Privacy and data handling

Effective September 10, 2026. Strigs API operates FirmSignalIQ.

We store hashed API keys, subscription and customer identifiers, usage counters and snapshots of public website information to provide the service, enforce plan limits and compare observations. Public snapshots may be reused across customers. API queries are not intended for confidential or personal data.

Stripe handles checkout, payment details and invoices. The API does not store full card numbers. Render hosts the service and database. Operational logs can contain request paths, domains, timestamps and connection details. Checkout uses temporary browser session storage for the private key-claim token and clears it after successful delivery.

The history API returns observations from the preceding 90 days. Older observations are deleted when that domain is refreshed; inactive-domain records and backups may persist longer. Billing records may be retained for accounting and dispute handling. Contact support to request access, correction or deletion of account data; required records may need to be retained.

Credentials and recovery codes are sensitive. Store them privately and rotate API keys when needed. Contact the support address below with privacy questions.