Privacy policy
This policy explains how uploaded JAR files and analysis results are handled by Darky's RAT Checker.
1. Uploaded files
The service receives the JAR file you choose to upload solely to perform static analysis. The uploaded program is not intentionally executed. The original upload is deleted after analysis finishes or fails.
2. Temporary analysis data
Recovered source, bytecode output, text resources, findings, and report archives are stored temporarily so you can view and download the result. They expire automatically, normally within 60 minutes. Hosting restarts or deployments may delete them earlier.
3. Technical information
The hosting platform may process ordinary request information such as IP address, browser type, timestamps, error logs, and traffic measurements for security, reliability, abuse prevention, and service operation. The application uses an IP-based rate limit for public uploads.
4. Third-party file identification
The service may submit the uploaded file's cryptographic hash to Modrinth to check whether the exact file is publicly listed. The JAR itself is not sent to Modrinth by this application.
5. Sensitive information
Do not upload files containing personal information, credentials, confidential business information, or material you are not authorized to inspect. Certain token-like or webhook-like values are redacted from displayed evidence, but no automated redaction system is guaranteed to catch every secret.
6. Cookies and accounts
The current service does not require user accounts and does not intentionally set advertising or tracking cookies. The hosting or DNS provider may still apply necessary security and network controls.
7. Security and deletion limitations
Reasonable safeguards are used, including non-execution, file-size limits, archive checks, temporary storage, request limits, and security headers. No internet service can guarantee absolute security or instantaneous deletion from all transient infrastructure logs and backups.
8. Legal bases and consent
By voluntarily submitting a file, you request and consent to the processing needed to produce the analysis. Technical logs are processed for security, fraud prevention, troubleshooting and service integrity. Where consent is required, you may withdraw it for future processing by ceasing use of the service; completed processing and legally required records may not be reversible.
9. Service providers and cross-border processing
Hosting, DNS, content-delivery, logging and abuse-prevention providers may process technical information in Canada, the United States or other jurisdictions where they operate. Information handled outside Canada may be subject to lawful access by foreign authorities. The operator remains responsible for using providers and safeguards appropriate to the service.
10. Access, correction and complaints
You may request access to or correction of personal information reasonably identifiable as yours, or challenge the service's privacy practices, through the official DarkyDev Discord support system at discord.gg/darkydev. The service may need to verify identity and may refuse or limit a request where permitted or required by law.
11. Children
The service is not intended to collect personal information from children. Users under the age required to consent to online services in their jurisdiction should use the service only with authorization and supervision from a parent or legal guardian. Do not upload files containing a child's personal information.
12. Breach response
Suspected privacy or security incidents are assessed and handled according to applicable law and operational risk. Where legally required, affected individuals and regulators will be notified. Reports should be made promptly through the official support channel without posting secrets publicly.
13. Changes
This policy may be updated as the service, hosting configuration, or applicable requirements change. The effective date above identifies the current version.