Clarity may collect IP addresses and technical records when you visit the website. When Clarity software is executed, Clarity may also process hardware or device identifiers and security telemetry for authentication, anti-abuse, compatibility, and protection of the service.
1. Scope of this Policy
This Privacy Policy explains how Clarity handles information when you access the Clarity website, use a key or authentication flow, execute Clarity software, interact with an API, contact support, or use another service operated under the Clarity name.
This Policy does not control independent third-party services, including external platforms, access providers, advertising platforms, video platforms, community platforms, hosting providers acting for their own purposes, or websites linked from Clarity. Their policies apply to information they collect directly.
2. Who operates Clarity
Clarity is operated by its owners and authorized administrators. References to “Clarity,” “we,” “us,” and “our” mean the person or entity responsible for operating the service at the relevant time. If a formal operating entity is later established or publicly designated, this Policy may be updated with its exact legal name, address, and jurisdiction.
3. Information collected from the website and network requests
When you visit or interact with the website, servers and infrastructure providers may automatically process technical information needed to deliver and protect the service. This may include:
- IP address and approximate region derived from the IP address;
- request date and time, requested page, referring page, response status, and network metadata;
- browser type, operating system, device category, language, and interface characteristics;
- cookies, session identifiers, authentication state, rate-limit records, and security tokens;
- administrative login attempts, failed authentication events, and abuse-prevention records;
- error messages, performance data, diagnostics, and information submitted through forms;
- communications sent to support or administrators.
Ordinary website access does not necessarily reveal a true operating-system hardware identifier. Hardware or device identifiers described below are associated with executed software or technical environments where that information is available.
4. Information collected when Clarity software is executed
When you launch or execute Clarity software, it may communicate with Clarity servers to authenticate access, retrieve content, verify compatibility, or protect the service. Depending on the execution environment, Clarity may collect or generate:
- hardware identifiers, device identifiers, or similar persistent technical identifiers where available;
- hashed, tokenized, or transformed versions of hardware or device identifiers;
- platform, operating-system version, software version, and execution-environment characteristics;
- key, license, session, installation, or authorization identifiers;
- IP address, timestamps, request metadata, and server response information;
- software version, environment identifiers, and compatibility signals;
- error reports, crash information, performance events, and diagnostic logs;
- security events indicating tampering, replay attempts, automated abuse, unauthorized redistribution, or unusual access patterns.
A hardware identifier may be used to recognize a device or technical environment. It may be stored directly, hashed, tokenized, or combined with other security records. A transformed identifier can still be personal data when it can be linked to a device, session, key, or account, so this Policy treats such identifiers as protected technical information.
5. Why Clarity uses information
Clarity may use information for the following purposes:
- to operate the website, software, APIs, dashboards, and access systems;
- to authenticate users, sessions, devices, or execution environments;
- to validate access, enforce device or session limits, and prevent unauthorized sharing;
- to detect fraud, abuse, automated attacks, tampering, malicious redistribution, and attempts to bypass access controls;
- to rate limit requests, block harmful traffic, investigate incidents, and maintain service integrity;
- to diagnose errors, improve performance, test compatibility, and maintain supported features;
- to communicate service notices, respond to support requests, and enforce the Terms of Service;
- to comply with legal obligations, valid requests, and the protection of users, infrastructure, and third parties.
Clarity does not sell hardware identifiers or IP addresses as a standalone commercial product. If our practices materially change, this Policy will be updated.
6. Legal bases for processing
Depending on your location, Clarity may rely on one or more legal bases: performing a service you requested; pursuing legitimate interests such as security, fraud prevention, compatibility, and service improvement; complying with legal obligations; protecting vital interests; or obtaining consent where consent is legally required.
Our legitimate interests include preventing unauthorized access, protecting infrastructure, enforcing reasonable service limits, maintaining accurate security records, and understanding whether the service functions correctly. We consider the sensitivity and impact of the information when applying these interests.
9. Data retention
Clarity retains information for as long as reasonably necessary for the purpose for which it was collected. Retention periods may vary by category:
- short-lived session and request data may expire automatically;
- authentication, rate-limit, and operational logs may be retained for troubleshooting and security;
- hardware or device identifiers linked to enforcement, access validation, or abuse prevention may be retained while needed to prevent repeated misuse;
- incident records may be retained longer where they are relevant to a security investigation, dispute, legal obligation, or repeated violation;
- support messages may be retained while the request is active and for a reasonable follow-up period.
When information is no longer reasonably required, we may delete, aggregate, or anonymize it. Backup systems may retain residual copies for a limited period before automatic deletion.
10. Security measures
Clarity uses technical and organizational measures intended to protect information, which may include restricted administrative access, signed sessions, secret management, rate limiting, access logging, encrypted network transport, database controls, credential rotation, and monitoring for suspicious activity.
No system is completely secure. We cannot guarantee that unauthorized access, loss, or misuse will never occur. Users should not publicly share keys, passwords, session tokens, webhook secrets, API credentials, or full device identifiers. If you believe information has been exposed, contact Clarity through an official private support channel.
11. International processing
Clarity’s owners, administrators, users, and service providers may be located in different countries. Information may therefore be processed in the United States and other jurisdictions where Clarity or its providers operate. Those jurisdictions may have data-protection rules different from those in your location.
Where required, Clarity will use reasonable safeguards for international transfers, subject to the size and structure of the service and applicable law.
12. Your choices and privacy rights
Depending on your jurisdiction, you may have rights to request access, correction, deletion, restriction, objection, portability, or information about the handling of personal data. Some rights are limited where records are required for security, fraud prevention, legal compliance, dispute handling, or the rights of others.
You may stop future collection from Clarity software by no longer executing or using it. You may clear local browser storage through your browser settings, although doing so may sign you out or reset preferences. Blocking necessary cookies or requests may prevent the service from working.
Requests should identify the relevant service and provide enough information for Clarity to locate the record without requiring you to post sensitive identifiers publicly. We may need to verify that the requester is connected to the relevant account, key, session, or device record before acting.
13. Children and younger users
Clarity is not intended to collect personal information from children in violation of applicable law. Users who are not legally able to consent to data processing or enter the Terms should use the service only with permission and supervision from a parent or guardian where required.
If a parent or guardian believes a child submitted personal information unlawfully, they should contact Clarity through an official private support channel with enough detail to investigate.
14. Third-party services and links
Clarity may link to or embed services operated by third parties, including access providers, advertising platforms, community platforms, video hosts, databases, and infrastructure providers. Their collection and use of information are governed by their own policies.
Clarity does not control the privacy or security practices of independent third parties. Review their policies before providing information, downloading software, or completing an external authentication flow.
15. Changes to this Policy
We may update this Policy when data collection, security systems, service providers, ownership, features, or legal requirements change. The “Last Updated” date identifies the current version. Material updates may also be announced on the website or through official community channels.
16. Privacy contact
Privacy questions, requests, and security concerns should be submitted through Clarity’s official website or official private support channels. Do not publish passwords, API keys, full IP logs, raw hardware identifiers, or other secrets in a public channel.