Privacy
What we keep,
and what we don't.
Nightjar collects as little as it can get away with. This page says exactly what, with no annex to go and find.
Things we do not do
- ×
No analytics on this site. No Google Analytics, no Plausible, nothing. We do not know how many of you read this page.
- ×
No advertising trackers, no pixels, no third-party scripts of any kind.
- ×
No email. Not a welcome message, not a newsletter, not a password reset link.
- ×
No selling or sharing of anything, to anyone.
- ×
No transfer outside the European Union, except for card payment (see below).
If you open an account
| Data | Why | Kept for |
|---|---|---|
| Email address | To identify you at login | Life of the account |
| Password | Stored as a salted scrypt hash, never in clear | Life of the account |
| Recovery code | Hash only | Life of the account |
| Session cookie | To keep you logged in. Strictly necessary, so no consent banner | 30 days |
| Site addresses and scan results | The service itself | Until you delete them |
| Webhook URL | To send you alerts | Until you remove it |
| Stripe customer ID | To attach your subscription | 10 years (accounting) |
Lawful basis: performance of our contract with you, and legal obligation for billing records.
The sites we scan
When you add a site, we fetch its public pages exactly as any visitor could. We store the status codes, titles, meta tags, word counts, links and which analytics tags were detected — not the page content itself. If those pages happen to contain personal data, you are the controller for it and we are your processor under article 28 GDPR; these terms serve as that processing agreement.
We never publish anything about a scanned site. Free public scan reports are private, unindexed, reachable only by their link, and deleted after thirty days.
Who can see your data
Nightjar is run by one person. That person has an administration screen showing the list of accounts, the sites each one watches, and the reports produced for them — the minimum needed to answer a support message, investigate abuse and keep the service running. It is read-only: nothing about your account can be altered from it. No one else has access.
Server logs
Our web server records IP address and requested path for thirty days, for security and fault diagnosis. Nothing else.
Processors
| Who | What for | Where |
|---|---|---|
| HostMyServers | Server hosting | France |
| Stripe Payments Europe, Ltd. | Card payment and invoicing | Ireland, with framed transfers to the United States |
We never see your card number — it is entered directly with Stripe.
Your rights
You have rights of access, rectification, erasure, restriction, objection and portability. Two of them need no message to us: deleting a site and deleting your account are buttons in your dashboard, and the erasure is immediate and permanent.
For anything else, write to corentin.courier624@passinbox.com. You may also complain to the CNIL (cnil.fr) or your own supervisory authority.
Security
TLS on every page, passwords hashed with salted scrypt, revocable sessions, and an encrypted daily backup kept for thirty days.