SeeMeNot Terms of Service →

Privacy Policy

Last updated: 27 August 2026 Applies to: seemenot.com and the SeeMeNot browser service
In short: we keep what we need to run your account, take payment and meter your usage — and little else. Sessions throw their browsing away when they end unless you ask us to save it. We do not sell your information and we run no advertising trackers. Section 4 is the important one: it says plainly what we can technically see, because a privacy policy that overpromises is worthless.

Contents

  1. Who this covers
  2. What we collect
  3. Your browsing
  4. What we can and cannot see
  5. Why we use it
  6. Who we share with
  7. How long we keep it
  8. How we protect it
  9. Cookies and tracking
  10. Your choices
  11. California privacy rights
  12. Customers outside the US
  13. Children
  14. Legal requests
  15. Changes
  16. Contact

Who this covers

This policy explains how SeeMeNot (“we”, “us”) handles personal information when you visit seemenot.com or use the SeeMeNot browser service (the “Service”).

It sits alongside our Terms of Service.

What we collect

CategoryWhat it isWhere it comes from
Account Your name, email address, a hashed version of your password, and whether your email has been verified. You, at sign-up.
Billing The plan you bought, the amount, the date, whether it is monthly or yearly, the renewal date, and the reference number our payment provider returns for each transaction. You and our payment provider, at checkout.
Card details Card number, expiry date and security code are collected at checkout and passed to our payment provider to take the payment. We do not retain your card number or security code. You, at checkout.
Usage How long your browser sessions were actively connected, and how many bytes passed through your private network connections. Session start and stop times. Measured automatically by the Service.
Settings Your saved browsing preference, ad-blocking preferences, the device profiles you create and the countries you choose to browse from. You, in your dashboard.
Technical logs Records of requests to our website and API: IP address, timestamp, the address requested, the response, and your browser's user-agent string. Recorded automatically by our servers.
Support Anything you send us when you get in touch, and our replies. You.

We do not ask for, and have no use for, government identifiers, biometric data, precise geolocation from your device, or any special category of sensitive personal information.

Your browsing

This is the part most people care about, so it is set out separately.

By default, nothing is kept

A browser session is disposable. When it ends, the whole thing — history, cookies, cache, local storage, anything downloaded into it — is destroyed along with it. We do not keep a record of the websites you visited, and we do not build a profile of your browsing.

If you switch on saved browsing

Your dashboard has a “Remember My Browsing” switch. It is off unless you turn it on. With it on, your browser profile — cookies, logins and site data — is kept between sessions so you do not have to sign in to everything again.

That saved profile lives inside an encrypted store on our disks. It is kept while the setting is on. If you switch it off, the profile is retained for a limited period in case you change your mind, and is then deleted automatically. Deleting your account deletes your saved profiles.

What we meter

We count how long you browsed and how many bytes moved, because that is what you are billed on. We do not record what those bytes were or which sites they went to.

What we can and cannot see

The browser runs on our machines. Being honest about what that means matters more than sounding reassuring, so:

While a session is running, its data exists in unencrypted form on our servers. That is unavoidable — the browser has to decrypt pages to display them to you. Encryption protects your saved profile when it is at rest on disk: against a stolen drive, a lost backup, a disk sent back to a supplier, or a copied snapshot. It does not, and cannot, protect against someone with administrative access to a live machine while your session is open.

In practice this means:

  • We do not monitor, log or inspect your browsing, and we have no wish to.
  • We could technically do so, as could anyone who compromised our infrastructure. Access to production systems is restricted to the small number of people who need it to operate the Service.
  • SeeMeNot is not suitable for information whose exposure would be catastrophic — the kind of material that calls for end-to-end encryption or an air-gapped machine. It is built to stop websites profiling and linking you, not to defend against a determined attacker who already has our servers.
  • Your traffic reaches the internet through third-party network providers. Those providers can see the servers your traffic is going to, in the same way any internet provider can.

Why we use it

  • To run the Service — create your account, start your browser, apply your settings, keep your saved profile if you asked for one.
  • To bill you correctly — measure time and data, take payment, issue receipts, keep the accounting records the law requires.
  • To support you — answer your questions and investigate problems you report.
  • To keep the Service working and safe — diagnose faults, plan capacity, detect abuse, and enforce our Terms.
  • To comply with the law — meet tax, accounting and legal obligations, and respond to valid legal process.

We do not use your information for advertising, and we do not profile you for marketing.

Who we share with

We do not sell your personal information, and we do not share it for cross-context behavioural advertising. We disclose it only as follows:

WhoWhat they getWhy
Payment processorYour card details, the amount, your emailTo take payment. They handle card data under their own terms and card-industry rules.
Network providersTraffic passing through the exit addresses you useTo carry your browsing to and from the internet.
Email providerYour email address and the messageTo send account and receipt emails.
Hosting / infrastructureWhatever is stored on the serversTo host the Service.
Professional advisersOnly what is necessaryAccounting, legal and audit work.
AuthoritiesOnly what a valid request compelsSee section 14.
A successorAccount and billing recordsIf the business is sold or merged. We would tell you.

How long we keep it

WhatHow long
Session browsing data (saved browsing off)Destroyed when the session ends.
Saved browser profilesWhile the setting is on. Once switched off, retained for a limited period, then deleted automatically.
Account detailsWhile your account exists, then deleted.
Usage and billing recordsAs long as needed for accounting, tax and audit — normally several years after the transaction, as required by law.
Technical logsA limited period for security and troubleshooting, then deleted or overwritten. No longer than twelve months.
Support correspondenceWhile it is useful for your support history, then deleted.

Where we must keep a billing record, we keep the record — not your browsing.

How we protect it

  • Traffic between you and us is encrypted in transit using HTTPS.
  • Saved browser profiles are held in an encrypted store on disk.
  • Passwords are stored hashed, never in plain text.
  • Your browser session is reachable only by you: every request is checked against the session's owner.
  • Each browser session runs isolated, and each tab has its own separate storage.
  • Access to production systems is limited to those who need it.

No system is perfectly secure, and we cannot guarantee absolute security. Please read section 4 for what our encryption does and does not cover.

Cookies and tracking

We use cookies only to make the Service work. Specifically, a cookie that keeps you signed in and identifies your session to our servers. Clearing it signs you out.

We do not use advertising cookies, analytics cookies, marketing pixels, session recording, fingerprinting or any third-party tracker on our website. There is no cookie banner because there is nothing to consent to beyond the cookie that signs you in.

Cookies created inside the browser you are running on our servers belong to the sites you visit, and are governed by their policies — not this one. They are destroyed with the session unless you have switched saved browsing on.

Your choices

  • Do not save my browsing. Leave the saved-browsing switch off — it is off by default — and every session starts clean and disappears when it ends.
  • Delete a saved profile. Switch saved browsing off, or delete individual profiles from your dashboard.
  • Get a copy of your data. Ask us and we will send you the account, billing and usage records we hold about you.
  • Correct your details. Update them in your dashboard, or ask us.
  • Delete your account. Ask us and we will delete your account and saved profiles, keeping only the billing records the law requires us to keep.
  • Stop account emails. Transactional emails such as receipts cannot be switched off while you hold an account, because they are part of the Service.

Write to support@seemenot.com. We will respond within 45 days, and will verify who you are before acting on a request about an account.

California privacy rights

If you live in California, the California Consumer Privacy Act as amended by the CPRA gives you specific rights. This section explains them.

What we collect, in CCPA terms

In the twelve months before the date of this policy we have collected these categories of personal information: identifiers (name, email, IP address); commercial information (plans purchased, transaction records); internet or network activity (usage metering, request logs); and customer records (billing details). The sources, purposes and recipients are set out in sections 2, 5 and 6.

Sale and sharing

We have not sold personal information, and we have not shared it for cross-context behavioural advertising, in the preceding twelve months. We do not do either. We do not knowingly sell or share the personal information of anyone under 16.

Sensitive personal information

We do not collect sensitive personal information as the CPRA defines it, and therefore have nothing to limit the use of.

Your rights

  • Know what we have collected about you, where it came from, why, and who received it.
  • Delete personal information we hold, subject to legal exceptions such as records we must keep for tax.
  • Correct inaccurate personal information.
  • Opt out of sale or sharing — there is nothing to opt out of, as we do neither.
  • Not be discriminated against for exercising any of these rights. We will not deny you the Service, charge you differently or give you a worse experience.

To exercise a right, email support@seemenot.com. You may use an authorised agent; we will ask for proof of their authority. We will confirm receipt within 10 business days and respond within 45 days, extendable once where necessary.

Customers outside the US

The Service is operated from the United States and your information is processed there. If you are using it from elsewhere, you understand that your information will be transferred to and handled in the United States, where data protection law differs from your own.

This policy is written to United States standards. It does not yet set out the additional rights that the EU and UK General Data Protection Regulations give people in those regions. If you are in the EU or the UK and want to exercise a right under the GDPR, write to support@seemenot.com and we will deal with your request.

Children

The Service is for adults. It is not directed at children, and we do not knowingly collect personal information from anyone under 18. If you believe a child has given us information, write to us and we will delete it.

Legal requests

We will disclose information if we are legally required to — for example under a valid subpoena, court order or warrant — or where we believe in good faith that disclosure is necessary to prevent imminent harm to a person.

We review every request, we require it to be valid and properly served, and we disclose only what it actually compels. Where we are permitted to tell you that your information has been requested, we will.

What we can hand over is limited by what we hold. For sessions with saved browsing switched off, no browsing record exists to produce.

Changes

We may update this policy. The “last updated” date at the top shows the current version. If we make a material change to how we use your information, we will tell you by email or by a notice in the Service before it takes effect.

Contact

Privacy questions, or to exercise any right in this policy: support@seemenot.com.

See also the Terms of Service.

© 2026 SeeMeNot. All rights reserved. Home · Terms of Service · Contact