1. Introduction
Denny Cherry & Associates Consulting, LLC ("Company," "we," "us," or "our") operates the Your DMARC Exposed service available at www.yourdmarcexposed.com (the "Service"). This Privacy Policy explains how we collect, use, disclose, and protect information about you when you use the Service.
By using the Service, you agree to the collection and use of information in accordance with this policy.
2. Information We Collect
2.1 Information You Provide
When you register for or use the Service, we may collect:
- Name and company name
- Email address
- Mailing address and phone number
- Payment information — processed securely by Stripe or the Microsoft Azure Marketplace depending on how you purchased the Service; we do not store card or payment details directly
- Domain names you submit for DMARC monitoring
2.2 Information Collected Automatically
When you access the Service, we automatically collect certain information, including:
- IP address and browser type
- Pages visited and time spent on those pages
- Referring URLs
- Device identifiers and operating system
2.3 DMARC Report Data
The Service receives and processes DMARC aggregate and forensic reports sent to the monitoring addresses we provide for your domains. This data is used solely to provide the monitoring and reporting features of the Service.
3. How We Use Your Information
We use the information we collect to:
- Provision and operate your account and the Service
- Send transactional emails (account verification, billing receipts, DMARC failure alerts)
- Respond to support requests
- Improve and develop the Service
- Comply with legal obligations
- Detect and prevent fraud or abuse
We do not sell, rent, or share your personal information with third parties for their own marketing purposes.
4. Data Retention
We retain your account information for as long as your account is active or as needed to provide the Service. DMARC report data is retained in accordance with the storage limits of your service plan. You may request deletion of your account and associated data by contacting us at the address below.
5. Data Security
We implement industry-standard technical and organizational measures to protect your information against unauthorized access, alteration, disclosure, or destruction. These measures include encrypted data transmission (TLS), access controls, and regular security reviews. No method of transmission over the Internet or method of electronic storage is 100% secure, however, and we cannot guarantee absolute security.
6. Third-Party Services
The Service integrates with the following third-party providers, each governed by their own privacy policies:
- Stripe – payment processing for direct purchases
- Microsoft Azure Marketplace – payment processing for purchases made through the Azure Marketplace
- Microsoft Azure – cloud infrastructure and data hosting
- Google reCAPTCHA – bot protection on registration forms
7. Cookies
The Service uses session cookies necessary for authentication and secure operation. We do not use tracking or advertising cookies. You may disable cookies in your browser settings, but doing so may affect the functionality of the Service.
8. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal information we hold about you
- Request correction of inaccurate data
- Request deletion of your personal data
- Object to or restrict certain processing
- Data portability
To exercise any of these rights, please contact us using the information in Section 12.
9. Artificial Intelligence
The Service includes optional features that use third-party artificial intelligence (AI) services to analyze your DMARC data and provide insights. Your data is only transmitted to AI services when you explicitly initiate one of these features. We do not automatically send your data to any AI service during normal use of the Service.
When you choose to use an AI-assisted feature, the relevant data (such as DMARC report summaries or domain configuration details) is sent to the AI provider solely to fulfill your request. This data is not used to train AI models. You can use the Service fully without ever triggering any AI features.
10. Children's Privacy
The Service is not directed to individuals under the age of 18. We do not knowingly collect personal information from children. If you believe we have inadvertently collected information from a child, please contact us immediately.
11. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will revise the "Last updated" date at the top of this page. Continued use of the Service after any changes constitutes your acceptance of the revised policy. We encourage you to review this page periodically.
12. Contact Us
If you have questions or concerns about this Privacy Policy or our data practices, please contact us:
Denny Cherry & Associates Consulting, LLCEmail: privacy@dcac.com