Legal
Privacy Policy
Last updated: September 28, 2026
Access Rescue (“we”, “us”, “our”) operates a browser-based tool for inspecting, recovering, and documenting Microsoft Access databases. This policy explains what we do and do not collect.
1. Who we are (data controller)
Controller: Access Rescue.
If you have questions about this policy or your data, contact admin@mdbrescue.com.
2. What we do with your database
All parsing, diagnosis, recovery, and export happen locally in your browser using a WebAssembly engine. Your database file and its contents are processed on your own device and are never uploaded to, transmitted to, or stored on our servers.
We never see your database contents.
3. Our backend — and what it does NOT see
We operate a minimal backend used only to verify payments (via Stripe) and to deliver purchased downloads. This backend never receives, reads, or stores your database file or its contents. The only data that touches our servers is payment-related information handled by our payment processor (see Section 6).
4. Site analytics (cookieless, no personal data)
We measure aggregate traffic to this website, so we can tell whether the site is being found at all and which pages are useful. We use a privacy-first analytics service built to work without cookies and without identifying anyone.
What is measured:
- page views, and which pages were visited;
- the referring site, and campaign parameters present in a link you followed;
- coarse technical context — country, browser, device type, screen size;
- aggregate site performance, such as page load timings.
What is never collected, in this category or any other:
- your database file, its file name, its path, or anything inside it;
- your name, email address, or any account detail — the tool has no accounts;
- any identifier that follows you across other websites; and no advertising, profiling, or data sale of any kind.
This measurement is not used to build a profile of you, is never sold or shared, and — because no cookies are set and no personal data is stored — it does not require a consent banner. Analytics data is never joined to anything you load into the tool: the engine runs in your browser and reports nothing about your file.
The service we use for this is Cloudflare Web Analytics, which publishes its own privacy policy at https://www.cloudflare.com/privacypolicy/.
5. Anonymous diagnostics (opt-in, off by default)
This section is about the tool itself, not about the website — and it is off unless you switch it on.
By default we collect no metadata about your database file. The tool does not report which database you opened, where the file lives, or what it contains.
If you explicitly opt in, we collect only anonymous technical metadata — database version, object counts, corruption signatures, and recovery rate. We never collect database contents, file names that identify you, or any personal data inside the file.
You can decline or revoke diagnostics at any time. If you do not opt in, nothing in this category is collected.
6. Payment data
Payments are processed by Stripe, our payment processor. We do not store your card details. Stripe processes payment data under its own Privacy Policy and acts as a separate payment processor: https://stripe.com/privacy.
The payment-related data we receive from Stripe is limited to what is needed to confirm and record a purchase (for example, a session reference and purchase amount). It does not include your database contents.
7. Legal bases (where GDPR applies)
Where the EU/UK GDPR applies:
- We rely on your consent for optional anonymous diagnostics (Art. 6(1)(a)), which you may withdraw at any time.
- We rely on performance of a contract to provide the service you requested (Art. 6(1)(b)).
- We rely on legitimate interests for security, fraud prevention, and aggregate cookieless site measurement (Art. 6(1)(f)). The measurement described in Section 4 sets no cookies and stores nothing that identifies you.
8. Your rights (GDPR / CCPA)
Depending on where you live, you may have rights to access, correct, delete, or port your data, and to opt out of “sale” or “sharing” of personal information (CCPA). To exercise these rights, contact admin@mdbrescue.com. We will respond within the periods required by law.
9. Data retention
- Payment records are retained as required for accounting and dispute handling.
- Opt-in diagnostics are stored without identifying you.
- Site analytics are retained by our analytics provider in aggregate form for a limited period, measured in months, and are never linked to an identified individual.
- We do not retain any database contents, because we never receive them.
10. Changes to this policy
We will post changes here and update the “Last updated” date. For significant changes, we will provide additional notice where required by law.