Privacy and Logging

What is sent when you use the web lookup or public API.

Lookup input

Single and bulk web lookups send the entered MAC addresses to this server over HTTPS in a request body. Apache access logs do not record those request bodies. The service processes the input to return a result and does not intentionally store web lookup bodies in the application database.

The public API includes the queried MAC address in the URL. That URL is recorded in the web server access log, so avoid sending information through the API that you do not want included in operational logs.

Server logs

Operational logs can include the requesting IP address, timestamp, requested URL, HTTP status, referrer, browser user-agent and response duration. Access logs are rotated daily and are normally retained for approximately 14 days. Logs are used to operate, secure and diagnose the service.

Cookies and third parties

The application does not set tracking cookies and does not include an analytics service. Pages load Bootstrap files from the jsDelivr content delivery network, which receives the network request needed to serve those files and may process the requesting IP address under its own privacy terms.

Contact

Questions about this service can be directed to its maintainer through andymillett.co.uk.