1. Who We Are
True Trace is an Australian digital security platform operated by Craig (sole trader), ABN pending registration. We provide tools to help people understand their online data exposure, including breach checking, credential lookup, and AI-powered security advice.
Our website is truetrace.com.au. You can contact us at [email protected].
2. What Information We Collect
We only collect what's necessary to provide our services:
- Email addresses you enter into our breach checker tools
- Usernames you search in our loyalty checker tool
- Payment information processed securely via Stripe (we never see your card details)
- Basic usage data including IP address, browser type, and pages visited
- Messages you send to our AI advisor, Trace
We do not require you to create an account. We do not collect your name, address, or any other personal details unless you voluntarily provide them.
3. How We Use Your Information
We use the information we collect only to:
- Run breach checks against third-party databases (HaveIBeenPwned, Dehashed)
- Process payments for unlocked reports via Stripe
- Provide responses through our AI advisor (Trace)
- Improve our platform and fix technical issues
- Protect against abuse and fraud
We do not sell your data. We do not share your data with advertisers. We do not use your email address to send you marketing emails.
4. Third-Party Services
Our platform uses the following third-party services, each with their own privacy policies:
- HaveIBeenPwned — breach database lookup. Your email is sent to their API to check for breaches.
- Dehashed — credential database lookup (paid reports only). Your email is sent to their API.
- Stripe — payment processing. All payment data is handled by Stripe and subject to their privacy policy.
- Anthropic (Claude) — powers our AI advisor Trace. Messages are processed by Anthropic's API.
- Apify / Sherlock — username lookups across public platforms.
- Netlify — website hosting. Basic server logs including IP addresses are retained by Netlify.
We recommend reviewing the privacy policies of these services if you have concerns about how they handle data.
5. Cookies
Our website uses minimal cookies to ensure basic functionality. We do not use advertising cookies or tracking pixels.
- Session cookies — remember if you've unlocked a paid report during your visit
- Stripe cookies — used by Stripe's payment system during checkout
- Affiliate cookies — if you click through to a partner like 1Password or Bitwarden, a referral cookie may be set on their website
You can disable cookies in your browser settings. Some features may not work correctly if you do.
6. Data Storage & Security
True Trace does not store the emails, usernames, or passwords you search. Searches are processed in real time and not saved to any database.
Payment records are stored by Stripe in accordance with their security standards. We do not store your card details.
We take reasonable steps to protect our systems but cannot guarantee absolute security. If you believe your data has been compromised, please contact us immediately.
7. Your Rights
Under Australian privacy law you have the right to:
- Ask what personal information we hold about you
- Request we correct inaccurate information
- Request we delete your information
- Complain to the Office of the Australian Information Commissioner (OAIC) if you believe your privacy has been breached
To exercise any of these rights, contact us at [email protected].
8. Children
True Trace is not intended for use by anyone under the age of 18. We do not knowingly collect personal information from minors. If you believe a minor has used our services, please contact us and we will take appropriate action.
9. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will update the "Last updated" date at the top of this page. Continued use of True Trace after changes constitutes acceptance of the updated policy.
Questions about this Privacy Policy?
[email protected]