Skip to content
AIFakeScan.
Image detectorVideo detector
Tools
Live Photo CheckerC2PA checkerSynthID
EnterpriseResources
Start a scan
  1. Home
  2. Privacy
PRIVACY POLICY

Privacy should be part of the scan.

This policy explains what AI Fake Scan processes when you visit the site, submit media, view a report or contact us—and the controls available to you.

EFFECTIVE · SEPTEMBER 26, 2026Uploads and analysis records are retained privately for future analysis until you request deletion. Report access expires separately.
YOUR MEDIAPrivate retention for analysis

Images, videos and Live Photo components are retained for future analysis until you delete them.

YOUR RESULTPrivate per scan

Signed-in scans belong to your account. Guest scans use a secret owner token in your browser, stored only as a one-way hash by the service.

OUR BUSINESSNo sale or ad targeting

We do not sell personal information or share it for cross-context behavioral advertising.

ON THIS PAGEScopeInformationHow we use itSharingRetentionYour choicesBrowser storageInternational useChildrenContact

Service operator: EasyGlobe. AI Fake Scan is an EasyGlobe product. References to “we,” “us” and “our” in this policy refer to EasyGlobe as the operator of this service. Learn more about EasyGlobe and AI Fake Scan.

1. Who this policy covers

AI Fake Scan (“AI Fake Scan,” “we,” “us” or “our”) is responsible for the processing described in this policy. It covers aifakescan.com, its scan service and messages you send to us. It does not govern third-party sites that you choose to visit.

We process personal data to provide a service you request, protect the service and pursue our legitimate interest in operating a safe, reliable product. Where consent or another legal basis is required, we will use that basis.

2. Information we process

The exact information depends on how you use the service.

Submitted media

The image, video or supported audio file you upload, filename, file type, declared size and derived material needed for analysis, such as selected frames or audio.

Scan information

A random scan ID, timestamps, processing status, detected file metadata, evidence findings, limitations and the resulting report.

Security and product events

IP address and a salted one-way representation used for rate limiting, Cloudflare security signals, and limited tool events such as start, completion, failure, report download or an official-verifier click.

Messages to us

Your email address, message and any information you voluntarily include when you contact support, privacy or security.

No account is required for the current Basic Scan. If you choose to register, Clerk processes your profile, email address, authentication credentials and session data. We store your Clerk user ID with scans created while signed in or explicitly linked by you. We do not collect payment details in the scan flow.

3. How we use information

  • Receive, decode and inspect a submitted file; generate and privately deliver its report.
  • Validate uploads, prevent abuse, apply rate limits and protect the service and its users.
  • Diagnose failures, maintain reliability and understand aggregate service operation.
  • Respond to requests and communicate about support, privacy, legal or security matters.
  • Comply with law, enforce our terms and protect rights, safety and the integrity of the service.

We retain submitted originals and their analysis records for later analysis, detector evaluation and service improvement. A training preference control is not currently available. We will explain any future training feature and its available choices before introducing it.

4. Where information is processed and disclosed

Cloudflare infrastructure

We use Cloudflare to deliver and secure the site and to run the current scan infrastructure, including network protection, Turnstile, object storage, databases, queues, workflows and compute. Your browser uploads media directly to a short-lived Cloudflare R2 address. Cloudflare may process network, device and security signals under its role in providing those services. Cloudflare describes its challenge processing in the Turnstile Privacy Addendum.

Clerk authentication

Clerk provides registration, sign-in, profile management and account security. It processes account and session information to provide those features. Uploaded media and analysis reports are not sent to Clerk. Profile information is managed in your personal center; we store the account identifier needed to authorize access to your scans.

Current detector boundary

Standard Basic Scans and C2PA checks run inside our Cloudflare environment. When available and explicitly selected, the SynthID check sends the original supported image or audio file to OpenAI’s Content Provenance API. This check only covers supported OpenAI signals, and its data handling is subject to OpenAI’s API policies; it is not eligible for Zero Data Retention. The upload form identifies this transfer before submission. Other listed providers remain pending for direct integration. Opening an external verifier, such as Gemini or ElevenLabs Audio Detector, takes you to a separate service, where you choose whether to upload a file. Files are not automatically forwarded to those services. Any future public Deep Scan will identify additional detector transfers before you choose it.

Other limited disclosures

We may disclose information to vendors that help us operate the service under appropriate restrictions; when reasonably necessary to comply with law or protect people and the service; or in connection with a merger, financing, acquisition or transfer of the business. We do not sell personal information.

5. Retention and deletion

Uploaded originalsAccepted images, videos, audio clips and Live Photo components are stored in private Cloudflare R2 storage until you request deletion. There is no automatic time-based deletion of these originals. A failed analysis does not automatically delete an accepted upload. Temporary frames, audio and other processing copies are removed after the analysis process finishes.
Analysis records and report accessAnalysis results, file details and processing history are retained in Cloudflare D1 for future analysis. Access to the full report expires 45 minutes after creation; this does not delete the retained original or analysis record. For account-linked scans, your personal center retains history and deletion controls across devices. Guest scan deletion remains available through the result URL while your browser retains its owner token. Choosing “Delete uploads and report” requests deletion of the original, companion media and associated analysis records; temporary failures are queued for retry.
Account deletionDeleting your Clerk account requests deletion of its linked uploads and analysis records. After receiving the verified deletion notification, we revoke account access and queue cleanup; temporary failures are retried. A minimal account identifier and deletion timestamp are retained to prevent reuse of an already-deleted account. Unlinked guest scans must be deleted separately using their browser token.
Deleted record shellAfter deletion, identifying scan fields and the result are scrubbed. A minimal deleted status record can remain for up to 24 hours to make cleanup reliable.
Security and operational dataKept only as reasonably needed for security, troubleshooting and legal obligations. Infrastructure providers may retain service logs according to our settings and their contractual policies.
Messages to usKept for as long as needed to respond, maintain an appropriate business record and meet legal obligations.

Deleting a scan does not delete a copy you separately sent by email. Please do not email sensitive media unless we ask for it and you are authorized to share it.

6. Your privacy choices and rights

Depending on where you live and subject to legal exceptions, you may have rights to request access to, correction of, deletion of or a copy of personal data; object to or restrict certain processing; withdraw consent; and appeal or complain to a privacy regulator.

California residents may also have rights to know, delete and correct personal information, to limit certain uses of sensitive personal information, to opt out of sale or sharing, and not to be discriminated against for exercising a privacy right. AI Fake Scan does not sell personal information or share it for cross-context behavioral advertising.

Send a request to hello@aifakescan.com with “Privacy request” in the subject. We may need to verify that you control the relevant email address or scan access token. Account-linked scans can be managed after signing in on another device. Guest owner tokens are not recoverable by us. Keep the result URL and the browser storage used for your upload so you can request deletion directly, even after the report expires. If you lose access, contact us with the scan ID; we may need additional information to verify your request.

7. Cookies, analytics and browser storage

The guest scan flow stores the secret owner token in local browser storage so you can revisit your result URL and request deletion after closing a tab or after report access expires. Anyone with access to that browser storage may be able to use the token. Clearing site data removes the token and can prevent direct access and deletion from that browser.

Clerk uses authentication cookies and session storage to keep you signed in. Signing out prevents further access to account-linked scans until you sign in again. Linking a guest scan invalidates its guest access token.

Cloudflare Turnstile processes security signals needed to distinguish people from automated abuse. Depending on its mode and security state, Cloudflare may use necessary storage or cookies.

Google Analytics receives public-page views and a small set of product events with a general tool label. Enhanced measurement and automatic page-view collection are disabled. Each product event uses the relevant public tool URL and an empty referrer, so account and authentication pages, user IDs, private scan URLs, scan IDs, filenames, uploaded media and report contents are not included in the event fields we configure. Google may process device and network information under its own terms. We do not use advertising cookies or third-party behavioral advertising trackers.

8. International processing

AI Fake Scan is available globally, and our infrastructure providers may process information in countries other than yours. Where required, we rely on contractual and other lawful transfer safeguards. Local privacy rights may continue to apply to your information.

Security

We use technical and organizational measures intended to protect data, including restricted object access, hashed access tokens and encrypted network connections. No online service can guarantee absolute security.

9. Children

AI Fake Scan is a general-audience service and is not directed to children under 13. We do not knowingly collect personal information from children under 13. If you believe a child has submitted personal information, contact us so we can review and delete it where appropriate.

10. Changes and contact

We may update this policy as the service, providers or legal requirements change. We will post the revised date here and provide additional notice when a material change requires it.

For privacy questions or requests, email hello@aifakescan.com. You can also review our Terms of Use or visit the contact page for message guidance.

KEEP CONTROL OF THE FILE

Scan it. Review it. Delete it.

Keep your result URL and browser storage to delete retained uploads, including after the report expires.

Start a Basic Scan
AIFakeScan.

A clearer picture of where your media comes from. Built around evidence, with the limits in plain sight.

Evidence-first · Beta

Explore

AI image detectionAI video detectionLive Photo detectionC2PA checkerSynthID checkerEnterpriseResources

Understand

How it worksOur methodologyDetection coverageCommon questions

Trust & support

About EasyGlobe & AI Fake ScanPrivacyTermsContactDetection limitations
© 2026 AI Fake ScanMore context. Better-informed decisions. English