VulneraX
Privacy Policy
VulneraX – Security scanning & automated reporting tool • Version v0.9 • Effective August 2025
1) Introduction
This Privacy Policy describes how VulneraX collects, uses, and protects information in connection with our automated security scanning and reporting services.
By using VulneraX, you consent to the data practices described here.
2) Data We Collect
We collect limited data necessary to provide the Service effectively and securely.
- Account Information: Google OAuth profile basics (name, email, unique ID) for authentication.
- Scan Inputs: Target URLs/domains, scanner configuration, and scheduling metadata you provide.
- Scan Artifacts: Logs, request/response metadata, normalized evidence (e.g., header diffs, DOM snapshots).
- Reports: Generated HTML/PDF output stored for retrieval (e.g., Firebase Storage or S3).
- Telemetry (Release-minimal): Aggregated, anonymized usage metrics to improve reliability and performance.
3) How We Use Data
We use collected data to authenticate users, run scans, generate reports, provide support, and improve the Service.
We may use aggregated or anonymized data for analytics, research, and to enhance detection quality.
4) Legal Basis for Processing
We process data based on your consent (OAuth), contractual necessity (providing scans and reports), and our legitimate interests (security, service improvement).
5) Storage & Security
Data may be stored in Firebase Realtime Database and cloud object storage for reports. Access is restricted by role and token-based controls.
We implement technical and organizational measures to safeguard data; however, no system is 100% secure.
6) Data Retention
We retain scan inputs, artifacts, and reports for as long as necessary to provide the Service and for a reasonable period thereafter for auditability and product improvement.
You may request deletion of specific reports or associated artifacts by contacting us at the email below. Certain logs may be retained for security and legal compliance.
8) Your Rights
Subject to applicable law, you may have rights to access, correct, export, or delete your personal data, or object to certain processing.
To exercise these rights, contact us at the email below. We will verify your identity and respond within a reasonable timeframe.
9) Children’s Privacy
VulneraX is not intended for individuals under the age of 16. We do not knowingly collect personal data from children. If you believe a child has provided data, contact us for deletion.
11) Changes to This Policy
We may update this Policy from time to time. Material changes will be posted with a new effective date. Continued use indicates acceptance.
12) Contact
For privacy questions or requests, contact: privacy@vulnerax.in
© 2025 VulneraX. All rights reserved.
VulneraX
Modular vulnerability scanning for modern apps.
© 2025 VulneraX. All rights reserved.
Made in India 🇮🇳