Privacy
What this service records when you use the website, the REST API or the MCP server, and what it does not.
No account and no tracking
There is no account, sign-up or API key. Pages set no cookies and run no scripts, and there are no analytics or advertising tags.
What is recorded
- One log line per request: the time, the HTTP method, the path without the query string (a product page or a REST plan address names that product or plan), the User-Agent header, the response status and how long the request took. A request refused by the rate limit is marked as such, and a server error keeps the first lines of the error.
- For MCP requests also: the MCP protocol headers (version, method and name), the Accept header, whether a session header was sent, whether the request was refused for its Origin header, the JSON-RPC method, the tool name, and whether the tool returned an error.
- Not recorded: your workload, conditions and other inputs (tool arguments, request bodies and query strings), and your IP address.
- To apply rate limits, the server keeps the address a request came from in memory. It is not written to the log or anywhere else. It stays in memory until the server restarts, or until 10,000 addresses are held, when the idle ones are dropped.
How it is used and shared
The log is used to keep the service running and to count how often pages and tools are used. It is not sold, not shared with third parties and not used for advertising.
Purchase links lead to the provider's own site, where the provider's privacy policy applies. Whether a link is an affiliate link is stated on the disclosure page.
How long it is kept
The request log is kept in one file per day (UTC), and each file is deleted 30 days after its day began. The check runs when the server starts and every hour.
Contact
https://github.com/scraping-api-plans/web-data-plan-finder/issues