Security & data protection
Your searches, your payment details, and your account are protected by industry-standard security. Here's exactly how.
256-bit SSL
Every page and API call is encrypted in transit (TLS 1.2+).
PCI-DSS via Stripe
Card data is handled by Stripe. We never see or store it.
GDPR & CCPA
Full data-subject rights, honoured within 7 working days.
Encryption in transit and at rest
All traffic between your browser and RevealHim is encrypted using TLS 1.2 or higher with 256-bit SSL. Sensitive data stored on our servers — account credentials, search history — is protected at rest, and passwords are hashed with bcrypt (never stored in plain text).
Payments are handled by Stripe
We use Stripe, a PCI-DSS Level 1 certified payment processor, for every transaction. Your full card number never touches our servers — it goes straight to Stripe's vault. We only ever see a token and the last four digits. That means even in the unlikely event of a breach, your card details are not exposed on our side.
Your searches stay private
The numbers, emails and images you look up are visible only to your own account. We never publish them, sell them, or share them with third parties. Critically, the person you search for is never notified — every lookup is anonymous from their perspective.
Data retention & deletion
We keep your search history and reports only as long as your account is active, plus a short window required for fraud prevention and legal compliance. You can delete individual reports at any time, or request full account deletion by emailing support@revealhim.com. Deletion requests are completed within 7 working days.
Your rights (GDPR, CCPA, PIPEDA)
Wherever you live, you can ask us to show you what data we hold about you, correct it, export it, or erase it. If you appear in RevealHim's lookup results and want to opt out, our removal-request process handles that too — see the contact page. We honour all valid regulatory requests without charge.
Responsible vulnerability disclosure
We welcome reports from security researchers acting in good faith. If you believe you've found a vulnerability:
- Email security@revealhim.com with the details and steps to reproduce.
- Give us reasonable time to remediate before any public disclosure.
- Do not access, modify, or delete data that isn't yours, and don't degrade the service for others.
We acknowledge valid reports promptly and will keep you updated through remediation. Good-faith research conducted within these guidelines will not be pursued legally.
What we will not do
- We do not offer real-time GPS tracking, live location, or device monitoring.
- We do not provide facial recognition to identify strangers, and our image tools are for verification, not surveillance.
- We do not allow our data to be used for stalking, harassment, or any FCRA-regulated decision (employment, credit, housing, insurance).
🔒 Have a security question or concern? Reach us directly at security@revealhim.com.