CrocProbe
Menu

Privacy policy for CrocProbe and crocprobe.com

This Privacy Policy ("Policy") describes how Steeltype LLC ("Company") handles information from https://crocprobe.com and the CrocProbe desktop application. For the purposes of this Policy, unless otherwise noted, all references to the Company include https://crocprobe.com. The Company website is a software product information and purchase site. This Policy explains our data practices. Optional website analytics and optional application reporting each require a separate choice; using the website or application does not enable either. If you are in the European Economic Area, the United Kingdom, or Switzerland, section XIII explains our legal bases and your rights.

I. Collection of Your Personal Information

In order to better provide you with products and services offered, the Company may collect personally identifiable information, such as your:

Purchases are processed by Stripe, Inc. Stripe collects your payment card details directly, under its own privacy policy; the Company receives your name, email address, the amount paid, and the last four digits of the card, and never sees the full card number.

When you buy a license, Stripe collects your name and email address at checkout and passes them to us. When you email us, we receive what you send. We use that information to deliver and support what you bought and to answer you. Ordinary website requests, application connections, optional website analytics, and optional application reporting where offered are described in section V. Optional analytics and reporting require their respective permissions.

II. Use of your Personal Information

The Company collects and uses your personal information in the following ways:

The Company does not send marketing email. It emails you to deliver a license you bought, to answer a message you sent, and to give any notice required by law or by this Policy.

III. Sharing Information with Third Parties

The Company does not sell, rent, or lease its customer lists to third parties.

The Company does not sell biometric data to third parties.

The Company may share data with trusted partners to help perform statistical analysis, send you email or postal mail, provide customer support, or arrange for deliveries. All such third parties are prohibited from using your personal information except to provide these services to the Company, and they are required to maintain the confidentiality of your information.

The Company may disclose your personal information, without notice, if required to do so by law or in the good faith belief that such action is necessary to: (a) conform to the edicts of the law or comply with legal process served on the Company or the site; (b) protect and defend the rights or property of the Company; and/or (c) act under exigent circumstances to protect the personal safety of users of the Company, or the public.

IV. Sale or Sharing of Personal Information

The Company does not sell your personal information and does not share it for cross-context behavioral advertising. Because no sale or sharing occurs, there is nothing to opt out of; if that ever changes, this Policy will be updated first and an opt-out method will be provided here. Residents of California and of other states with consumer privacy laws may exercise their rights, including the rights to know, to correct, and to delete, by emailing support@steeltype.io.

V. Automatically Collected Information

The Company website uses optional first-party analytics to improve its pages, product demonstrations, and download and purchase paths. We collect these events only after you choose Allow analytics. No thanks leaves analytics off, and the website and videos work either way. You can change or withdraw your choice through Analytics choices in the footer. We honor the browser's Do Not Track and Global Privacy Control signals by leaving analytics off. With your permission, events describe the public page, broad referral or predefined campaign category, broad screen-size category, time actively spent on the page, scroll milestones, link and download clicks, license-checkout clicks, expanded information, opening the print dialog, video playback and watched milestones, caption and full-screen use, media or page failure categories, and numerical browser performance measurements. We do not send message text, form contents, search terms, full referrer URLs, arbitrary campaign values, device identifiers, or page contents in these events. A random identifier lasts for one page load so we can remove duplicate events and count actions within that page. It is not retained in browser storage or reused across pages. We do not use cookies, fingerprinting, advertising trackers, session recordings, or cross-site profiles, and we do not join website events to a customer, license, or purchase record. We save only your allow-or-refuse choice and the time of that choice in local browser storage for up to 180 days; you can change it sooner or clear it with your browser controls. Events go to this website and are held in Steeltype's Amazon Web Services account alongside ordinary CloudFront access logs. As with any request, those logs can include the source IP address, browser User-Agent, and request time. Raw logs, including analytics requests, expire after 90 days. Our analytics reports discard network fields and page-load identifiers and retain only aggregate counts and performance summaries, which may be kept longer to compare results over time. Ordinary access logs continue to support website operation and security when analytics is off. A download click does not establish installation, and a checkout click does not establish a purchase.

Application connections and optional reporting. CrocProbe checks for a newer version at startup only if you allow it. It asks on first run, sends no update request unless you agree, and lets you change that choice in Setup under Updates. The check fetches a small version file from this website without sending your installed version or a device identifier. Redeeming an activation code sends that code to the license service, which records redemption without receiving device, page, or session information in that request. Both requests carry ordinary network information, including the source IP address, as described for access logs above.

Some releases may offer optional application reporting to help us understand device compatibility, which CrocProbe features are used, and where connections or features succeed, fail, or run slowly. A release without a reporting control sends no application reports. Where offered, reporting starts off and requires its own affirmative choice in the application. Buying a license, accepting license terms, using the application, allowing website analytics, or enabling update checks does not grant that permission. The notice shown with the choice identifies the information to be sent and links to this Policy. You can refuse or withdraw through the same application setting, without losing any free or paid capabilities. Turning reporting off stops new collection and transmission and discards reports that have not been sent.

With that permission, application reports may contain the CrocProbe version; host operating-system name and major version; connected-device manufacturer and model category; mobile operating-system and browser names and versions; predefined feature names and connection, success, or failure categories; counts and coarse timing measurements; report time; the version of the consent notice accepted; and a random identifier for an individual report used to prevent duplicate counting. A report identifier is not reused to track an installation or person. Reports contain no names, email addresses, license or activation codes, unique device or installation identifiers, device names, page URLs or titles, DOM, computed styles, console output, network request or response contents, screenshots, recordings, credentials, file paths, raw diagnostic logs, crash dumps, or free-form error messages. We do not use fingerprinting, advertising trackers, or session recording, and we do not join application reports to website activity or customer, license, or purchase records.

Where application reporting is offered, reports are sent to Steeltype's Amazon Web Services account and processed in the United States to produce aggregate compatibility, feature-use, and reliability statistics. Receiving infrastructure also processes the source IP address, request time, and any User-Agent header. Limited fields do not make these incoming records anonymous. Access is limited to the Company and its hosting provider for the purposes described here. Raw application reports and their associated request logs are deleted within 90 days of receipt, or sooner when required following withdrawal or erasure. Only aggregate statistics that no longer identify a person are kept longer; identifiers and network fields are removed and small or distinctive groups are combined or omitted. The application stores your reporting choice, the notice version, and the time of your choice locally so that it can honor it. Consent records and report receipts needed to handle withdrawal are kept only as long as the associated personal data is processed. Withdrawal ends use of your personal data for optional reporting, subject to any limited retention required by law; it does not undo processing that was lawful before withdrawal or remove statistics that no longer identify you. Contact support@steeltype.io to exercise the rights described in this Policy.

Inspected page and device content remains on your computer and is not sent to the Company through optional reporting. If you separately choose to email support or share information with an AI agent, the support provisions of this Policy and the CrocProbe End User License Agreement describe those separate exchanges.

VI. Links

This website contains links to other sites. Please be aware that we are not responsible for the content or privacy practices of such other sites. We encourage our users to be aware when they leave our site and to read the privacy statements of any other site that collects personally identifiable information.

VII. Security of Your Personal Information

The Company secures your personal information from unauthorized access, use, or disclosure. The Company uses the following methods for this purpose:

We strive to take appropriate security measures to protect against unauthorized access to or alteration of your personal information. Unfortunately, no data transmission over the Internet or any wireless network can be guaranteed to be 100 percent secure. As a result, while we strive to protect your personal information, you acknowledge that: (a) there are security and privacy limitations inherent to the Internet that are beyond our control; and (b) the security, integrity, and privacy of any and all information and data exchanged between you and us through this site cannot be guaranteed.

VIII. Right to Deletion

Subject to certain exceptions set out below, on receipt of a verifiable request from you, we will:

Please note that we may not be able to comply with requests to delete your personal information if it is necessary to:

IX. Data Security and Breach Notification

The Company maintains reasonable administrative, technical, and physical safeguards designed to protect personal information from unauthorized access, acquisition, disclosure, or use. In the event of a security incident involving personal information, the Company will promptly investigate the incident and provide notice to affected individuals and, where required, to applicable regulatory authorities in accordance with applicable law.

The Company will provide any required notice in the manner and within the timeframes prescribed by applicable law.

X. Children Under 13

The Company does not knowingly collect personally identifiable information from children under the age of thirteen. If you are under the age of 13, you must ask your parent or guardian for permission to use this platform.

XI. Email Communications

The Company emails you to deliver a license you bought, to answer a message you sent, and to give any notice required by law or by this Policy.

The Company sends no marketing or promotional email, so there is nothing to unsubscribe from. If that ever changes, this Policy will be updated first and every such email will carry an unsubscribe link.

XII. External Data Storage Sites

We may store your data on servers provided by third-party hosting vendors with whom we have contracted.

XIII. Users in the European Economic Area, the United Kingdom, and Switzerland

This section applies if you are in the European Economic Area, the United Kingdom, or Switzerland, and where it differs from the rest of this Policy, this section prevails. Steeltype LLC, Indianapolis, Indiana, United States, is the controller of the personal data described in this Policy. Contact us at support@steeltype.io. We have not appointed a data protection officer or a representative in the European Economic Area or the United Kingdom.

What we process, why, and on what legal basis. When you buy a license, we process your name, your email address, the amount paid, and the last four digits of your card in order to issue your license, deliver it by email, support it, and honor the refund and upgrade terms; that processing is necessary to perform our contract with you (Article 6(1)(b)). We keep records of purchases because tax and accounting law requires it (Article 6(1)(c)). When you email us, we process what you send in order to answer you: under the contract if you are a customer (Article 6(1)(b)), and otherwise under our legitimate interest in answering the people who write to us (Article 6(1)(f)). We keep the web server's access logs and the record that a license was redeemed in order to operate and secure the website and the license service and to detect abuse; that is our legitimate interest (Article 6(1)(f)), and we have judged that it does not override your interests because the logs are held for 90 days, are never used to identify a visitor, and contain ordinary request information and, only with your permission, the bounded website events described in section V. Optional website analytics and, where offered, application compatibility, feature-use, and reliability reporting rely on your separate consent (Article 6(1)(a)). Necessary operational and security logging remains based on our legitimate interest and is not used to bypass a refusal of optional reporting. We do not use these records for advertising, cross-site profiling, or automated decisions about you. Giving us your name and email address is a requirement of the contract: they are how we issue a license and how we deliver it, so if you do not give them you cannot buy one. Nothing else here asks anything of you, and no law obliges you to give us anything.

Who receives your data, and where we got it. The name and email address we hold come from Stripe, Inc., which collects them at checkout under its own privacy policy and passes us the details listed in section I; anything else you send us, you send us yourself. Amazon Web Services, Inc. hosts the website, its access and optional analytics logs, the license service, and its database. Optional website events come from your browser after your choice to allow them. Where application reporting is offered, Amazon Web Services also processes the reports and associated request logs on our instructions; report information comes from your application only after your separate reporting choice. Twilio Inc. (SendGrid) delivers the license emails. Both act only on our instructions under data processing agreements. We also disclose data where the law requires, as section III describes. We do not sell personal data.

Where your data is processed, and how it gets there. We are in the United States, and your data is stored and processed there. The United States has no general adequacy decision from the European Commission or the United Kingdom. When you write to us, you hand your data to a company in the United States yourself, and under the European Data Protection Board's Guidelines 05/2021 that is not a restricted transfer, because nobody exports it on your behalf; we are instead subject to the GDPR directly under Article 3(2), which is why this section exists. What Stripe passes to us, and what our providers hold for us, are transfers. They are made under the European Commission's standard contractual clauses or the United Kingdom's International Data Transfer Agreement, which the data processing agreements of Stripe, Amazon Web Services, and Twilio incorporate and publish on their websites; ask us and we will point you to the current version of any of them.

How long we keep it. Section V sets the separate limits for optional application reports, associated request logs, local preferences, consent records, and aggregate statistics. License and purchase records are kept for as long as your license is valid, which for a perpetual license is indefinitely, because they are what lets us re-issue your activation code and honor the refund and upgrade terms. Purchase records are also kept for as long as tax and accounting law requires. Email you send us is kept for as long as needed to deal with it and to keep a record of what was agreed. Access logs, including optional website events, are deleted after 90 days. Browser storage remembers only your analytics choice for up to 180 days. Aggregate reports that no longer contain network information or page-load identifiers may be retained longer.

Your rights. You may ask us for access to the personal data we hold about you, for its correction or erasure, for restriction of its processing, and for a copy in a portable form, and you may object to processing based on our legitimate interests. You may withdraw consent for optional website analytics through Analytics choices in the footer and, where application reporting is offered, withdraw that separate consent through the application's reporting setting at any time. Withdrawal does not affect the lawfulness of processing before withdrawal; the handling of application reports after withdrawal is described in section V. Refusal does not limit your use of the website or product. To exercise a right, email support@steeltype.io. We will answer within one month; where a request is complex we may take up to two further months, and we will tell you if that happens. We may ask you to confirm that you are the person the data is about. Erasure requests are honored except where we must keep a record, as section VIII explains.

Complaints. If you think we have handled your personal data wrongly, tell us first: email support@steeltype.io with 'privacy complaint' in the subject line. We will acknowledge your complaint within 30 days, look into it, and tell you the outcome without undue delay. You also have the right to complain to a supervisory authority: in the European Economic Area, the data protection authority of the country where you live or work (listed at edpb.europa.eu); in the United Kingdom, the Information Commissioner's Office (ico.org.uk); in Switzerland, the Federal Data Protection and Information Commissioner (edoeb.admin.ch), where the same rights and routes apply under the Swiss Federal Act on Data Protection.

XIV. Changes to This Statement

When changes to this Policy are significant, we will say so on this website and update the effective date below. A material expansion of the information collected or purposes of optional website analytics or application reporting requires an updated notice and a new choice before that expansion is enabled. Continued website or application use, and agreement to revised license terms, do not grant that permission.

XV. Contact Information

The Company welcomes your questions or comments regarding this Statement of Privacy. If you believe that the Company has not adhered to this Statement, please contact the Company at:

Steeltype LLC, Indianapolis, Indiana

Email Address: support@steeltype.io

Effective as of 5 September 2026