PRIVACY NOTICE

Research with minimal personal data.

Effective August 19, 2026; updated September 10, 2026

Understanding browser and automated traffic

An additional owner-only report separates browser page-view events from API calls, framework navigation, status checks and recognizable automated activity. The server briefly checks browser headers and existing signed-in owner identity; the page supplies only whether it was visible and whether its browser reports automation. Raw browser descriptions and identities are discarded rather than stored in these analytics. The report keeps daily counts, public page names, referring domains and approximate country codes. It uses no tracking cookies, IP-address storage, fingerprints or persistent visitor identifiers.

Likely-human counts are estimates: unknown bots and signed-out owner visits can still be included. These counts do not establish unique people or advertising impressions. Classified daily totals expire after 90 days during subsequent traffic; collection start and last-activity timestamps describe the reporting system, not individual visitors.

What Arqaris handles

Public research pages may be viewed without creating an Arqaris account. When the hosting service identifies a signed-in visitor, Arqaris receives the account email needed to keep saved research separate by account. The service stores watchlist entries, recently viewed companies, filing identifiers needed to detect updates, and timestamps for those actions.

Arqaris also processes ticker searches, public-company report requests, source availability results, and limited security and operational records needed to diagnose failures, apply rate limits, and protect the service. Hosting and network providers may process connection information such as IP address, browser details, and request timestamps. Arqaris does not ask for brokerage credentials, positions, payment information, or personalized financial circumstances.

How the data is used

Account-linked data is used only to provide the watchlist and recent-research features. Operational data is used to deliver reports, enforce safe limits, investigate errors, and maintain the reliability and security of the service.

Arqaris uses first-party, cookie-free analytics to count page views, completed report views, submitted searches, report outcomes (including cancelled waits), example-report selections, source-panel openings, and successful calculator completions. Report wait times and page document-readiness times are recorded only as coarse categories. Calculator inputs and results are never sent to analytics. Daily totals may be grouped by page, ticker, referring website domain, and country code supplied by the hosting network. Arqaris does not store an IP address, full referring URL, browser fingerprint, advertising identifier, or raw search text in analytics records. These aggregate measurements cannot identify exact unique visitors.

Arqaris does not sell personal data, use watchlists for advertising profiles, or use research activity to produce personalized investment advice. Public filing content is not placed into account activity or analytics records.

Sources and service providers

Research reports retrieve public records from the SEC and may query USAspending.gov for clearly labeled possible federal-award matches. Live prices remain on approved external destinations; following one of those links subjects the visit to that destination’s own privacy practices.

The Sites hosting platform supplies hosting, access control, and signed-in identity. Cloudflare-backed application storage holds the report cache and account-scoped saved records. These providers process data on Arqaris's behalf to deliver and protect the service.

Retention, export, and deletion

Watchlist records remain until the owner removes the company. Recent-report history retains only the owner’s latest six companies; older entries are deleted when another report is recorded. Report-job metadata expires after 15 minutes and is removed during protected service activity. Operational refresh records and stale report caches are retained for 30 days, aggregate analytics totals for 90 days, and expired rate-limit buckets are removed during the next protected request.

The signed-in owner can export or permanently delete saved account data. Deletion removes the owner’s watchlist and recent-report records atomically while retaining a minimal action audit for security and compliance evidence. Aggregate analytics are not linked to an Arqaris account. Publication-validation and owner-action audit records are retained for one year because they support incident investigation and research-integrity review. Expired records are purged during protected service activity.

Security and access

Account-scoped write routes check signed-in identity on the server, and private responses are not stored in shared browser caches. Saved records remain separated by signed-in account. A release may remain behind private hosting access during readiness review. No system can promise absolute security; suspected exposure is treated as an incident and the affected feature is disabled while it is investigated.

Choices and contact

You may avoid account-linked storage by not using signed-in saving features. A signed-in user can export or delete saved account data. Contact submissions are used only to review and respond to the inquiry and are retained for 90 days. Send privacy questions through the private contact form; the owner's personal email address is not published.