Data & Third-Party Sharing Policy

Last updated: March 1, 2026

Our commitment: We do not sell your personal data.

iino does not sell, rent, or trade personal information to third parties for marketing or advertising purposes. Period.

1. What Data We Collect

For a complete list of data we collect, see our Privacy Policy. In summary:

Data Type Examples Purpose Shared?
Profile Data Name, headline, bio Platform display Public
Contact Info Email, phone Account management No
Browser Fingerprint Canvas hash, WebGL, plugins Bot detection No
Behavioral Telemetry Mouse movements, scrolls, timing Bot detection No
TLS Fingerprint JA3/JA4 hashes Bot detection No
IP Address IPv4/IPv6 Security, geo-location No
Session Data Pages visited, timestamps Analytics, security No

2. Third-Party Services

iino integrates with a limited number of third-party services, each with a specific and necessary purpose:

2.1 Infrastructure Providers

  • Amazon Web Services (AWS) — cloud hosting and database infrastructure. AWS processes data on our behalf under their privacy notice and our data processing agreement.
  • Content Delivery Networks — static asset delivery. No personal data is shared with CDN providers.

2.2 IP Intelligence

  • IP geolocation services — we query external APIs with visitor IP addresses to determine geographic location and ISP information for security analysis. Only the IP address is shared; no other personal data is transmitted.

2.3 Services We Do NOT Use

  • ❌ Google Analytics or any third-party analytics platform
  • ❌ Advertising networks or retargeting pixels
  • ❌ Social media tracking widgets (Facebook Pixel, etc.)
  • ❌ Data brokers or data aggregation services
  • ❌ Third-party CAPTCHAs (we use our own detection system)

3. When We May Disclose Data

We may disclose personal information only in the following circumstances:

  • Legal obligation: in response to valid legal process (subpoena, court order, or government investigation)
  • Safety: to prevent imminent harm to any person or to address fraud, security threats, or violations of our terms
  • Business transfer: in connection with a merger, acquisition, or sale of assets (users will be notified of any change in ownership)
  • With your consent: when you explicitly authorize us to share specific data

4. Cross-Border Data Transfers

iino is hosted on servers in the United States. If you access the platform from outside the US, your data will be transferred to and processed in the US. We ensure appropriate safeguards are in place for international data transfers in compliance with applicable laws.

5. Security Telemetry Transparency

Our bot detection system (Sentinel) processes the following data entirely on our own servers — no security telemetry is ever sent to third parties:

  • Browser fingerprints (canvas, WebGL, audio context, plugins)
  • Behavioral signals (mouse patterns, scroll dynamics, keyboard timing)
  • TLS handshake fingerprints (JA3/JA4)
  • HTTP header analysis and ordering
  • Anomaly scores and classification results

All analysis is performed locally. Fingerprint data is stored in our database for up to 90 days for ongoing threat detection, then purged.

6. Your Controls

  • Data export: request a full export of your data via privacy@bingonet.net
  • Data deletion: request complete deletion of your profile and associated data
  • Opt-out: you may use browser privacy tools (e.g., disabling JavaScript, using Tor) though this may trigger our bot detection system

7. Changes to This Policy

We will update this page when our data sharing practices change. Material changes will be announced prominently on the platform.

8. Questions

For questions about how we handle your data, contact us or email privacy@bingonet.net.