Privacy Policy
This Privacy Policy describes how Intelligent Automation, LLC ("IA", "we") collects, uses, and retains information when you use Argos Doppler ("the Service").
What we collect
| Data | Purpose | Retention |
|---|---|---|
| Email address you submit | Deliver your report; suppression to prevent re-test abuse | 90 days for the scan; 30 days for the suppression window |
| Domain you submit | Run the scan; build aggregate (non-identifying) trend data | 90 days associated with you; aggregate metrics retained indefinitely in non-identifying form |
| Scan results (DNS, SMTP, reputation) | Generate the PDF report; surface findings on the result page | 90 days |
| Source IP and User-Agent | Rate limiting; abuse investigation | 90 days |
| Country code (Cloudflare-derived) | Anti-abuse and analytics | 90 days |
| Marketing consent (if you opt in) | Lead-management and follow-up by IA sales | Until you opt out |
| Audit log of submissions and report deliveries | Security incident response; integrity | 90 days |
What we do NOT collect
- We do not collect credentials, passwords, or any data from inside your infrastructure.
- We do not track you across other websites.
- We do not set advertising cookies. The Service uses only essential cookies required for the bot challenge and submission flow.
- We do not sell or rent your information to third parties.
How we use the data
The data you submit is used to:
- Run the email-security posture scan you requested.
- Deliver the scan result and PDF report to you.
- Enforce rate limits and the 30-day re-test suppression window to prevent abuse.
- If you opt in to marketing, contact you about IA security products and services.
- Investigate misuse, security incidents, or violations of our Terms of Service.
Sharing
We share information only with:
- Service providers that operate our infrastructure (Cloudflare for DDoS protection and Turnstile, SMTP2Go for outbound email delivery, Backblaze for storage if enabled). These providers process data only on our instructions.
- IA business systems — submitted leads (email + domain + marketing opt-in status) are forwarded to our internal CRM (Argos Service) only when you opt in to marketing or submit from a domain that matches an existing customer.
- Law enforcement when required by a valid legal process.
Your rights
You may request deletion of your scan data and email address from the Service at any time. Send a request to [email protected] identifying the email address you submitted. We will action verified requests within 30 days.
If you are in the EU, UK, California, or another jurisdiction with applicable privacy law (GDPR, UK GDPR, CCPA/CPRA), you may also have rights to access, correct, port, or restrict processing of your personal data. Contact [email protected] to exercise these rights.
Security
We use TLS in transit, encrypted storage at rest, scoped API tokens, rate limiting, and audit logging. No system is perfectly secure; we make no guarantee of absolute security.
International transfers
IA is based in the United States. By using the Service you understand your data is processed in the US and other jurisdictions where our service providers operate.
Children
The Service is intended for use by employees of organizations evaluating their own email security posture. It is not directed at children under 16, and we do not knowingly collect data from children.
Changes
We may update this Policy from time to time. Material changes will be reflected by updating the "Last updated" date above.
Contact
Privacy inquiries: [email protected]