Legal
Privacy Policy
The short version: there's no signup, no accounts, and no database of your personal information. Here's the full version anyway.
Last updated: September 24, 2026
Overview
Percival's Toolkit (percivalstoolkit.com) is a free set of network, DNS, security, and developer utilities. There are no user accounts, no logins, and no forms that ask for your name, address, or payment details. This policy explains what information the site's tools handle when you use them, what a small number of third-party services see, and what your options are.
Information the tools handle
Percival's Toolkit is a static website with no backend server or database of its own. When you use a tool (say, a DNS lookup, an IP geolocation check, or the password breach checker), your input (a domain, IP address, or similar) is sent directly from your own browser to the relevant third-party API listed below. The results are displayed to you in your browser. Percival's Toolkit itself does not receive, log, or store that input or its results anywhere.
The one piece of information the homepage shows automatically is your own public IP address and basic connection details (approximate location, ISP, browser, and device info), which come from your browser and the lookup services below. This is calculated fresh each time you load the page and isn't saved.
Third-party services the tools call
Each tool works by querying a specialized public API. These requests go straight from your browser to the provider below. Percival's Toolkit is not a proxy or intermediary, and each provider handles that request under its own privacy policy, not this one:
- ipify, ipapi.co, ipwho.is, geojs.io: public IP address and geolocation lookups
- Cloudflare (1.1.1.1, cloudflare-dns.com, speed.cloudflare.com): DNS-over-HTTPS lookups and the speed test
- Google Public DNS (8.8.8.8, dns.google): DNS-over-HTTPS lookups
- Quad9 (9.9.9.9) and OpenDNS (208.67.222.222): latency checks
- NextDNS (dns.nextdns.io): latency checks
- crt.sh: certificate transparency / subdomain lookups
- HackerTarget (api.hackertarget.com): WHOIS/RDAP-style domain and IP lookups
- Have I Been Pwned (api.pwnedpasswords.com): the password breach checker. This uses k-anonymity: only the first 5 characters of a hashed version of your password are ever sent, never the password itself or a full hash that could be reversed to it
- IANA (data.iana.org): public TLD reference data
Because these are direct browser-to-API requests, the standard technical data any web request carries (your IP address, timestamp, and similar) is visible to that provider, the same as it would be if you'd queried them yourself.
Cookies
Percival's Toolkit does not set any cookies of its own, and it doesn't run ads or third-party ad trackers. You can clear or block cookies at any time through your browser's settings.
Donations
The Donate button links out to Ko-fi (ko-fi.com), a separate platform that handles any payment information directly. Percival's Toolkit never sees, processes, or stores your payment details. That entire transaction happens on Ko-fi, under its own privacy policy.
Server and hosting logs
Like most websites, the infrastructure hosting Percival's Toolkit automatically logs standard technical request data (such as IP address, browser type, and timestamp) for security and performance purposes. This is routine web server logging, not something Percival's Toolkit configures or accesses individually, and it isn't used to identify visitors personally.
Children's privacy
Percival's Toolkit is not directed at children under 13, and it does not knowingly collect personal information from children.
Your choices
Since the site doesn't maintain accounts or a database of personal information, there's nothing stored here to request, correct, or delete. You can still control cookies and tracking generally through your browser settings. If you have questions about anything on this page, reach out via the Contact page.
Changes to this policy
This policy may be updated occasionally, for example if a new tool or analytics service is added. The "Last updated" date at the top of this page will always reflect the most recent change.
Contact
Questions about this policy can be sent through the Contact page.