Privacy Policy

1. Introduction

Welcome to the Weak Cipher Suites Tester, a fully client-side security analysis tool developed by AxelBase ("we," "us," or "our"). This Privacy Policy explains how we handle your information when you use our tool to analyze TLS cipher suites from tools like nmap, sslyze, or browser outputs. We operate under a zero-data-collection modelno personal data is ever collected, stored, or transmitted. All processing occurs in your browser, ensuring complete privacy and control.

2. Information We Do Not Collect

The tool is designed to function without gathering any user data. We do not collect:

  • Personal Identifiable Information (PII): No names, emails, IP addresses, or device identifiers.
  • Usage Analytics: No tracking of page views, session duration, or click behavior.
  • Cipher Input Data: Your pasted cipher lists are processed locally and never leave your device.
  • Cookies or Trackers: No cookies, localStorage persistence, or third-party tracking scripts.

Your data stays on your machine — we have no access to it.

3. How the Tool Works

When you use the Weak Cipher Suites Tester:

  • Local Processing: JavaScript parses cipher suites using regex and scoring logic — all in-browser.
  • No Network Requests: No data is sent to servers, CDNs (except static assets), or APIs.
  • Temporary Memory Only: Input is held in memory during analysis and cleared on page reload or reset.

This architecture ensures absolute data isolation, ideal for auditing sensitive infrastructure.

4. Third-Party Services

We do not use analytics, ads, or external APIs. The tool is self-contained. Static assets (CSS, JS) are served from GitHub Pages or your local build — no user tracking occurs.

5. Cookies and Tracking

No cookies are set. The session is stateless. No fingerprinting, beacons, or localStorage is used beyond transient input.

6. Data Security

Since no data is transmitted, risks are limited to your local environment. We recommend:

  • Using updated browsers with security patches
  • Avoiding public networks when analyzing sensitive endpoints
  • Clearing browser cache after use if needed

7. Children's Privacy

The tool is not directed at children under 13. We do not knowingly collect data from minors.

8. International Compliance

By collecting no data, we comply by default with GDPR, CCPA, POPIA (Norway), and global privacy laws.

9. Policy Updates

Changes will be posted here with the updated effective date. Continued use constitutes acceptance.

Your security scans stay yours alone. Privacy isn’t a feature — it’s the foundation.