Haa.su Privacy Policy
Version: 1.1
Effective: 3 August 2026
Controller: the owner of the haa.su domain name
Website: https://haa.su
Privacy contact: info@haa.su
Depending on the function used, Haa.su processes account and verification data, password and token hashes, session and security logs, IP and browser data, submitted URLs, page content and versions, media, page-access permissions, orders, bookings, payment status, feedback and chat messages, removal requests, consent records and minimized analytics.
Passwords for accounts, links and pages are not stored in plain text or in a reversibly decryptable form.
Data is used to provide the requested functions, secure the service, prevent abuse, manage accounts and pages, process messages, orders and bookings, handle requests, comply with law and provide consent-based statistics. Page owners are responsible for the lawful processing of customer data received through their pages.
Technical logs and link-check results are generally kept for up to 90 days, security logs for up to one year, account and page content until deletion, deleted-data backups for up to 90 days, and requests, consent evidence and administrative logs for up to three years. Mandatory legal retention periods apply where required.
Russian citizens' personal data is initially collected using databases located in Russia. Cross-border transfers are performed only after applicable legal requirements are met.
Data-subject requests and consent withdrawals may be sent to info@haa.su.
Browser extension and saved-page data
The Haa.su browser extension operates only after an explicit user action. To create a short link, the extension processes the URL selected by the user and, where provided, a custom short code. For page saving, the extension may process the selected page URL, page content and related resources, including HTML, CSS, images, fonts and other files required to display the saved version. The extension does not maintain a background browsing history and does not collect website content unless the user explicitly starts the feature.
When “In browser” is selected, page files remain in the browser profile's local storage and are not transmitted to Haa.su cloud storage. When “Haa.su” is selected, the selected page content, URL and related resources are transmitted over HTTPS to Haa.su and stored in the user's account to create a saved version accessible by link. “Both” performs both operations.
Optional browser access to HTTP/HTTPS sites is requested only when the crawler is started and is used only to process the site selected by the user and the resources required for that operation. When fetching individual resources, the extension does not send cookies or other account credentials to third-party sites. Data handled by the extension is not used for personalized advertising, profiling or sale to third parties.
Haa.su Offline Viewer displays saved pages in a passive isolated mode: third-party JavaScript from a saved site is not executed in the extension context. Script files may remain as data in a user-exported archive, but their presence in the archive does not mean that the extension executes them.
Page-owner data and visitor data
Optional owner/operator details entered in the account are processed to identify the person or organization responsible for data collection on that user's pages and to generate legally relevant notices. Haa.su deliberately does not request passport details, national identification numbers, health data or biometric data for this purpose.
For data collected by a page owner for that owner's own purposes, Haa.su may act as a technical processor/service provider on the owner's instructions. Haa.su remains an independent operator/controller for data it processes for its own purposes, including account administration, security and operation of the platform.