Privacy

This page explains what we keep when you use HowyGuard, in plain words.

When you run a check

Howy looks up the public email settings for the website or address you enter. These are records anyone on the internet can read. We don't send anything to your address and we don't save the result.

When you sign up for a plan

If you reserve a spot or start a plan, we keep:

  • your email address and the plan you chose, so we can send you reports and tell you when we launch
  • the domain you checked and its result, so your first check is ready

A reservation reaches us by email, sent through a service called Resend, and a copy sits in our hosting logs on Vercel. If you pay through checkout, Stripe handles your card, and we never see or store your card number. We don't sell or share your details with anyone else.

After checkout, your browser keeps one small cookie with your sign-up reference, so this device can open your dashboard. It is used for nothing else, and the dashboard only ever shows your own plan and domain.

Once your plan starts, the breach lookups send the practice addresses you give us to a public breach lookup service, which checks them against known data leaks to see whether they show up.

The Meta pixel

This site uses the Meta pixel to count visits, checks and sign-ups that come from our ads on Facebook and Instagram. Meta may set cookies to do this. We never pass it your email address, the domain you checked or the details of your result. You can block it with your browser's tracking settings or an ad blocker, and the check still works.

Removing your details

Email hello@howyguard.com and we'll delete what we hold about you.