Privacy Policy
How we collect and use data across enrollment, ownership verification, and public-source monitoring - including sensitive creator content handled during leak response.
Launch pilot version. Last updated 30 May 2026. This policy covers the current enrollment, ownership-verification, and monitoring pilot flows.
Data controller
Sentixx - currently operated by the founder as a natural person pending incorporation as a Polish prosta spółka akcyjna (PSA). Entity name, registration number, and registered address will be added on incorporation. Contact for all data-related matters: privacy@sentixx.net.
What we collect
- Enrolled monitoring: the handle(s) you enroll and confirm you control (an identity-linked attestation plus a bio-code check), plus standard request metadata - IP address, user agent string, and timestamp. Monitoring begins only after that confirmation; there is no public lookup and no anonymous handle check, and you do not upload any media file for this step.
- Account: email address, hashed password (salted PBKDF2; plaintext never stored), and product activity logs (monitoring events, dashboard interactions).
- Leak reports and surfaced URLs: the URL, handle, source domain, report category, and review notes needed to decide whether the report belongs in your evidence workflow. We ask for locations and context, not copies of intimate files by email.
- Content fingerprint: when you submit content to be fingerprinted, we compute a perceptual hash from it on our servers. The reference fingerprint is used only to match against what surfaces publicly - it is not shared outside your account.
Legal basis
- Enrollment and ownership verification: legitimate interests - fraud and abuse prevention, confirming you own the handles you enroll, and service operation (Art. 6(1)(f) GDPR).
- Account and monitoring: performance of a contract with you (Art. 6(1)(b) GDPR).
- Illegal content escalation (CSAM/NCII): compliance with a legal obligation (Art. 6(1)(c) GDPR).
Sub-processors
| Processor | Country | Purpose |
|---|---|---|
| Hetzner Online GmbH | DE | Infrastructure hosting |
| SMTP provider (TBD) | EU/EEA | Transactional email (account notifications; active when email is configured) |
Cookies and local storage
We use localStorage to store your session token and monitoring preferences - no cross-site tracking, no third-party advertising cookies. A cookie consent banner records your preference for any future analytics or functional cookies. We currently run no analytics. If that changes, this section will be updated before any analytics tool is enabled.
Retention
- Monitoring: only confirmed matches against your reference fingerprint are stored, in your private findings; candidates that don't match are never persisted.
- Account data: retained until you request deletion by emailing privacy@sentixx.net.
- Evidence records: retained for a minimum of 3 years for audit and legal-hold purposes; may be retained longer while an active incident or legal proceeding is open.
- CSAM/NCII escalation records: retained as required by applicable law and the instructions of the receiving authority.
Your rights (GDPR)
You have the right to access, rectify, erase, port, restrict processing of, and object to processing of your personal data. To exercise any right, email privacy@sentixx.net. We will respond within 30 days. You also have the right to lodge a complaint with the Polish supervisory authority: UODO (Urząd Ochrony Danych Osobowych) at uodo.gov.pl.
International transfers
Primary data processing takes place within the EU/EEA on Hetzner infrastructure in Germany. Should a future sub-processor be located outside the EU, transfers would be covered by applicable adequacy decisions or, where no decision exists, by Standard Contractual Clauses (SCCs). The sub-processor table above indicates each processor's country.