Privacy Policy
Last updated: 12 July 2026
The short version
- I collect the minimum needed to build your report: your name and its variants, your email addresses, and any old usernames you give me.
- You order a report about yourself only. I do not accept orders about other people.
- Your data is used to build your report and for nothing else. It is never sold, never shared for marketing, never reused.
- Your inputs and your report are deleted from my systems 30 days after delivery, unless you move to monitoring. You can ask for earlier deletion at any time.
- Payment details never reach me. The payment processor handles them.
- Questions or requests: hello@reputationradar.me.
The rest of this page says the same things with more precision.
Who I am
Reputation Radar (reputationradar.me) is built and run by Victoria and is a service of VBInsights Solutions, a sole establishment registered in Dubai, United Arab Emirates (Dubai Department of Economy and Tourism trade licence no. 1522785). In this policy, “I” means the operator of Reputation Radar. Contact: hello@reputationradar.me.
What I collect
What you give me. When you order a Snapshot or monitoring, you fill in an intake form with: your name and the spellings and variants you want checked, your email addresses, and any old usernames or handles. If you request the free PDF, I collect your email address. If you email me, I have whatever you chose to write.
What I gather while building your report. The report is built from publicly available information about you: search results, indexed news and forum pages, data-broker listings, public social profiles, and whether your email addresses appear in known data breaches. I do not access private accounts, direct messages, or closed groups, and the report itself tells you that on page one.
What I collect automatically on this site. As little as possible. There is no analytics script and no advertising tracker on this site today; if that ever changes, this section changes first. The hosting infrastructure may keep standard technical logs (such as IP addresses) to serve and secure the site.
What I never collect. Payment card details (the payment processor handles those on its own systems), passwords, government ID numbers, or any data about people other than the person ordering.
What I do with your data
One thing: build and deliver what you ordered. Search tools run the wide sweep across public sources. AI helps organise and rank potential findings. I personally review every finding, remove false matches, and decide what belongs in your report. If you subscribe to monitoring, the same checks re-run on a schedule and I alert you to new findings.
I do not use your data for advertising, profiling unrelated to your report, or anything else.
Why I am allowed to use your data
I process the information you give me because it is necessary to deliver the service you ordered. I process related public information because finding, verifying, and assessing it is what the report is. Where I send optional emails, such as the free PDF and occasional notes, I rely on your consent, and you can withdraw it at any time by unsubscribing or emailing me.
The consent rule
The person being checked is the person buying. I do not accept orders to check a spouse, an ex, an employee, a candidate, or anyone else. If an order turns out to be about someone other than the buyer, I cancel and refund it and delete the submitted data.
Who else touches your data
I use a small number of service providers to run the checks and the business. Each receives only what its job requires:
- AI processing (Anthropic API): relevant report inputs and public-source findings pass through Anthropic’s commercial API for analysis and risk ranking. Anthropic does not use commercial API inputs or outputs to train its models by default.
- Search services (Serper and the Perplexity Sonar API): receive the search terms needed to find public results, such as the name variants and public handles being checked.
- Breach checking (Have I Been Pwned): receives the email addresses you asked me to check.
- Payments (Paddle, as merchant of record): processes your payment on its own systems, under its own privacy policy. Your card details exist only there; your card statement may show Paddle’s name.
- Email (Google Workspace for correspondence and report delivery; MailerLite for the free PDF and occasional notes): delivers your report, confirmations, replies, and the free PDF.
- Site hosting (Lovable): serves this website.
I keep this list current. Where a provider processes data on my behalf, I limit what is shared to what that service needs. Some providers, such as the payment provider, also process data under their own legal responsibilities and privacy policies. These providers run on servers in the United States and Europe; I work from the United Arab Emirates.
How long I keep things
- Snapshot inputs and reports: everything under my control is deleted 30 days after delivery, unless you move to monitoring. Copies held temporarily by the infrastructure providers above may persist for their documented security or backup retention periods.
- Monitoring data: kept while your subscription is active, deleted 30 days after it ends.
- Free-PDF email list: until you unsubscribe. Every email has an unsubscribe link that works.
- Invoices and payment records: kept as long as tax and accounting law requires.
- Earlier deletion: email me and I delete your data, normally within 7 days, except records the law requires me to keep.
One technical note, because precision matters here: for breach-check de-duplication I store salted hashes rather than readable email addresses, and breach-check logs use redacted addresses.
Your rights
Whoever and wherever you are, you can ask me to: tell you what data I hold about you, correct it, delete it, or send you a copy. Email hello@reputationradar.me. I answer personally, normally within 7 days. If you are in a jurisdiction that grants you additional statutory rights (for example under the GDPR or a US state privacy law), those rights apply and the same email is the way to use them. If data protection law gives you the right to complain to a supervisory authority, you can do that too. I would appreciate the chance to fix the problem first, but you do not have to contact me before making a complaint.
Security
Data moves over encrypted connections. Storage is minimal by design, because the strongest protection for data is not keeping it. No employees, freelancers, or outside reviewers have access to customer reports; I am the only person who reviews them. Where a provider stores or processes data, its own security controls and contractual data-protection obligations also apply.
If something goes wrong
If a breach on my side affects your data, I will tell you quickly, plainly, and honestly: what happened, what was exposed, and what I am doing about it. That is the same standard of honesty this whole service is built on.
Age
Reputation Radar is for adults. You must be 18 or older to order.
Changes
If this policy changes in a way that matters, the date at the top changes and material changes are noted plainly. I will not quietly weaken the promises on this page.
Contact
hello@reputationradar.me · Reputation Radar, a service of VBInsights Solutions.