LastHash Logo
Legal

Privacy Policy

Last updated: April 29, 2026

This Privacy Policy describes how LastHash ("we", "us", or "our") collects, uses, and protects your personal information when you visit https://www.lasthash.com or use our website security scanning platform. By using our services you agree to the collection and use of information in accordance with this policy.

1. Information We Collect

1.1 Account Information

When you create an account we collect your email address. We use a passwordless magic link login system, so we never store your password.

1.2 Website Data

We collect the domain names of websites you add to our platform for the purpose of running security scans. Scan results, including security findings, risk scores, and vulnerability data, are stored in your account.

1.3 Usage Data

We automatically collect certain usage data including IP addresses, browser type, pages visited, and timestamps. This data is used solely for platform security, abuse prevention, and improving the service.

1.4 Payment Information

We process payments through Stripe. We do not store your credit card details. Stripe collects and processes payment data in accordance with their own privacy policy.

2. How We Use Your Information

  • To provide, operate, and maintain our platform and services
  • To authenticate your account via magic link email
  • To run security scans on websites you have registered
  • To send scan results, alerts, and important account notifications
  • To process subscription payments and issue invoices
  • To detect and prevent abuse, fraud, or security threats
  • To improve platform performance and develop new features
  • To comply with legal obligations

3. Data Sharing

We do not sell, rent, or trade your personal information to third parties. We share data only in the following limited cases:

  • Service Providers: We use Stripe for payments, Neon (PostgreSQL) for data storage, Pusher for real-time notifications, and ZeptoMail for email delivery. These providers process data solely to deliver our service.
  • Legal Requirements: We may disclose information if required by law or in response to a valid legal request from authorities.
  • Business Transfers: In the event of a merger or acquisition, your data may be transferred. We will notify you before this occurs.

4. Data Retention

We retain your account data for as long as your account is active. Scan results and security reports are retained according to your plan limits. If you delete your account, we will delete your personal information within 30 days, except where retention is required by law.

5. Security

We take data security seriously. We use TLS encryption for all data in transit, encrypted storage for sensitive data at rest, access controls, and regular security reviews. However, no method of transmission over the internet is 100% secure.

6. Cookies

We use session cookies to keep you logged in and functional cookies required to operate the platform. We do not use third-party advertising cookies or tracking pixels. You may disable cookies in your browser settings but some features may not function correctly.

7. Your Rights

Depending on your location you may have the following rights regarding your personal data:

  • The right to access the personal data we hold about you
  • The right to correct inaccurate or incomplete data
  • The right to request deletion of your personal data
  • The right to object to or restrict processing of your data
  • The right to data portability

To exercise any of these rights, email us at privacy@lasthash.com.

8. Children's Privacy

Our platform is not directed to children under the age of 13. We do not knowingly collect personal information from children. If you believe we have inadvertently collected information from a child, please contact us immediately.

9. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify registered users by email and update the "Last updated" date at the top of this page. Continued use of the platform after changes constitutes acceptance of the updated policy.

10. Contact

If you have any questions or concerns about this Privacy Policy, please contact us: