Privacy

Privacy notice

ScanTheLink processes only the data needed to run public scans, protect the service, save reports when you sign in, and receive pilot access requests.

Controller

Dedovic Mustafa, Hasanovic Jusufa Juke 57, 71000 Sarajevo, Bosnia and Herzegovina. Contact: contact@scanthelink.com.

Data we process

We may process the target URL or public profile handle you submit, scan status, scan results, timestamps, share identifiers, claim tokens, account email address, secure sign-in link session data, IP address, user-agent data, and security logs required for abuse prevention and rate limiting.

Beta and feedback requests

If you request a free VIP beta scan, we process your email address, submitted target, use case, message, request status, and related communication so we can review the request, run or discuss the report, improve the product, and prevent abuse.

Account and sign-in

Accounts use passwordless secure email links. We use session cookies and related security storage to keep you signed in, claim eligible guest scans, and protect account access. Password fields are not used.

Connected data

Connected owner-data features are disabled for the public beta. If they are enabled later, ScanTheLink may request authorized Search Console, GA4, or YouTube owner signals only after account consent. Provider access tokens must remain encrypted and are never shown in the user interface.

Analytics and cookies

Necessary cookies and storage are used for security, sessions, scan claiming, rate limiting, abuse prevention, and basic service operation. Optional analytics and marketing storage are off until you allow them in Privacy choices. Optional analytics may use product events and privacy-friendly aggregate analytics when configured for the ScanTheLink domain.

If your browser sends a Global Privacy Control signal, ScanTheLink keeps marketing analytics off. No advertising pixels or marketing flows are active right now.

External providers

Depending on configuration, scans may use hosting infrastructure, queue infrastructure, Google PageSpeed Insights, YouTube APIs, Meta/Facebook or X-related public providers, Resend for email delivery, and optional analytics providers such as Plausible and Google Analytics 4. GA4 is initialized with Consent Mode denied by default; optional analytics events are recorded only after consent. Payment providers are not used while paid flows are disabled.

Payments

Paid self-serve flows are disabled during the public beta. If payment features are launched later, payment data will be processed by the payment provider, and ScanTheLink will store only the metadata needed to confirm access, issue receipts, support users, and keep audit records.

Retention and deletion

Signed-in report history is kept while your account exists. Unclaimed guest scans are deleted after 30 days when no purchase, request, schedule, or other operational record still references them. Expired sign-in links and sessions are deleted after 7 days; old connected Search Console and GA4 facts and audit records are deleted after 400 days. Revoked or expired API keys, old sync jobs, monitoring alerts and run history, and deleted schedule configuration are normally deleted after 90 days. Cleanup runs in bounded batches, so deletion may complete over successive daily passes.

Using account deletion immediately removes your account, sessions, sign-in links, scans and findings, crawl history, schedules and alerts, alert destinations and webhook secrets, API keys, connected Google tokens, bindings, facts, and sync jobs. Minimal payment, credit, provider-event, and audit shells may be retained where needed for accounting, fraud controls, webhook idempotency, or legal obligations, but account identifiers, email, scan links, request metadata, network data, and matching provider payloads are removed or redacted. Active subscriptions must first be cancelled with the payment provider. PDF and CSV exports are generated on demand and are not stored as account files by ScanTheLink.

You can also request deletion or anonymization by email. A deletion request is handled as one transaction: if the ownership graph is ambiguous or any step fails, no partial deletion is reported.

Your choices

You can change optional cookie and analytics preferences at any time.