Privacy Policy

Effective date: October 5, 2026

1. What GuardianScam does

GuardianScam helps you evaluate suspicious texts, emails, phone calls, websites and links, payment requests, investment requests, and people or organizations claiming to be someone they may not be. You describe what happened and answer questions before deciding what to do.

GuardianScam provides guidance and risk signals. It does not guarantee that something is safe or fraudulent. Missing information is not proof of fraud, and AI does not independently confirm an identity or change a check result.

2. Information users provide

You choose what to submit. This may include message text, a link, a description of a call or request, your answers, names or organizations involved, and payment or investment details you choose to describe. Signed-in features can save notes or files you upload, information you deliberately ask GuardianScam to remember, help-step progress, and questions and replies in Ask GuardianScam.

We also process your email, optional display name, preferences and subscription records. Family payers can enter invited member emails; each member's checks and private information remain separate. Please do not enter passwords, complete card numbers, or security codes into a check.

3. Scam-check information

Your free guest check runs in your browser without saving the check to an account. While you work through it, text and answers are used on that page. When you finish, a copy of that check, answers, date, result and warning signs is stored on your device so you can choose to save it after signing in or creating an account. This copy has a seven-day expiry, checked when GuardianScam reads it; a closed browser will not necessarily erase it exactly seven days later. A separate free-check-used flag remains in browser storage.

The check is transferred to your account only when you explicitly agree. Declining removes the pending copy. Unrelated browser storage is not transferred. Limited usage events such as starting and completing the check are recorded separately without check contents.

Signed-in checks are saved to your account so you can review descriptions, answers, results and warning signs and continue help steps. Uploaded files use private account storage. Account-owner access controls restrict private protection information; a Family payer or another member cannot read it. The private marketing page shows marketing counts, not private check contents.

When you use Ask GuardianScam, your question, conversation and relevant account context are processed through the Lovable AI Gateway and OpenAI. Context can include recent check summaries and warning signs, remembered information and current help steps. Conversations are saved to your account. Other signed-in AI-assisted tasks can also send information you submit to the AI service. The guest check does not require this helper.

When you request a website preview, GuardianScam may retrieve that page. The website operator can receive the resulting request.

4. What GuardianScam does NOT do

GuardianScam does not secretly read your phone, automatically read text messages, or listen to phone calls. It does not inspect unrelated applications or their screens, and it does not access your address book. You choose what you submit for a check. GuardianScam does not obtain your full payment-card number from Stripe.

Optional browser protection is different: when installed and enabled, the add-on can examine the address and limited page text when it detects sensitive-input fields. Its page-warning decisions are local; it does not send browsing text to GuardianScam's account service. Opening a warning can pass the page address and reason into GuardianScam. This does not monitor texts, calls or unrelated apps.

Native phone protection uses only platform signals. Android can identify enabled accessibility services associated with remote access; iPhone can report when GuardianScam's own screen is being captured or shared. Neither signal gives GuardianScam other apps' screen contents. Availability depends on the installed app and platform. Quiet Protection also uses what you share, saved check state and preferences; it is not unrestricted background surveillance.

5. Account information

Email signup and sign-in use an email address and password handled by our authentication service. Your profile contains your email and optional display name. Google sign-in uses identity/profile information returned by Google; GuardianScam does not ask for your Google password.

Account records can include device identifiers, browser/device descriptions, platform, last-used times, preferences, alerts and account activity. These support your device list, account access and account management.

6. Payments

Stripe processes subscription payments and collects card and billing information directly through its payment forms. GuardianScam does not receive or store full credit/debit-card details. We keep subscription information such as Stripe customer/subscription identifiers, plan, payment/subscription status, billing-period dates and cancellation status to manage access and renewal.

Stripe processes payment and billing information under its own privacy practices: https://stripe.com/privacy. Managing payment details or your subscription opens Stripe's customer portal.

7. Analytics and marketing attribution

We record visits, free-check starts/completions, signups, checkout starts, subscription purchases, plan and related revenue information, referral source and campaign tags (UTM source, medium and campaign). A random browser identifier connects these steps; events may also link to your account identifier after sign-in. First-touch and last-touch attribution are retained where available.

This measures service performance and marketing effectiveness. Marketing-event records do not contain private check/message contents, passwords, card details, email addresses or IP addresses. Hosting and security providers may separately process connection information to deliver and protect the service.

GuardianScam does not sell personal information as part of the current service.

8. Cookies and browser storage

The app uses browser storage for sign-in tokens, device identification, selected plan, limited settings and guided-step progress. Our authentication service manages sign-in storage and may use cookies where required for sign-in. Signing out is not the same as clearing all site storage.

Local storage holds the free-check-used flag, pending guest check, random visitor identifier and first/last campaign attribution. Session storage limits repeat visit events within a browser-tab session. Guided progress expires when checked during restoration. Marketing attribution and visitor identifiers do not currently have an automatic app expiry.

You can clear cookies and site storage in browser settings. This can sign you out and remove on-device progress, pending checks and attribution, but not information already saved to your account or held by Stripe.

9. Service providers

GuardianScam uses Lovable hosting and Lovable Cloud for authentication, database and private file storage; Stripe for payments; Google for optional Google sign-in and web-font delivery; and the Lovable AI Gateway and OpenAI for AI-assisted features. They process information needed for these functions.

These providers may process and store information in locations they operate. GuardianScam does not promise a particular storage country or provider retention period.

10. How information is used

We use information to provide checks and guidance, save/resume your work, maintain accounts, manage subscriptions and Family access, deliver supported alerts, protect the service, prevent abuse, troubleshoot problems, understand performance and improve GuardianScam. AI is not independently verified truth; another customer has no authority over your protection decisions.

11. Sharing

Service providers process information as needed to operate the product, process payments, provide infrastructure and AI assistance, or maintain security. Information may be disclosed when required by law or necessary to address abuse or protect legal rights. Your check history is not made available to other customers or Family members.

12. Data security

GuardianScam uses safeguards including sign-in requirements, account-owner access controls and private file storage. No internet service can promise absolute security. Keep your sign-in details private and avoid submitting sensitive information that is not needed for a check.

13. Data retention

Signed-in checks, helper conversations, remembered information and help progress are saved so you can return to them. Settings offers history-retention choices and the service contains account-scoped cleanup logic, but a recurring automatic cleanup schedule is not currently verified. We do not promise automatic deletion of all account information after your selected period or when a check result expires.

The seven-day pending-guest-check expiry is enforced when that copy is read; clearing site storage also removes it. Account, subscription, marketing and security/audit records have no single verified automatic deletion period. Deleting Guardian history is not full account deletion and does not erase Stripe records, all saved helper/remembered information, or security/audit records. Removing a stored file reference does not prove that the underlying file was erased.

GuardianScam does not promise a specific deadline for erasing backups or provider-held records. For questions about deletion, contact GuardianScam Support.

14. Your choices

Settings lets you update your display name, manage supported alert preferences, review devices and sign out. You can review your own history and choose whether to save a pending guest check. Remembered information has its own management page.

Manage payment details and your plan through the Stripe portal linked from Settings. Cancellation stops renewal while access continues through the paid period. “Delete my Guardian history” asks for confirmation, first attempts to stop renewal, and removes checks and related check/help records. If stopping renewal fails, that action stops without deleting history. It does not close your sign-in account or erase every stored data type.

For privacy questions or requests, sign in and contact GuardianScam Support. This includes corrections and account or data requests beyond these controls. Rights available under the law where you live are not limited by this policy.

15. Children

GuardianScam accounts are intended for adults age 18 and older. GuardianScam is not intended for children under 18. If you believe a child under 18 has created an account, contact GuardianScam Support.

16. Changes to this policy

This policy may be updated as the service or applicable requirements change. The effective date will change when material updates are made. Review this page for the current version.

17. Contact

GuardianScam is operated by the business owner responsible for this service. For privacy questions or requests, sign in and contact GuardianScam Support through the in-app support system at /support. GuardianScam does not publish a personal email address or phone number for support.