our website and services, which may include IP addresses, browser type, operating system, and website usage patterns.

  • Contact Information: Any information you provide when contacting us through our contact page or support email.

2. How We Collect Information

We collect information through the following methods:

  • Directly from User Input: When you sign up for an account or update your profile information through your account management page.

  • Through DMARC Reports: Automatically collected DMARC reports from email providers and ISPs regarding your monitored domains.

  • From Third-Party Processors: Primarily from Stripe, our payment backend processor, for billing and subscription management.

  • Through Website Interaction: Via cookies and potentially through our use of Cloudflare CDN and proxy services.

3. How We Use Collected Information

We use the collected information for the following primary purposes:

  • To Provide and Maintain Services: To operate, deliver, and maintain the DMARC reporting service you have subscribed to, including managing your account, monitored domains, and report analysis.

  • For Billing and Payment Processing: To process your subscriptions and payments through Stripe.

  • For Service Operation: To collect, process, and present DMARC reports from email providers and ISPs for your monitored domains.

  • For Service Improvement: To understand how our services are used and to identify areas for improvement.

  • For Communication: To send you service-related notifications, such as domain authentication alerts, account updates, or responses to your inquiries.

  • Compliance: To comply with legal obligations and enforce our Terms and Conditions.

4. How We Share Your Information

We value your privacy and do not sell, trade, or rent your personal identification information to others. We share your information only in limited circumstances:

  • With Stripe: Your Email Address and Company Information are shared with Stripe to facilitate payment processing and subscription management. Stripe also collects and processes your payment information directly. Please refer to Stripe's Privacy Policy for details on how they handle your data.

  • For Legal Reasons: We may disclose your information if required to do so by law or in response to valid requests by public authorities (e.g., a court order or government agency request).

  • For Service Operation: DMARC reports may be shared with you through our dashboard and reporting interface as part of the service you subscribed to.

5. Data Storage and Security

We are committed to protecting the data we collect.

  • Secure Database: Your data is stored in a secure database that requires encryption for connectivity, both in transit and at rest.

  • Encrypted Backups: Our servers are backed up nightly to encrypted backups.

  • Secure Data Center: Our servers are located in a secure data center with 24/7 security and restricted, authorized access only.

  • DMARC Report Data: DMARC report data is stored securely and is accessible only to authorized personnel and through your authenticated account.

Security Commitment

We implement industry-standard security measures to protect your data, including encryption, secure data centers, and restricted access controls.

6. Your Data Rights

You have certain rights regarding your personal data:

  • Access and Management: While your account is active, you can manage and update much of your personal information directly through your account management dashboard.

  • Modification and Deletion: If your account is not active, or for information not accessible via your dashboard, you can contact us to request modification or deletion of your personal information.

  • Data Erasure Request: If you wish to have your data completely erased from our systems after cancellation, please contact us via our contact page or support email.

7. Cookies and Tracking Technologies

  • Essential Functionality Cookies: Our website uses cookies for essential functionality, such as maintaining your session and enabling secure login.

  • Analytics Data: We review and access analytic data internally to understand website traffic and usage patterns. We do not use this data for personalized advertising or share it with third parties for their marketing purposes.

  • Cloudflare: We utilize Cloudflare as a CDN and proxy service for our website. Cloudflare may collect and store its own analytics data. Please refer to Cloudflare's Privacy Policy for more information.

8. Children's Privacy

SpoofMon services are intended for business use only and are not directed at children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that we have inadvertently received personal information from a child under 13, we will delete such information from our records.

9. Changes to This Privacy Policy

SpoofMon has the discretion to update this Privacy Policy at any time. When we do, we will revise the "Last Updated" date at the top of this page. We encourage Users to frequently check this page for any changes to stay informed about how we are helping to protect the personal information we collect.

You acknowledge and agree that it is your responsibility to review this Privacy Policy periodically and become aware of modifications.

10. Contacting Us

If you have any questions about this Privacy Policy, the practices of this site, or your dealings with this site, please contact us:

Questions or Concerns?

We're here to help! If you have any questions about how we handle your data or need assistance with your privacy settings, don't hesitate to reach out to our support team.