Privacy Policy

Last updated: 20 September 2026

The short version

  • We collect the minimum needed to build your report: your name and its variants, your email addresses, and any old usernames you give us.
  • Almost every report is about the person who fills in the intake form. Someone else may pay, but nobody can consent on another person's behalf.
  • One product, the Deal Check, looks at a US company or landlord on the other side of a job offer or a tenancy. If that is you, there is a section below written for you rather than for a customer.
  • Your data is used to build your report and for nothing else. It is never sold, never shared for marketing, never reused.
  • Your inputs and your report are deleted from our systems 30 days after delivery, unless you move to monitoring. You can ask for earlier deletion at any time.
  • Payment details never reach us. The payment processor handles them.
  • Questions or requests: hello@reputationradar.me.

The rest of this page says the same things with more precision.

Who we are

Reputation Radar (reputationradar.me) is built and run by Victoria and is a service of VBInsights Solutions, a sole establishment registered in Dubai, United Arab Emirates (Dubai Department of Economy and Tourism trade licence no. 1522785). In this policy, “we” means the operator of Reputation Radar. Contact: hello@reputationradar.me.

What we collect

What you give us. When you order a Snapshot or monitoring, you fill in an intake form with: the email you used at checkout, your name and the spellings and variants you want checked, the city or country you are in, the email addresses you want checked against known breaches, any old usernames or handles, and the address you want your report sent to.

The form also has one optional box for anything specific you want us to look for. Keep it to a link, a site, or a phrase. Please leave out health, religious, and criminal details, and other people's names. We do not need them to run your check, and we would rather not hold them.

If you request the free PDF, we collect your email address. If you email us, we have whatever you chose to write.

What we gather while building your report. The report is built from publicly available information about you: search results, indexed news and forum pages, data-broker listings, public social profiles, and whether your email addresses appear in known data breaches. We do not access private accounts, direct messages, or closed groups, and the report itself tells you that on page one.

What we collect automatically on this site. We use Plausible to count visits, pages viewed, and where visitors came from, without cookies. Your browser sends technical information, including an IP address, when it connects to analytics services.

One advertising script can run on this site: Google’s conversion tag. It loads only if you arrived from one of our Google ads, or did so in the last 90 days on this browser. Its one job is to tell Google Ads when that ad visit leads to a free check or a purchase, so we know which ads are worth paying for. It sets a cookie to do that. It never receives your name, your email, or anything you type on this site. For everyone else there is no advertising tracker here and no script belonging to an advertising company.

If you arrive from an ad or a tagged link, the address in your browser carries a short tag naming the route you came by. We keep that tag in your own browser for up to 90 days. It reaches us only if you send us a form, and then it is stored with your submission and deleted with it on the schedule below. It does not identify you, and we do not share it with anyone.

The hosting infrastructure may keep standard technical logs (such as IP addresses) to serve and secure the site.

What we never collect. Payment card details (the payment processor handles those on its own systems), passwords, and government ID numbers. The report is built only from information about the person who completed the intake. If someone else paid for it, we hold their checkout email so we can match the payment to the order, and nothing else about them.

What we collect for a Deal Check. You give us the company, agency, or property you are dealing with, a link to the posting or the listing, the name and role the person gave you, and your situation, picked from a fixed list. We ask for the least that will let us check the company or the property against a public record. We do not want, and ask you not to send, private messages or anything you obtained from an account that is not yours.

What we do with your data

One thing: build and deliver what you ordered. Search tools run the wide sweep across public sources. AI helps organise and rank potential findings. A person reviews every finding, checks which ones are actually about you, and decides what belongs in your report. If you subscribe to monitoring, the same checks re-run on a schedule and we alert you to new findings.

We do not use your data for advertising, profiling unrelated to your report, or anything else.

Why we are allowed to use your data

When the report is about you, we process the information you give us because it is necessary to deliver the service you ordered, and the public information about you because finding, checking, and assessing it is what the report is.

For a Deal Check, the report is about a company or a landlord who is not our customer. We look only at public records about a business or a property, and at a person only in the role they claimed there. We do this because someone who has been approached with a job offer or a tenancy has a real interest in knowing who is on the other side, and because fraud in both of those situations is common and costly.

Deal Checks are run on companies and landlords in the United States only. We do not offer this product where the company or landlord is in the European Union or the United Kingdom, so if you are there, the only reports we produce are the ones you order about yourself.

Where we send optional emails, such as the free PDF and occasional notes, we rely on your consent, and you can withdraw it at any time by unsubscribing or emailing us.

For the Personal Exposure Snapshot and for monitoring, the person being checked is the person who completes the intake form, and that person completes it themselves. Consent comes from them and cannot be given on their behalf. Someone else may pay for the report as a gift. Paying does not make it their report, and the buyer never receives it.

For a Deal Check the report is about a company or a landlord, and consent is not what makes it lawful. What makes it acceptable is the shape of the product: it runs on a business or a property rather than on a person's name, it is sold only to the person being screened and never to the screener, it is refused for the uses listed in our terms, every order is read by a person before anything runs, and nothing about the company or landlord is kept afterwards.

We do not accept an order from an employer or recruiter about a candidate, from a landlord or agent about a tenant, or about a partner, a former partner, a family member, or someone in your household. We refuse those, refund them, and delete what was submitted.

If someone runs a check about you

This section is for you if you are not our customer. Someone has bought a Deal Check and you are the company, the agency, or the landlord it is about. You have rights here that do not depend on buying anything.

What was looked at. Public sources only, and only your business or the property: company records, search results, indexed pages, public profiles, listings, and public sanctions and regulator lists. We check a named person only in the role they were said to hold at that company. We do not sign in to anything and we do not go behind a paywall.

Why it happened. Someone was offered a job or a tenancy by you or in your name, and wanted to know whether it was real before committing.

You can ask us what we hold. Write to hello@reputationradar.me and we will tell you whether a check naming you was run, when, and what it looked at.

We will not tell you who ordered it. Their identity is their personal data, and naming them could put someone at risk.

You can correct it. Tell us what is wrong and we fix it, and we send the corrected result to the person who received the original. A wrong result that stays uncorrected is the failure this whole service is built against.

You can ask us to delete. We do not keep the findings after delivery, so in most cases there is nothing left except a short record that a check happened, which we keep for 30 days so that we can answer you if you ask. Say the word and we will tell you exactly what that record contains.

You can complain. If the law where you are gives you the right to complain to a regulator, you can use it, and you do not have to come to us first.

Who else touches your data

We use a small number of service providers to run the checks and the business. Each receives only what its job requires:

  • AI processing (Anthropic API): relevant report inputs and public-source findings pass through Anthropic’s commercial API for analysis and risk ranking. Anthropic does not use commercial API inputs or outputs to train its models by default.
  • Search services (Serper and the Perplexity Sonar API): receive the search terms needed to find public results, such as the name variants and public handles being checked.
  • Breach checking (Have I Been Pwned): receives the email addresses you asked us to check.
  • Sanctions and watchlist screening (Didit): receives the name you asked us to check, and nothing else, to query public sanctions, politically exposed person and regulatory watchlists. Didit processes it in the European Union, and we ask it not to keep a record of the check.
  • Payments (Stripe): processes your payment on its own systems, under its own privacy policy. Your card details exist only there and never reach our systems; your card statement will show REPUTATIONRADAR.ME.
  • Email (Google Workspace for correspondence and report delivery; MailerLite for the free PDF and occasional notes; Resend for Digital Hardening Pack purchase emails): delivers your report, confirmations, replies, and PDF download links. Resend receives the buyer’s email address and delivery message. Buying a guide does not subscribe you to marketing emails.
  • Site hosting and database (Lovable, including Lovable Cloud, which runs on Supabase): serves this website, and stores what you submit through the forms on it until it is deleted on the schedule below. It also stores the paid guide files and the purchase and delivery records needed to provide their download links.
  • Site analytics (Plausible): counts page views, referrers, and which pages are used without analytics cookies or cross-site identifiers.
  • Ad measurement (Google Ads conversion tag, only for visitors who arrived from our Google ads): receives the fact that an ad visit led to a free check or a purchase, and sets a cookie for that. It never receives your name, your email, or anything you typed.

We keep this list current. Where a provider processes data on our behalf, we limit what is shared to what that service needs. Some providers, such as the payment provider, also process data under their own legal responsibilities and privacy policies. These providers run on servers in the United States and Europe; we work from the United Arab Emirates.

How long we keep things

  • Snapshot inputs and reports: everything under our control is deleted 30 days after delivery, unless you move to monitoring. Copies held temporarily by the infrastructure providers above may persist for their documented security or backup retention periods.
  • Monitoring data: kept while your subscription is active, deleted 30 days after it ends.
  • A Deal Check: the findings are never stored. The check runs in an isolated workspace that is erased when the report is finished. What survives is the report we sent, a record of who ordered it, and a short note of the company or property checked and the situation given. That note is deleted after 30 days, and it exists so that we can answer the company or landlord who was checked if they ask us what happened.
  • Free-PDF email list: until you unsubscribe. Every email has an unsubscribe link that works.
  • Paid-guide downloads: we keep your checkout reference, email address, download-access record and email delivery status while your download link is active. You can ask us to delete this delivery record and deactivate the link. This does not delete a PDF you have already saved or payment records we are required to retain. Download pages do not run our website analytics or advertising tags.
  • Route tags from ads and links: held in your own browser for up to 90 days, and deleted from ours together with whatever form you sent, on the same schedule as that submission. If you never send a form, the tag never reaches us.
  • Invoices and payment records: kept as long as tax and accounting law requires.
  • Earlier deletion: email us and we delete your data, normally within 7 days, except records the law requires us to keep.

One technical note, because precision matters here: for breach-check de-duplication we store salted hashes rather than readable email addresses, and breach-check logs use redacted addresses.

Your rights

Whoever and wherever you are, you can ask us to: tell you what data we hold about you, correct it, delete it, or send you a copy. Email hello@reputationradar.me. A person answers, normally within 7 days. If you are in a jurisdiction that grants you additional statutory rights (for example under the GDPR or a US state privacy law), those rights apply and the same email is the way to use them. If data protection law gives you the right to complain to a supervisory authority, you can do that too. We would appreciate the chance to fix the problem first, but you do not have to contact us before making a complaint.

Security

Data moves over encrypted connections. Storage is minimal by design, because the strongest protection for data is not keeping it. No employees, freelancers, or outside reviewers have access to customer reports. Only one person reviews them. Where a provider stores or processes data, its own security controls and contractual data-protection obligations also apply.

If something goes wrong

If a breach on our side affects your data, we will tell you quickly, plainly, and honestly: what happened, what was exposed, and what we are doing about it. That is the same standard of honesty this whole service is built on.

Age

Reputation Radar is for adults. You must be 18 or older to request any check, free or paid, and any person a check names must be 18 or older too. We do not knowingly check anyone under 18. If we find that a request is about a child, we delete it, refund it, and tell whoever submitted it why.

Changes

If this policy changes in a way that matters, the date at the top changes and material changes are noted plainly. We will not quietly weaken the promises on this page.

The free demo form

If you request a free demo Snapshot, we collect your name, email address, the city or country you give, and any extra names or handles you choose to share. We use them for one purpose: running your demo and sending it to you. Submitting the form sends us a notification that a request arrived. It contains no details about you. If you do not become a customer, we delete your demo details within 30 days. Want them gone sooner? Email hello@reputationradar.me and we will delete them right away.

Contact

hello@reputationradar.me · Reputation Radar, a service of VBInsights Solutions.

Reputation Radar is a service of VBInsights Solutions. Every report is read by a person before it is sent.

© 2026 VBInsights Solutions, Dubai, UAE · hello@reputationradar.me