Privacy notice
Personal data deserves a narrow purpose.
Effective October 4, 2026. Remove My Info works locally without an email. You can optionally enable passwordless email recovery for an encrypted hosted copy and supervised request actions.
Local workspace data
Your name, location, optional email and phone, findings, request history, and reporting preference are stored in local browser storage. Root777 does not receive that local workspace merely because you type or save it. Clearing site data or using the in-app deletion control removes it from that browser.
Hosted search and fallback
When you press Start, the displayed email or phone query is sent through the Root777 relay to Brave Search using Root777’s monthly allowance. Root777 does not log or retain the query, API response, or Brave credential at the relay; the result is returned with no-store headers and saved only in your local workspace unless you later enable encrypted recovery. If the shared allowance or per-device abuse limit is reached, the app reveals an optional BYOK fallback. A BYOK credential is used only for that request and is not stored.
To enforce the shared allowance without retaining a raw network address, the relay keeps a keyed one-way hash of the connecting address, the date, a count, and an update time. Daily rate-limit records are deleted after no more than three days. A global monthly counter contains no identifier.
Email recovery and encrypted storage
If you request and open a single-use email link, Root777 stores your verified email, encrypted identity set, encrypted workspace snapshot, DROP tracker, queue, and action evidence so the workspace can be recovered on another device. Encryption lookup values, session records, standing authorizations, delivery evidence, and audit timestamps are also stored for security and accountability. The sign-in link expires after 15 minutes and the session after 30 days.
Source actions and Exposure Watch
When you ask the service to map an allowlisted source, Cloudflare Browser Run retrieves that source’s public privacy page and returns detected forms, fields, links, and protected checkpoints. The page address, status, field map, and result digest may be retained with your encrypted workspace. No general-purpose AI model or model token is used for this inspection.
After secure email verification and your explicit single or batch authorization, Remove My Info may send a deletion request to the published privacy email for each named source. The message includes the identity details you saved, a case identifier, and your authorization statement. Broker replies route back to the case. Registry priority does not prove a source holds your data. Web-form submissions, CAPTCHAs, identity-document uploads, residency checks, and legal attestations remain under your control.
For a supported request, Exposure Watch can schedule later checks and retain source URLs, timestamps, case references, reported outcomes, and your recheck decisions. If a California listing is still present at or after a 30-day check, the app can prepare a source-and-timestamp timeline for you to copy into the official California Privacy Protection Agency complaint form. The timeline excludes your saved emails, phone numbers, aliases, addresses, identity documents, and legal attestations. You review, add any information you choose on the official site, and submit the complaint yourself.
Why we use data
The local app uses your inputs to build exact searches, match public result domains to the source catalog, prepare requests, track statuses, and create reports or reminders. We do not sell personal data, build advertising profiles, or use private workspace data to train general-purpose models.
Feedback and support
If you send product feedback, Root777 receives the category, message, app platform and version, and any reply email you choose to include. Cloudflare delivers the message to the Root777 support inbox. Root777 keeps it only as long as reasonably needed to respond, improve the product, prevent abuse, or keep necessary business records. A keyed one-way network-address hash and daily count may be kept for up to three days to limit automated submissions; the feedback message is not stored in the app database.
Service providers and retention
Cloudflare provides hosting, encrypted database and state storage, browser inspection, and email delivery. Root777 retains the hosted recovery data while you keep the recovery account, plus limited security and delivery records needed to operate and defend the service. You can delete the hosted recovery account from My details; the deletion removes the hosted workspace, identity vault, sessions, authorizations, request cases, and related user records. Source or government systems keep data under their own policies.
Your controls
You choose when to start a search, add identifiers, enable recovery, authorize a named removal batch, open a government or regulator flow, copy an evidence timeline, or use a transient Brave key. Remove My Info does not submit a regulator complaint for you. You can export or delete the local workspace, sign out without deleting the browser copy, and delete the hosted recovery account. Deletion or authorization revocation cannot recall information already sent to a search provider, broker, email provider, or government system.