Privacy Policy

This policy explains what personal data getwhatismy.com processes, why, how long we keep it, who receives it, and your rights under EU/UK data protection law.

Last updated: 14 September 2026

Who we are

The controller of personal data processed through this website is the operator of getwhatismy.com (“we”, “us”). For privacy requests, contact privacy@getwhatismy.com.

What this site does

Get What Is My provides on-demand lookup tools. When you open a tool page, we process technical data from your request (and, for some tools, from your browser after you choose to run a check) so we can show you the result on that page. We do not require accounts or profiles.

Personal data we process

  • Network data: your public IP address (from connection / proxy headers such as cf-connecting-ip, x-forwarded-for, or x-real-ip), approximate geolocation (city, region, country, coordinates, timezone) derived from local IP databases, reverse-DNS hostname when available, and a simple ISP estimate based on that hostname.
  • Browser headers: User-Agent and Accept-Language, used to show browser, OS, device-type estimates, and language preferences.
  • Optional client-side checks (only after you run them): cookie capability test (temporary first-party cookie), local / private IP via WebRTC, canvas fingerprint hash, and WebGL vendor / renderer strings. These run in your browser for display on the page and are not uploaded by us as a tracking profile.
  • Blacklist tool: if you open the blacklist check, your public IP is looked up against public DNS-based block lists via Cloudflare DNS-over-HTTPS (Spamhaus Zen, Barracuda, and SORBS among the lists we query).
  • Hosting and security logs: our hosting / CDN providers may automatically log IPs, timestamps, and request metadata for security, abuse prevention, and reliability. We do not operate a separate visitor analytics database in the application itself.

Purposes and legal bases

Under the EU/UK GDPR we rely on the following bases (Art. 6):

  • Legitimate interests (Art. 6(1)(f)): processing your IP and request headers to deliver the lookup result you requested, keep the service secure, and prevent abuse. You can object to processing based on legitimate interests where applicable (see Your rights).
  • Consent (Art. 6(1)(a)): non-essential cookies and similar technologies for analytics and advertising (Google Analytics and Google AdSense), and optional client tools that access device/browser APIs after you click to run them. You may withdraw consent at any time (for ads, use the consent controls or browser settings; for client tools, simply do not run them).

Retention

Tool results are generated to display on the page you requested. We do not keep an application-level archive of your IP lookups or fingerprint results. A short-lived in-memory cache may briefly remember reverse-DNS outcomes to reduce repeated DNS lookups (typically minutes). Hosting / CDN logs follow the retention settings of those providers. Advertising partners retain data under their own policies when you consent to ads.

Cookies and similar technologies

  • Essential / functional: we may store your advertising-consent choice in local storage so we remember “Accept all” or “Reject all”. The cookie-capability tool may set a temporary first-party test cookie and delete it immediately after the check when you run that tool.
  • Advertising / analytics (optional): if you accept non-essential cookies, Google Analytics may set measurement cookies and Google AdSense may set advertising cookies. If you reject, we keep Consent Mode storage denied and do not show ad units. You can change your choice by clearing site data for getwhatismy.com and reloading.

Recipients and transfers

Depending on the tool and your choices, data may be processed by:

  • Our website hosting and CDN providers (to deliver the site).
  • Cloudflare (DNS-over-HTTPS) and public DNSBL operators when you use the blacklist check.
  • Google (Analytics and AdSense) only if you consent to non-essential cookies.

Some providers may process data outside the EEA/UK. Where required, transfers rely on appropriate safeguards such as the European Commission’s Standard Contractual Clauses or an adequacy decision, as offered by those providers.

Your rights

If EU/UK GDPR applies to you, you may have rights to access, rectify, erase, restrict, or object to certain processing, and to data portability, and to withdraw consent where processing is consent-based. Because we do not keep user accounts or long-lived lookup archives in the app, some requests may mainly relate to hosting logs or advertising partners. Email privacy@getwhatismy.com. You may also lodge a complaint with your local supervisory authority (for example your EU member state DPA or the UK ICO).

Children

The site is not directed at children under 16. We do not knowingly collect data to create profiles of children.

Accuracy and no sale

Geolocation, ISP, hostname, and related fields are estimates and may be wrong or unavailable. We do not sell your personal data. See also our Terms of Use.

Changes

We may update this policy when the site or legal requirements change. The “Last updated” date at the top will change when we do.