Privacy policy

What data plagcheck.ai processes, why, for how long — and who gets to see it.

Updated 2026-09-10

Data controller

ogDahl ApS
Company reg. (CVR) 36943157
Langhøjvej 1, 8381 Tilst, Denmark
Email: [email protected]

If you have questions about how we handle your information, or want to exercise one of the rights below, write to that address. We respond within one month.

What we process

DataWhyHow longLegal basis
The document you uploadTo carry out the plagiarism check you asked forNot stored. It exists only in server memory while the analysis runs, and is gone once the response is sentArt. 6(1)(b) — necessary to provide the service you requested
Your email address, if you join the listTo tell you when full access opensUntil you ask to be removed, or the waiting list endsArt. 6(1)(a) — consent
Your IP addressTo enforce the limit of one free check per dayUp to 24 hours. Held unencrypted in a counter file and cleared at the next day boundaryArt. 6(1)(f) — legitimate interest in preventing abuse
A pseudonymised (hashed) form of your IP, if you join the listTo limit sign-ups per visitorAlongside the sign-upArt. 6(1)(f)

We do not ask for your name, address or anything else, and we do not create user accounts.

Where your data goes

Read this before uploading sensitive material. Our server sits in the EU, but the analysis cannot be performed without sending parts of your text to sub-processors outside the EU.

Concretely, this is what happens when you upload a document:

  1. The text is extracted on our server at Hetzner Online GmbH (Frankfurt, Germany).
  2. An excerpt of up to roughly 15,000 characters is sent to OpenAI, L.L.C. (USA), which selects the passages to search for and later writes the report.
  3. The selected passages — individual sentences from your document — are sent to Serper (USA), which looks them up as verbatim Google searches.
  4. The result is assembled on our server and returned to you.

In addition:

Transfers to the USA rely on the European Commission's standard contractual clauses and, where the provider is certified, the EU-U.S. Data Privacy Framework.

OpenAI states in its own terms that it does not use API data to train models. We do not train models on your texts either.

Cookies and local storage

We use no cookies for statistics, analytics or marketing, and there are no tracking tools on the site.

We keep one single choice in your browser's localStorage: the language you picked, so you land in the right place next time. It never leaves your computer.

hCaptcha and Cloudflare set their own cookies for security reasons. Those are outside our control — see their respective policies.

Your rights

Under the GDPR you have the right to:

Write to [email protected]. Since we have no user accounts, the only information we can look you up by is your email address, so please write from the address you signed up with.

If you are unhappy with how we handle your data, you can complain to the Danish Data Protection Agency, Datatilsynet, Carl Jacobsens Vej 35, 2500 Valby, Denmark.

Security

All traffic to and from the site is encrypted (HTTPS). Documents are never written to disk. Server access is by key-based SSH only.

We are a small company and will not promise more than we can keep: there is no round-the-clock monitoring, so we may not spot a problem instantly. If we become aware of a breach that poses a risk to you, we will tell you as soon as possible and notify the supervisory authority within 72 hours.

Data processing agreement

If you are an institution or a company that needs a data processing agreement, write to [email protected] and we will send a draft.

Changes

If we change this policy materially, we update the date at the top. If you use the service regularly, it is worth reading again.