GDPR Compliant

GDPR Policy

Last Updated: October 11, 2025

SharkEyes (https://sharkeyes.dev) respects your privacy and complies with the General Data Protection Regulation (GDPR). This policy describes what data we collect, how we use it, your rights under GDPR, and how you can exercise them.

1. Data Controller

The SharkEyes administration is the data controller responsible for collecting and processing personal information in accordance with GDPR.

Contact Information

For all GDPR-related inquiries, data subject requests, or privacy concerns, please contact us via our feedback form at https://sharkeyes.dev/feedback/

2. What Data We Collect

We collect the following categories of data to provide our bot protection service:

  • Mouse movements and clicks (only the fact of action, without exact coordinates)
  • Key presses (only the fact of pressing, without capturing actual characters)
  • Screen size and pixel ratio for device identification
  • IP address and country/region (no precise geographic coordinates)
  • User-Agent, browser, and device platform information
  • HTTP headers for request validation
  • Domain data (audience identifier)

Note: We do not collect sensitive personal data such as health information, financial data, biometric data, or political opinions.

3. Purpose of Processing

We process personal data for the following specific purposes:

Bot Detection and Prevention: Analyzing behavioral patterns to distinguish legitimate users from automated bots.

Security Protection: Protecting websites and forms from spam, abuse, and malicious activity.

Service Improvement: Analyzing service performance metrics to improve reliability and user experience.

Fraud Prevention: Detecting and preventing fraudulent activities and security threats.

5. Data Retention

We retain personal data only for as long as necessary to fulfill the purposes outlined above:

General telemetry data 24 hours
Security-related data Up to 30 days
Contact form data (email/name) 24 hours

After the retention period, all personal data is automatically and permanently deleted from our systems.

6. Your Rights Under GDPR

Under the GDPR, you have the following rights regarding your personal data:

Right to Access

Request confirmation of what personal data we process and obtain a copy of it.

Right to Rectification

Request correction of inaccurate or incomplete personal data.

Right to Erasure

Request deletion of your personal data ("right to be forgotten").

Right to Restriction

Request restriction of processing of your personal data.

Right to Object

Object to processing based on legitimate interests.

Right to Portability

Receive your personal data in a structured, commonly used format.

How to Exercise Your Rights

To exercise any of these rights, please submit a request through our feedback form at https://sharkeyes.dev/feedback/. We will respond to your request within 30 days as required by GDPR.

You also have the right to lodge a complaint with your local data protection authority if you believe your rights have been violated.

7. Data Security

We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction:

  • HTTPS/TLS encryption for all data transmission
  • Hashing and encryption of sensitive data at rest
  • Strict access controls and least privilege principles
  • Regular security updates and vulnerability monitoring
  • Automated data deletion after retention periods

While no system is completely secure, we continuously work to maintain the highest security standards to protect your data.

8. Contact

For any GDPR-related questions, data subject requests, or privacy concerns, please contact us:

We are committed to resolving any concerns you may have about our data processing practices and will respond to all inquiries promptly.