Legal
Privacy policy.
What macadress.com collects, why, and how to get it deleted. Last updated August 22, 2026.
What we collect
MAC address lookups themselves aren't tied to an account: the address you look up, whether through the web form or the API, isn't stored against your identity. Request logs (IP address, requested path, timestamp) are kept briefly for debugging and abuse prevention, then rotated out.
If you create an account, we store your email address, a bcrypt hash of your password (never the password itself), your plan, and an encrypted copy of your API key. If you subscribe to a paid plan, Stripe handles payment details directly; we only ever see your Stripe customer and subscription IDs and subscription status, never your card number.
Cookies and analytics
We set two functional cookies: macadress_session, which keeps you logged in, and a CSRF token, which protects account and billing forms from cross-site request forgery. We also use Google Analytics (GA4) to see aggregate traffic and usage patterns, which sets its own cookies (_ga, _ga_*) and sends page-view data to Google. We don't run any ad scripts, and we don't use Analytics to identify individual visitors.
Sharing
We don't sell or rent your data. It's shared with two processors: Stripe, for payment processing on paid plans, and Google, for the aggregate analytics described above. We don't share account data with anyone else, and we don't share MAC lookup queries with anyone.
Data retention and deletion
Account data is kept for as long as your account is active. To delete your account and the data tied to it, email us at the address below; we'll confirm once it's done.
Contact
Questions about this policy or a deletion request: [email protected].