Privacy without the fog.
A practical account of what reaches us, why we need it, which providers help deliver the service, and the controls available to you.
Revised July 16, 2026
This policy explains how Digital Shield LLC (“we”, “us”, “our”) collects, uses, shares, and protects information when you visit trydigitalshield.com, purchase a subscription, or use any product in the Digital Shield suite.
Our approach is simple: collect what is needed to provide and protect the service, retain it only for a defined purpose, and give you meaningful control. We do not sell personal information for money.
Information you give us
- Account details: name, email address, password (hashed), and household contact preferences.
- Billing details: billing address, last four digits of the payment card, card brand, expiry. Full card numbers are handled by our PCI-DSS compliant payment processor and never touch our servers.
- Support content: messages, attachments, and metadata you send to support.
Information collected automatically
- Device and app data: information made available by the website or licensed application, such as operating system, version, language, and approximate country.
- Usage data: features used, scans run, alerts received. We aggregate this to improve the Service.
- Cookies and similar: see our Cookie Policy.
Security signals
- Licensed security applications may process file hashes, domains, and threat indicators to identify malicious activity. That processing is governed by the relevant technology provider's privacy terms and the settings available in that application.
Digital Shield+ privacy tools
- Photo Privacy Cleaner: photos and their metadata are processed only in your browser. They are not uploaded to us.
- One-Time Secure Share: we store encrypted message data, a random initialization vector, the creator account ID, and an expiry time. We never receive the plaintext or the decryption key in the link fragment.
- Reveal abuse prevention: we store a one-way, secret-keyed hash of a recipient IP address for up to 24 hours to enforce rate limits. We do not store the raw IP in this log.
We use your information to:
- provide, maintain, and improve the Service;
- process payments and manage subscriptions;
- send alerts you have opted into (breach alerts, scan results);
- detect and prevent fraud, abuse, and security incidents;
- comply with legal obligations.
We do not use your data to train advertising profiles, and we do not sell personal information for money.
If you are in the EU, UK, or EEA, we rely on the following legal bases under the GDPR:
- Contract: to deliver the Service you bought.
- Legitimate interest: to keep the Service secure, prevent fraud, and improve product quality.
- Consent: for non-essential cookies, marketing emails, and optional analytics. Withdraw any time.
- Legal obligation: tax, accounting, and lawful requests from authorities.
We may transfer information to countries outside your home jurisdiction for the purposes described above. When data leaves the EEA, UK, or Switzerland, we use recognized transfer safeguards where required, such as Standard Contractual Clauses. Storage location and replication depend on the provider and service configuration you use.
We keep account data for the life of your subscription and a short additional period for tax, accounting, and dispute resolution.
- Account data: until deletion request or 30 days after subscription cancellation.
- Billing records: up to 7 years to meet tax law.
- Support tickets: 24 months.
- Security telemetry: 90 days in identifiable form, then aggregated.
- One-time shares: until the first reveal or the selected expiry (1 hour, 24 hours, or 7 days). Consumed ciphertext may remain temporarily in encrypted infrastructure backups without the decryption key.
We use technical and organizational safeguards appropriate to the information and service involved. These include encrypted transport, restricted administrative access, authentication controls, logging, and provider security controls. No connected service is perfectly secure, so we cannot promise absolute protection.
Depending on where you live, you may have the right to:
- access the personal data we hold about you;
- correct inaccurate or incomplete data;
- delete your account and associated personal data;
- export your data in a portable format;
- object to or restrict certain processing;
- withdraw consent at any time;
- lodge a complaint with your local data protection authority.
To exercise any of these rights, email hello@trydigitalshield.com from the address on your account. We respond within 30 days.
If you live in California, Colorado, Connecticut, Virginia, Utah, or another U.S. state with a comprehensive privacy law, you have rights to access, correct, delete, and opt out of sale or sharing of personal information.
We do not sell personal information for money. To opt out of any sharing for cross-context behavioral advertising, disable the Advertising category in your cookie preferences. We honor Global Privacy Control (GPC) signals where required by law.
The Service is not directed to children under 13 (or 16 in the EEA). We do not knowingly collect personal information from children. If you believe a child has provided us data, contact hello@trydigitalshield.com and we will delete it.
Privacy questions: hello@trydigitalshield.com
General support: support@trydigitalshield.com
Postal: Digital Shield LLC. A registered mailing address is provided in your welcome email and on request.