Frequently asked questions
What if I see a partial scan?
An amber banner appears in /assets when some external sources (DNS registries, breach databases) don't respond. Re-running the scan usually fixes it. If the warning persists across 3 consecutive scans, contact support — that is a signal of an incident on our side.
My scan found no leaks — is that normal?
Yes. It means the public breach databases we query do not contain your addresses. That is a good sign. It does not guarantee there are no private, undisclosed leaks — no tool has access to what has never leaked publicly.
Does the PDF report have legal standing?
No. All our PDFs are draft documents, to be approved by your DPO or legal counsel before you send them. KryptaScope explicitly refuses the role of third-party certifier. The PDF is a business artefact (insurer, audit, due diligence), not an official document.
How is the data stored?
Hosted in the European Union. No passwords stored in clear text. No access to your internal systems. Only the results of public-source scans are retained. Our full subcontractor list and the DPA are on the Security page, and available on request.
How do I cancel?
One click from your dashboard, no retention questionnaire. Billing stops at the end of the current cycle. On request, data is deleted within 30 days, with written confirmation.
Do you have live chat?
Not for now. We would rather guarantee a real answer by email or ticket than run a chat with unpredictable response times. If you need an actual conversation, ask for a demo or a call.