Privacy Policy
Last updated: June 12, 2026
This Privacy Policy explains how Valnovo OÜ (Narva mnt 7-557, 10117 Tallinn, Estonia), the operator of ImgCompliance, collects and uses personal information when you use imgcompliance.com.
1. Information we collect
- Information you provide: your email address, the website URL you submit for scanning, and — if you request a receipt — billing details (name/company, address, optional tax ID).
- Scan data: the results of the automated scan (image URLs found on the scanned website, risk classifications, matched web sources).
- Technical data: a salted hash of your IP address (we never store the raw IP) used for abuse prevention and free-scan limits.
- Payment data: payments are processed by Stripe. We receive confirmation of payment and a transaction reference; we never see or store your card details.
- Cookies and analytics: essential cookies for operating the site, and — only with your consent — analytics and advertising cookies (see our Cookie Policy).
2. How we use information
- To run the scan and deliver your results and report.
- To process payments and issue receipts.
- To provide customer support.
- To send a small number of transactional and reminder emails about a scan you started (you can opt out at any time via the one-click unsubscribe link in every such email).
- To prevent abuse and enforce free-scan limits.
- With your consent, to measure our advertising and analyze site usage.
3. Service providers (sub-processors)
- Stripe – payment processing.
- Resend – transactional email delivery.
- Google Cloud Vision – reverse image search used during scans (receives the images found on the scanned website, not your personal data).
- Hetzner – server hosting in the European Union.
- With consent: Meta (advertising measurement) and Microsoft Clarity (anonymized usage analytics).
4. Where data is processed
Our servers are located in the European Union. If you are in the United States, your data is transferred to and processed in the EU, where it is subject to EU data protection law (GDPR), which provides a high standard of protection.
5. Retention
Scan data and reports are retained so you can access your results; report download links expire after 7 days. Billing records are retained as required by accounting law. You can request deletion of your data at any time (see Section 6).
6. Your rights
You can request access to, correction of, or deletion of your personal information, object to its processing, and request a copy in a portable format. To exercise any of these rights, email support@imgcompliance.com.
US state privacy rights
If you are a resident of California, Virginia, Colorado, Connecticut, Utah, or another US state with a comprehensive privacy law, you have the right to know what personal information we collect, to request its deletion, and to non-discrimination for exercising these rights. We do not sell personal information and do not share it for cross-context behavioral advertising except via the optional, consent-based advertising cookies described in our Cookie Policy (which you can decline or withdraw at any time).
7. Marketing emails
If you start a free scan and do not purchase the report, we may send up to two reminder emails about your results. Every such email contains a one-click unsubscribe link (CAN-SPAM compliant). Unsubscribing stops all reminder emails to your address.
8. Security
We use industry-standard measures to protect your data, including TLS encryption in transit, hashed IP addresses, and access controls. No method of transmission or storage is 100% secure, but we work to protect your information appropriately.
9. Children
The Service is intended for business use and not directed at children under 16. We do not knowingly collect personal information from children.
10. Changes and contact
We may update this policy; the "Last updated" date reflects the latest revision. Questions: support@imgcompliance.com