Privacy Policy

Last updated: June 2026. This policy covers the website custosxi.com and the CustosXI application separately.

Data controller

Giorgio Ciranni - independent CustosXI project - Italy.
Contact: info@custosxi.com � Privacy requests: same address.

A. Website custosxi.com

What we process

  • Technical access data - IP address, user-agent, requested URL, timestamps, HTTP status, referrer (typical web server / CDN logs).
  • Cloudflare - security, caching, TLS, and DDoS protection; may process connection metadata as our infrastructure provider.
  • Analytics - no marketing analytics scripts are embedded in the site HTML. Aggregated metrics may be available via Cloudflare at infrastructure level only. See Cookie Policy.
  • Email - if you email us, we process the address, message content, and metadata needed to reply.
  • Downloads - we do not run per-user download tracking on this static site. Infrastructure providers may log file requests at the network level.

Purposes and legal basis (GDPR)

  • Operate and secure the website - legitimate interest / contract necessity for hosting.
  • Respond to contact requests - legitimate interest / pre-contractual steps.
  • Aggregate visit statistics - legitimate interest, minimized data.

Retention

Server/CDN logs: typically up to 30-90 days unless longer retention is required for security incidents. Emails: until the request is handled and reasonably archived.

Processors / providers

Cloudflare, Inc. (hosting/CDN/security; optional dashboard analytics). PayPal for voluntary donations (external site - see Support). No marketing ad networks or first-party tracking cookies set by our website code.

B. CustosXI application

CustosXI does not automatically send captured network traffic, raw packets, or local analysis logs to project servers, except for features you explicitly enable and that are documented in the app (e.g. optional third-party APIs you configure).

Local operation

CustosXI is designed as a local-first Windows tool. It analyzes network-related signals on your computer to provide visibility and investigation features.

Data the app may process locally

  • Connection and traffic metadata (IPs, ports, protocols, DNS queries, firewall events, etc.).
  • Enriched context when you enable add-ons (ASN, GeoIP, reputation feeds, Suricata alerts, etc.).
  • Configuration, policies, blocks, and diagnostic state stored in local databases under your Windows profile / ProgramData as documented in the app.

Storage location

Data is stored on your PC unless you configure external services. Paths and retention are described in Settings and documentation.

External communication

  • Update checks - if enabled, the app may contact official release endpoints to detect new versions (no personal profiling intended).
  • Optional add-ons - may contact third-party APIs (AbuseIPDB, feed URLs, Whois/RDAP, MaxMind, etc.) using keys or URLs you provide. Each service has its own policy.
  • Donations - opening PayPal is handled by PayPal, not by CustosXI telemetry.

Your choices

You control capture, add-ons, retention, and uninstallation. Uninstalling removes CustosXI components; you may delete local databases separately if copies remain.

Your rights (EEA / UK / CH users)

You may request access, rectification, erasure, restriction, portability, or object to processing where applicable. Contact info@custosxi.com. You may lodge a complaint with the Italian Data Protection Authority (Garante per la protezione dei dati personali) or your local supervisory authority.

Related: Cookies | Terms | Security | Legal