Short version: nothing you check leaves your device. The app and the extension contain no network code at all — no servers, no analytics, no advertising, no third-party SDKs. There is no account and no registration.
fetch(), no WebSocket and no telemetry library. Every risk rule, phrase list and blocklist is bundled with the product and evaluated locally.
We collect nothing. We operate no server that receives your data, so there is nothing for us to store, share, sell or hand over.
The product keeps a small amount of data locally so it is still useful after you close it. This data stays on your device, in the app's own storage area (or your browser's storage for the extension).
| Data | Why it exists | How to remove it |
|---|---|---|
| Settings (language, region, sensitivity, theme, simple mode) | So the product behaves the way you chose | Uninstall, or reset in Settings |
| Your last 20 checks (address, score, time) | So the dashboard can show real activity instead of an invented "you are protected" badge | Dashboard → clear, or Settings → Delete my data |
| Reports you file (target, category, note, date) | So a number or site you flagged is recognised next time | Settings → Delete my data |
| Trusted contact (name and phone number you type) | So that number can be shown, in large type, at the moment you need it | Settings → Delete my data |
| Extension: the verdict for the tab you are on | So the badge and the popup cannot disagree | Cleared when the browser session ends |
The trusted contact is the only field that can contain another person's personal data. It is typed by you, stored only on your device, and never transmitted.
To warn you about the page you are on, the extension reads that page locally, in your browser:
None of this is uploaded, logged or retained beyond the browser session.
| Permission | Reason |
|---|---|
activeTab, tabs | To know which page to score and to show its verdict in the popup |
storage | To keep your country/language choice and the current tab's verdict |
notifications | To warn you when a page scores as high risk |
webNavigation | To count redirect hops, a behavioural scam signal |
| Access to all sites | A scam page can be on any domain. The extension cannot know in advance which site needs checking, so it needs to read the page you are actually on — locally, and only for scoring. |
The product ships with an offline, template-based generator (used for the optional education video script). It sends nothing to any AI provider. Sensitive content is blocked before it could ever reach one: card-number-like strings, CVV markers and password markers are refused by a privacy guard in the code. If a cloud AI provider is added in a future version, it will be optional, clearly labelled, and this policy will be updated before it ships.
The product is not directed at children and does not knowingly process children's data.
Under KVKK (Türkiye), GDPR (EU/UK) and similar laws you have rights of access, correction, deletion and portability. Because we hold no data about you, these rights are exercised directly on your device: your reports can be exported (JSON/CSV) from the panel, and everything can be erased with Settings → Delete my data, or by uninstalling.
Security Assistant gives an opinion, not a guarantee. A "no clear warning sign" result does not mean a site or message is safe. It cannot listen to or record phone calls — mobile platforms do not permit that and we do not attempt it. Automatic page checking works only in the browser extension; the app checks what you ask it to check.
If this policy changes, the date at the top changes with it, and material changes will be noted in the product's release notes.
Questions about this policy: info@dropless.com.au
Kısa hâli: kontrol ettiğiniz hiçbir şey cihazınızdan çıkmaz. Uygulamada ve eklentide hiçbir ağ kodu yoktur — sunucu yok, analitik yok, reklam yok, üçüncü taraf SDK yok. Hesap açmanız da gerekmez.
fetch(), WebSocket ya da telemetri kütüphanesi bulunmaz. Bütün risk kuralları, ifade listeleri ve kara liste ürünle birlikte gelir ve cihazda değerlendirilir.
Hiçbir şey toplamıyoruz. Verinizi alan bir sunucumuz yok; dolayısıyla saklayacağımız, paylaşacağımız, satacağımız ya da devredeceğimiz bir şey de yok.
Ürün, kapattıktan sonra da işe yarasın diye küçük bir miktar veriyi yerelde tutar. Bu veri cihazınızdan çıkmaz.
| Veri | Niçin var | Nasıl silinir |
|---|---|---|
| Ayarlar (dil, ülke, hassasiyet, tema, sade mod) | Ürün sizin seçtiğiniz gibi davransın diye | Kaldırın ya da Ayarlar'dan değiştirin |
| Son 20 kontrolünüz (adres, puan, zaman) | Panel uydurma bir "korunuyorsunuz" rozeti yerine gerçek işi göstersin diye | Panel → temizle, ya da Ayarlar → Verilerimi sil |
| Bildirdiğiniz şikayetler (hedef, tür, not, tarih) | İşaretlediğiniz numara veya site bir dahakine tanınsın diye | Ayarlar → Verilerimi sil |
| Güven kişisi (yazdığınız ad ve telefon) | O numara, ihtiyacınız olan anda büyük puntoyla görünsün diye | Ayarlar → Verilerimi sil |
| Eklenti: açık sekmenin kararı | Rozet ile açılır pencere birbirini yalanlamasın diye | Tarayıcı oturumu bitince silinir |
Başka bir kişinin kişisel verisini içerebilecek tek alan güven kişisidir. Onu siz yazarsınız, yalnızca cihazınızda durur, hiçbir yere gönderilmez.
Bulunduğunuz sayfa hakkında sizi uyarabilmek için eklenti o sayfayı tarayıcınızın içinde, yerel olarak okur:
Bunların hiçbiri yüklenmez, kaydedilmez ve tarayıcı oturumundan uzun yaşamaz.
| İzin | Gerekçe |
|---|---|
activeTab, tabs | Hangi sayfanın puanlanacağını bilmek ve kararı açılır pencerede göstermek için |
storage | Ülke/dil tercihinizi ve açık sekmenin kararını tutmak için |
notifications | Bir sayfa yüksek riskli çıktığında sizi uyarmak için |
webNavigation | Davranışsal bir sinyal olan yönlendirme adımlarını saymak için |
| Tüm sitelere erişim | Dolandırıcı sayfa herhangi bir alan adında olabilir. Eklenti hangi sitenin kontrol edilmesi gerektiğini önceden bilemez; bu yüzden gerçekten bulunduğunuz sayfayı okur — yerelde ve yalnızca puanlamak için. |
Ürün, çevrimdışı ve şablon tabanlı bir üreticiyle gelir (isteğe bağlı eğitim video senaryosu için kullanılır). Hiçbir yapay zekâ sağlayıcısına bir şey göndermez. Hassas içerik zaten kapıda engellenir: kart numarasına benzeyen diziler, CVV ve parola işaretleri koddaki gizlilik koruması tarafından reddedilir. İleride bulut tabanlı bir yapay zekâ eklenirse isteğe bağlı ve açıkça işaretli olacak, bu politika da yayından önce güncellenecektir.
Ürün çocuklara yönelik değildir ve bilerek çocuk verisi işlemez.
KVKK, GDPR ve benzeri mevzuat kapsamında erişim, düzeltme, silme ve taşınabilirlik haklarınız vardır. Hakkınızda hiçbir veri tutmadığımız için bu haklar doğrudan cihazınızda kullanılır: şikayetlerinizi panelden JSON/CSV olarak dışa aktarabilir, her şeyi Ayarlar → Verilerimi sil ile ya da uygulamayı kaldırarak silebilirsiniz.
Güvenlik Asistanı görüş bildirir, garanti vermez. "Belirgin bir işaret yok" sonucu, bir sitenin ya da mesajın güvenli olduğu anlamına gelmez. Telefon görüşmelerini dinleyemez veya kaydedemez — mobil platformlar buna izin vermez, biz de denemeyiz. Otomatik sayfa kontrolü yalnızca tarayıcı eklentisinde çalışır; uygulama, sorduğunuz şeyi kontrol eder.
Bu politika değişirse üstteki tarih de değişir; esaslı değişiklikler ürünün sürüm notlarına yazılır.
Bu politikayla ilgili sorular: info@dropless.com.au