Legal & Compliance

Privacy Policy

Last Updated & Effective: September 13, 2026

1. Introduction

Welcome to 2FASafe.com ("we", "our", or "us"). We provide client-side two-factor authentication (2FA/TOTP) utilities, security generators, and developer productivity tools. Protecting your privacy and keeping your digital life secure is our utmost priority.

This Privacy Policy explains the types of information we may collect, how we use and safeguard that information, our advertising practices through Google AdSense, and your rights under privacy regulations including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA/CPRA).

2. Zero-Knowledge / Client-Side Architecture (2FA Secret Keys)

We do NOT transmit, collect, or store your 2FA Secret Keys, TOTP seeds, or generated authentication tokens on our servers. All TOTP cryptographic hashing (RFC 6238 / RFC 4226) operates 100% locally within your web browser JavaScript sandbox. Your sensitive authentication secrets never leave your device.

3. Information We Collect

A. Information You Voluntarily Provide

If you contact our support team via our Contact Page or by email, we collect the details you provide: your name, email address, message subject, and message content to respond to your inquiry.

B. Automatically Collected Technical Data

When you browse 2FASafe.com, standard web server logs automatically record non-personally identifiable technical information, including your IP address, browser type and version, device operating system, referring URL, timestamp, and requested pages. This data is used solely for security auditing, DDoS mitigation, and aggregate performance diagnostics.

4. Google AdSense & Third-Party Advertising

We use Google AdSense and other third-party advertising vendors to display advertisements when you visit 2FASafe.com. These companies may use cookies, web beacons, and similar technologies to collect non-personal information about your visits to this and other websites in order to serve relevant advertisements tailored to your interests.

  • DoubleClick DART Cookie: Google, as a third-party vendor, uses cookies to serve ads on 2FASafe.com. Google's use of the DART cookie enables it to serve ads to users based on their visits to our site and other sites on the Internet.
  • Opting Out: Users may opt out of personalized advertising by visiting the Google Ads Settings.
  • You can also opt out of third-party vendor cookie use for personalized advertising by visiting aboutads.info or the European Interactive Digital Advertising Alliance (EDAA).

5. Cookies & Local Storage

2FASafe.com uses cookies and browser local storage for:

  • Essential Preferences: Remembering your theme selection (Dark Mode / Light Mode) and client UI preferences.
  • Analytics & Performance: Aggregating anonymous metrics to optimize load times and improve user experience.
  • Advertising Cookies: Used by Google AdSense to serve and frequency-cap advertisements.

You can adjust your browser settings to decline all cookies or to alert you when a cookie is being sent. However, some user experience preferences may not function properly without cookies.

6. GDPR Compliance (European Users)

If you are located in the European Economic Area (EEA) or the United Kingdom, you have rights under the General Data Protection Regulation (GDPR), including:

  • Right of Access: Request a copy of any personal data we hold about you.
  • Right to Rectification: Request correction of inaccurate personal data.
  • Right to Erasure ("Right to be Forgotten"): Request deletion of your personal data.
  • Right to Restrict or Object to Processing: Object to or restrict how your data is processed.
  • Right to Data Portability: Receive your personal data in a structured, machine-readable format.

To exercise any of these rights, please email us at [email protected].

7. California Privacy Rights (CCPA / CPRA)

Under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA), California residents have the right to:

  • Know what personal categories of data are collected and for what purpose.
  • Request deletion of personal data collected from them.
  • Opt-out of the Sale or Sharing of Personal Information: We do NOT sell your personal information.
  • Non-discrimination for exercising their CCPA privacy rights.

8. Children's Information

2FASafe.com does not knowingly collect any personally identifiable information from children under the age of 13. If you believe your child has provided personal information on our website, please contact us immediately, and we will promptly remove such information from our records.

9. Contact Us

If you have any questions, comments, or concerns regarding this Privacy Policy or our data practices, please contact us:

Copied to clipboard!