Privacy policy
Who we are
SeekAndPatch (formerly named NoTimeForThis: earlier versions of the application carry that name) is published by Keko, the controller of the processing described here. Contact: [email protected].
In short
SeekAndPatch runs on your computer. It detects the devices of your setup and compares their versions with a database downloaded in full: the comparison happens on your computer. No ads, no usage statistics, no sale of data. We only receive information in the cases below.
What we receive
- License and trial. A fingerprint of the computer (a code computed from its hardware identifiers, which cannot be turned back into them), the license key you enter, the activation and check dates, and the number of trial scans and application launches used. Purpose: providing the license, enforcing the trial limit and the usage rules (one computer per key, three computer changes a year). Legal basis: performance of the license agreement, and our legitimate interest in preventing trial abuse. Retention: for the life of the license; history of computer changes: 12 months; trial counts: 3 years after the trial was last used; technical logs of the license service: 30 days at most.
- Database updates. Your computer downloads the full database. No information about your devices is sent.
- Unknown model reports and diagnostic data, only if you agree (nothing is chosen in advance: you answer "Yes" or "No thanks" when the application finds devices it does not recognize; after a "no", the question comes back only once, a month later; can be changed at any time in Options > General; asked again once since version 0.1.5, because what is sent has changed). For a device missing from the database: brand, model and model identifiers (USB identifier, manufacturer prefix of the network address, SNMP identifier, RDM manufacturer code, Art-Net code). For a device missing from the database, whose version cannot be read, of unknown status or in error: its technical data as the application read it (USB descriptors, answers of the network and audiovisual protocols, manufacturer prefix of the network address), with the application version, the type of system (for example "windows x86_64") and the day it was detected. Never a serial number, an IP address or a full network address, nor a device, network or computer name: they are removed before sending, and again on receipt. Legal basis: consent. Reports are merged per model (a counter and a few variants of data), with no link to you or your computer, and kept as long as they help complete the database. Withdrawing your agreement stops the reports and deletes what was waiting on your computer.
- Bug reports, only if you send one and tick the consent box. Your description and, depending on your choices in the sending window: application and system versions, application logs and list of devices (IP addresses, network addresses, serial numbers and the names of computers and phones masked by default in both). Legal basis: consent. Retention: 90 days at most. A report number is shown to you: it is all you need to ask for its deletion.
What stays on your computer
The application's settings, logs and diagnostic log stay on your computer. They are never sent, except the logs you choose to attach to a bug report and, if you agreed to the reports above, the diagnostic log lines of devices that could not be identified (without names).
IP addresses
Every internet connection uses your IP address. Our servers keep no connection log: the address is only used, in memory, to limit the number of requests, and is never stored with your data. Cloudflare sees the IP address to carry the connection (see below).
Hosting and recipients
Our servers are run by the publisher, in France. Connections go through Cloudflare (Cloudflare, Inc., United States, certified under the EU-US Data Privacy Framework), which carries the traffic to our servers: this service sees the IP address and the content of requests while carrying them. Licenses and the firmware database are signed: their content cannot be altered without the application noticing. If you accept the installation of Npcap (network listening), the installer downloads it directly from npcap.com (Nmap Software LLC, United States), which sees your IP address. No other recipient. No cookies.
Your rights
You can ask to access, correct or erase your data, object to or restrict its processing, and withdraw your consent at any time. Write to [email protected] with your license key or report number: the application asks for neither your name nor your e-mail address, and these are what let us find your data. You can also lodge a complaint with the French data protection authority, the CNIL (www.cnil.fr), or with the authority of your country.
Security
Encrypted exchanges (HTTPS), signed license answers and database, data kept to the strict minimum, restricted access to the servers.
Changes
The date of the last update is shown at the top of this page. Any significant change will be announced.