QueryWarden
FeaturesPersonalBusinessPricingSupport
Sign inStart free
Sign inStart free
LEGAL

Privacy policy

Last updated: August 13, 2026

ControllerData we processPurposes and legal basesService providersRetentionCookies and local storageYour rightsContact

This Privacy Policy explains how Digiport OÜ processes personal data when you visit QueryWarden, create an account, use our managed DNS security service, or contact support.

1. Who is responsible for your data?

Controller: Digiport OÜ, Viru väljak 2, Tallinn 10111, Estonia. QueryWarden is a service operated and provided by Digiport OÜ. See our company details.

Privacy requests: . Support: .

2. Personal data we process

  • Account data: email address, verification status, plan, account dates, notification preferences, and active sessions.
  • Service configuration: device names, device type, private resolver identifier, protection profile, filter choices, and log-retention preference.
  • DNS service data: requested domain, DNS record type, allow/block result, matched protection category, device identifier, timestamp, cache status, and resolver response time when query logging is enabled. Client IP addresses are anonymized in the resolver log.
  • Security and technical data: source IP, request time, route, response status, and limited diagnostic records needed to secure and operate the service.
  • Human-verification data: when a public signup, login, or contact challenge runs, Cloudflare Turnstile processes technical connection and browser signals that may include the source IP address, User-Agent, TLS and browser characteristics, the public site key, and the page origin or hostname. We do not put the email address, name, message, or other form content into the Turnstile widget configuration.
  • Communications: messages and related contact details when you request support or exercise a legal right.
  • Billing data: plan, subscription status, invoices, and transaction references after paid plans launch. Full payment-card details will be handled by our payment provider, not stored by QueryWarden.

3. Why we process data and our legal bases

  • Contract: to create your account, authenticate you, provision device endpoints, apply your protection settings, resolve DNS requests, provide logs, support you, and administer a subscription.
  • Legitimate interests: to prevent abuse, secure the service, diagnose incidents, measure reliability, and improve core functionality. We balance these interests against your rights and limit the data used.
  • Legal obligation: to keep records required by tax, accounting, sanctions, law-enforcement, and consumer-protection rules.
  • Consent: for optional product updates or other processing where consent is required. You may withdraw consent at any time without affecting prior lawful processing.

We do not sell personal data, build advertising profiles from DNS activity, or use DNS queries for targeted advertising. We do not make decisions with legal or similarly significant effects solely by automated means.

4. Service providers and recipients

We disclose only the information needed for the relevant service:

  • Cloudflare, Inc.: authoritative DNS, edge proxying, TLS termination, DDoS mitigation, web application security, primary upstream recursive DNS resolution, and Turnstile human verification for public signup, login, and contact requests. Cloudflare receives connection metadata and the proxied DNS-over-HTTPS request at the edge; its resolver receives DNS questions from the QueryWarden server rather than your device IP. Turnstile processes the limited technical signals described above to assess automated abuse. See the Cloudflare Turnstile Privacy Addendum.
  • Hetzner Online GmbH: server hosting in Nuremberg, Germany and Ashburn, United States, plus encrypted off-site backups in its Object Storage service.
  • Postmark / ActiveCampaign, LLC: account verification, passwordless sign-in, and security-notice delivery.
  • Yaren.AI: AI-assisted intake and response for messages sent to our support address, including human review and takeover where needed.
  • Quad9 Foundation: independent fallback upstream recursive DNS resolution. When fallback is required, Quad9 receives DNS questions from the QueryWarden server rather than your device IP.
  • Payment and identity providers: Stripe and Google only after those optional integrations are activated and only when you choose the relevant feature.
  • Authorities and professional advisers: where required by law or reasonably necessary to establish, exercise, or defend legal claims.

We use self-hosted resolver software to apply filtering and keep control-plane access private. Providers may process limited technical data under their own terms and privacy notices.

5. International transfers

Accounts are assigned a home service region. Account, identity, billing, configuration, and durable DNS-event data remain in that home region. Continuity mode may temporarily process DNS questions in our other region during a home-region outage; the remote resolver does not retain raw query history on persistent storage. Enterprise customers may contract for Strict residency, which disables cross-region DNS failover and fails closed outside the home region. Some providers may process data outside the EEA. Where required, we use an adequacy decision, Standard Contractual Clauses, or another lawful transfer mechanism and apply appropriate safeguards.

6. Retention

  • Unconsumed verification links expire after 15 minutes and expired or consumed authentication records are removed on a short operational cycle.
  • Login sessions normally expire after 30 days and may be revoked earlier.
  • Free-plan DNS query logs are kept for no more than 48 hours when query logging is enabled. Turning logging off stops new domain-level entries.
  • Operational security logs are normally kept for up to 90 days unless an incident requires longer preservation.
  • Account and configuration data are kept while the account is active and for a limited period after closure where needed for security, disputes, or law.
  • Encrypted backup copies age out under the backup schedule and may remain for up to 12 months. Backups are isolated and used only for disaster recovery.
  • Support records are normally kept for up to 24 months. Accounting records are retained for the period required by applicable law.

7. Your controls

You can disable DNS query logging, change protection settings, remove device endpoints, and manage optional email preferences from the dashboard. Removing a device immediately invalidates its private resolver address. Essential security and service messages cannot always be disabled while an account is active.

8. Your data-protection rights

Depending on the circumstances, you may request access, correction, deletion, restriction, portability, or object to processing based on legitimate interests. You may withdraw consent and lodge a complaint with a supervisory authority. We normally respond without undue delay and within one month, subject to lawful extensions.

You may complain to the Estonian Data Protection Inspectorate (Andmekaitse Inspektsioon), Tatari 39, 10134 Tallinn, Estonia, info@aki.ee, or to the competent authority where you live or work.

9. Security

We use encrypted transport, host-only secure session cookies, least-privilege network separation, restricted administrative access, rate limits, encrypted backups, and monitoring. Our Security & Trust overview explains the current safeguards and their limits. No system is completely secure; please .

10. Children

QueryWarden accounts are not directed to children under 16. A parent or legal guardian may use family controls for a child’s devices, but the adult remains responsible for the account and lawful configuration.

11. Cookies and local storage

QueryWarden uses a strictly necessary, secure, host-only session cookie to keep you signed in. It contains a random session identifier rather than your email address and normally expires after 30 days or when you sign out or revoke the session. Cloudflare Turnstile processes strictly necessary technical signals when a public signup, login, or contact challenge runs; Cloudflare may set strictly necessary security cookies where the selected security mode requires them. We do not use these technologies for advertising, and we do not currently use cross-site tracking or optional analytics cookies.

The website may use browser session storage for short-lived checkout selections or interface state. This information remains in your browser and is not used to build an advertising profile. If we introduce non-essential cookies or similar technologies, we will update this policy and request consent where required.

12. Changes to this policy

We may update this policy as the service, providers, or law changes. Material changes will be announced through the service or by email before they take effect where reasonably possible.

13. Contact

Digiport OÜ, Viru väljak 2, Tallinn 10111, Estonia. See our company details. For privacy matters, .

QueryWarden

Quiet protection at every doorway to the internet.

Operational monitoring is active
Security at QueryWardenReview our current security practices

Product

FeaturesDNS filteringAd & tracker blockingDNS threat protectionNetwork DNS filteringPricingPersonalBusiness

Resources

Installation guidesProtective DNS guideDNS vs URL filteringDNS-over-HTTPS explainedDNS privacy controlsSecurity & trustSalesSupport

Legal

Company detailsPrivacyTerms of serviceCookies
© 2026 Digiport OÜ. QueryWarden is operated and provided by Digiport OÜ.Estonian company · Privacy controls · Direct DoH needs no dedicated appliance