Privacy Policy
Last updated: March 4, 2026
Operating Entity
The Rikon service (rikon.io) is owned and operated by MoonHire LLC. For legal or privacy inquiries: [email protected]
Overview
Rikon is a security intelligence service built on zero-knowledge principles. We verify your ownership of an email or domain before scanning, generate an intelligence report, and then delete your personal data.
What We Collect
- Email address or domain — only to perform the scan. Deleted immediately after scan completion.
- One-way hash of the scan target — retained only for deduplication.
- Notification email (optional) — used to deliver the report link, then deleted after 30 days.
- Payment record — we retain the transaction ID and amount for 7 years for financial compliance. No card data is stored by us — Stripe handles that.
Zero-Knowledge Design
Once a scan completes, the raw email or domain is wiped from our database. The encrypted report is stored on secure servers for 30 days, then automatically deleted. We cannot link a report back to your identity after the scan completes.
Data Retention
- Scan results: 30 days
- PDF reports: 30 days
- Verification codes: 10 minutes
- Payment records: 7 years (no personal data)
Third-Party Services
- Stripe — payment processing
- Resend — email delivery
- Amazon S3 — encrypted report storage
- Neon — database hosting
Your Rights
Due to our zero-knowledge design, we do not retain personally identifiable information after scan completion. If you wish to delete your data before the retention period, contact us at [email protected].
Contact
For privacy inquiries, reach us at [email protected]