Admiresty Corporation ("Admiresty", "we", "us", or "our") operates the DNSAFE DNS security platform available at dnsafe.net, portal.dnsafe.net and my.dnsafe.net (the "Service"). This Privacy Policy explains how we collect, use, disclose, and protect personal data when you use our Service.
By using DNSAFE, you agree to the practices described in this policy. If you are using DNSAFE on behalf of an organisation, you represent that you have authority to bind that organisation to this policy.
1. Who We Are
Admiresty Corporation is the data controller for personal data collected through the DNSAFE website and portal. We are incorporated under the laws of the State of Delaware, USA. For data privacy inquiries, contact us at privacy@dnsafe.net.
For business and MSP customers subject to GDPR, we act as a data processor with respect to your end-user DNS query data. Our Data Processing Agreement is available at dnsafe.net/dpa.
2. Information We Collect
Account information: When you create an account we collect your email address, organisation name (for business accounts), and any display name you provide. This information is necessary to create and maintain your account.
DNS query data: When your devices use DNSAFE resolvers, we log the domain name queried, the timestamp, resolution result (allowed/blocked), and the source IP address. We do not log the full URL, query content, or any data beyond the domain name and response action.
Billing information: Payment card details are processed directly by Stripe, Inc. and are never stored on DNSAFE servers. We retain transaction IDs, subscription status, and billing email for account management purposes.
Usage and technical data: We collect dashboard activity, API request logs, browser type, and approximate IP geolocation for security monitoring and service improvement. We use reCAPTCHA (Google) on sign-in and registration pages to detect automated abuse. With your consent, we use Google Analytics on dnsafe.net to understand how the site is used. See our Cookie Policy.
Support communications: If you contact us for support, we retain records of those communications to resolve issues and improve the service.
3. How We Use Your Data
We use collected data to:
- Provide, operate, and maintain the DNSAFE DNS filtering service
- Display query history, threat reports, and analytics in your dashboard
- Detect, investigate, and block security threats; improve ThreatGrid threat intelligence feeds
- Process payments and manage subscriptions
- Send transactional communications: billing receipts, password reset emails, security alerts, and weekly report digests (where enabled)
- Respond to support requests and investigate abuse reports
- Comply with legal obligations
We do not sell your personal data to any third party. We do not use your DNS query data for advertising or marketing profiling.
4. Data Retention
DNS query logs are kept according to your plan’s history window, then deleted automatically:
- Home: Free: not shown in your dashboard, kept up to 7 days for security and abuse prevention. Personal: 30 days. Family: 90 days. Pro: 180 days.
- Business: Starter: 30 days. Business: 90 days. Enterprise: 1 year.
- MSP partners: Starter: 30 days. Growth: 90 days. Enterprise: 1 year.
Account information is retained for the duration of your account and for up to 90 days after deletion to allow recovery. Billing records are retained for 7 years as required by applicable tax law. Support communications are retained for 3 years.
Deleted data can remain in our encrypted database backups for up to 90 days before those backups expire.
5. Data Sharing and Sub-processors
We share data only with the following categories of third parties, each bound by appropriate data processing agreements:
- Service providers (sub-processors): the companies in the table below, which process data on our behalf under data processing agreements.
- Law enforcement and regulatory bodies: Only when required by valid legal process, a court order, or applicable law. We will notify you of such requests where legally permitted to do so.
| Sub-processor | Purpose | Location |
|---|---|---|
| Amazon Web Services, Inc. | Hosting of the DNS resolvers, API, databases, encrypted backups, content delivery (CloudFront) and transactional email (SES) | United States; DNS resolvers also in the United Kingdom and Singapore |
| Stripe, Inc. | Payment processing and subscription management (card data never reaches our servers) | United States |
| Google LLC | reCAPTCHA (bot protection on sign-in forms), Google sign-in (if you choose it), Safe Browsing reputation checks, and Google Analytics (only with your consent) | United States |
| Microsoft Corporation | Microsoft sign-in (if you choose it) | United States |
| Cisco Systems, Inc. (Duo, Umbrella) | Multi-factor authentication for partner and administrator accounts (Duo); domain reputation checks in the domain checker and Threat Intel (Umbrella — receives only the domain being checked) | United States |
| Anthropic, PBC | AI features: the help assistant and Threat Intel analysis. Receives the questions you type and the lookup results being analysed | United States |
ThreatDNS: our free lookup site, threatdns.com, is covered by its own privacy policy. Signing in there with your DNSAFE account confirms your plan with us; nothing else about your account is shared.
Threat-intelligence lookups: When you use the domain checker on dnsafe.net, the domain, IP address or email address you enter is sent to the threat-intelligence sources that answer it: VirusTotal, AbuseIPDB, IPinfo, URLScan, Spamhaus, Google Safe Browsing, certificate-transparency logs (crt.sh, SSLMate Cert Spotter), domain registries (RDAP/WHOIS) and, for email addresses, XposedOrNot (data-breach lookups). We send only the item you asked about, never your account details.
We do not use any advertising networks, data brokers, or social media tracking pixels. We will update this list before adding a new sub-processor.
6. International Data Transfers
Admiresty Corporation is based in the United States. If you access DNSAFE from the European Economic Area (EEA), United Kingdom, or other jurisdictions with data transfer restrictions, your data may be transferred to and processed in the United States and other countries where our infrastructure is located.
We ensure appropriate safeguards are in place for such transfers, including Standard Contractual Clauses (SCCs) where required by GDPR. Business and MSP customers requiring a Data Processing Agreement should request one at privacy@dnsafe.net.
7. Your Rights
Depending on your location, you may have the following rights with respect to your personal data:
- Access: Request a copy of the personal data we hold about you.
- Correction: Request that we correct inaccurate or incomplete data.
- Deletion: Request deletion of your personal data, subject to legal retention obligations.
- Portability: Request your data in a machine-readable format.
- Objection / Restriction: Object to or request restriction of certain processing activities.
- Withdraw consent: Where processing is based on consent, withdraw that consent at any time.
California residents (CCPA/CPRA): You have the right to know what personal information we collect, to delete it, to opt out of sale (we do not sell personal information), and to non-discrimination for exercising these rights. To submit a verified consumer request, email privacy@dnsafe.net.
To exercise any of these rights, contact us at privacy@dnsafe.net. We will respond within 30 days. We may need to verify your identity before processing your request.
8. Security
We implement industry-standard technical and organisational measures to protect your data, including encryption in transit (TLS 1.2+), encrypted storage, access controls, and regular security reviews. No method of transmission over the internet is completely secure; we cannot guarantee absolute security but we maintain robust practices to minimise risk.
9. Children's Privacy
DNSAFE is not directed to children under the age of 13. We do not knowingly collect personal data from children under 13. If you believe we have inadvertently collected such data, contact us at privacy@dnsafe.net and we will promptly delete it.
10. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will update the "Last updated" date at the top of this page and, where appropriate, notify you by email. Your continued use of the Service after such changes constitutes acceptance of the updated policy.
11. Contact
For privacy-related enquiries or to exercise your rights:
Admiresty Corporation
Privacy Team — DNSAFE
privacy@dnsafe.net