Compliance
What actually happens to your data
This page sets out data handling, the third-party services in use, and the commitments we work to. It must be updated whenever the application's behaviour changes.
Data matrix
Every piece of data involved
One row for each kind of data that appears while you use Laju.
| Data | Purpose | Location | Retention |
|---|---|---|---|
| Test payload | Measuring download and upload speed | Transient memory on the test server | Discarded immediately, never written to storage |
| IP address our server sees | Shown back to you in the connection panel | Computed per request | Not recorded by the application code |
| IP address at the IPv4 and IPv6 lookups | Showing both address families at once | Third-party services contacted directly by your browser | Governed by those providers' own policies |
| Test history | Comparing results over time | Your browser's local storage | 30 most recent results, erasable at any time |
| Language choice | Remembering the language you picked | A functional cookie in your browser | Until you clear site data |
| Infrastructure-level logs | Operations and security at the hosting provider | The hosting provider running this site | Governed by the hosting provider's policy |
Third-party endpoints on this deployment
https://ipv4.icanhazip.comhttps://ipv6.icanhazip.com
The addresses above are read from the running deployment's configuration, so this list cannot fall out of step with the code.
Last updated Jul 28, 2026, 12:00 AM
01 Scope
This document covers the Laju site and its measurement endpoints. It is an explanation, not a certification: we claim no third-party audit or accreditation.
02 Data minimisation
The service is designed to work without accounts, without mandatory forms, and without storing results on a server. The test payload is random bytes that contain nothing about you and are discarded on arrival.
03 Openness about IP addresses
A web page cannot ask the operating system for its IP addresses. All it can do is ask a server which address that server saw.
Because a single server only ever sees one address family, showing IPv4 and IPv6 together requires the browser to contact two different hostnames. We say so explicitly rather than presenting the result as if it came from your device.
04 Third parties
This deployment uses the address-lookup endpoints listed above and loads web fonts from Google Fonts. There is no ad network, no cross-site tracker and no other third-party embed on the page.
05 Measurement honesty
The engine parameters shown on the How It Works page are read directly from the program's configuration, so the documentation cannot drift from actual behaviour.
The limits of the method are listed on the same page. Activity estimates such as streaming or video calling are labelled as estimates, not guarantees.
06 Accessibility
The interface aims to follow common practice: adequate contrast, visible keyboard focus, a skip link, semantic elements and respect for reduced-motion preferences.
We have not carried out a formal accessibility audit, so we do not claim a specific WCAG conformance level. Reports of accessibility problems are very welcome.
07 Security
The site is served over HTTPS. Measurement endpoints enforce request size limits and return headers that forbid caching, so a cache in the middle cannot fake a result.
Because there is no user database, there is no credential store or personal history that could leak from our side.
08 Openness
The method, parameters and limits are written openly on this site. If you find a mismatch between what is written and what happens, tell us and we will follow it up and update this page.
09 Limits we acknowledge
We do not operate a global network of test servers, so a result does not always represent the path to other services. We also depend on the hosting provider for infrastructure-level logs that sit outside our code.
We hold no ISO, SOC or comparable certification, and we display no compliance badge we do not have.
10 Contacting us
Questions or reports about this page can be sent through the Contact page.