Your Data Rights
Last updated September 25, 2026
This page explains the rights you may have over personal information that Alesian Security LLC ("Alesian", "we") holds about you, and how to use them. Which rights apply depends on where you live. We extend the rights below to everyone where we reasonably can.
If your information reached us through one of our customers (for example in a DMARC report), that customer controls it. Please contact them first. If you contact us, we will pass your request to them and help them respond.
1. Access
You may ask whether we hold personal information about you, and for a copy of it, with an explanation of why we hold it, where it came from, who we share it with and how long we keep it.
2. Correction
You may ask us to correct information that is inaccurate or incomplete. Where we have shared it, we will tell the recipients where we reasonably can.
3. Deletion
You may ask us to delete your information. We may keep some information where we need it to meet a legal obligation, to establish, exercise or defend a legal claim, or to protect people from fraud. If we keep anything, we will tell you what and why.
4. Restriction
You may ask us to limit how we use your information while a dispute about its accuracy or our grounds for using it is resolved, or where you need us to keep it for a legal claim.
5. Portability
You may ask for information you gave us, in a structured, machine-readable format (such as JSON), so that you can move it elsewhere.
6. Objection
You may object to our use of your information based on legitimate interests. We will stop unless we have compelling grounds that override your interests, or we need the information for a legal claim. If you object to business outreach, we will stop contacting you and keep only what we need to honor that.
7. Sale, sharing and profiling
We do not sell personal information, share it for cross-context behavioral advertising, or use it for profiling that produces legal or similarly significant effects. No opt-out is needed. You may still ask us to confirm this.
8. If you are a domain registrant, or named in data about a domain
To protect our customers from impersonation, we collect public information about domain names that resemble theirs. This can include a published WHOIS record naming you as registrant, and DNS and mail settings for your domain.
- Why we hold it: our and our customers' legitimate interest in detecting and preventing fraud and impersonation.
- What you can ask: access, correction or deletion under sections 1 to 3.
- What we may decline to delete: records needed for an open block request, or to establish or defend a legal claim.
- Blocklist operators: if your domain was submitted to a blocklist, the operator holds its own copy and makes its own decisions. We will pass your request to operators we submitted to.
A risk score or detection is not a finding that you acted in bad faith.
9. If you believe a block request about your domain was wrong
Email admin@alesiansecurity.com with the domain name and why you believe the listing is mistaken. We will:
- 1. acknowledge your message within one calendar month;
- 2. review the request, the evidence and your explanation;
- 3. if we agree the submission should not stand, withdraw it and ask each operator we submitted to to remove the listing; and
- 4. tell you the outcome.
Operators decide independently whether to remove a listing. You can also contact them directly.
10. How to make a request
Email admin@alesiansecurity.com with the subject "Data Rights Request". Tell us which right you want to use and give enough detail for us to find your information.
- Verification. We may ask for information to confirm your identity, and we will use it only for that purpose.
- Authorized agents. Someone may act for you (as California and other state laws allow) with your signed permission. We may still ask you to verify your identity.
- Cost. Free, unless a request is clearly unfounded or excessive.
- Timing. We respond within one month. Where US state law applies, we respond within 45 days. We may extend either period where the law allows and will tell you why.
- No discrimination. Using your rights will not affect the service you receive.
11. Appeals
If we decline your request, you may appeal by replying to our decision with the subject "Appeal". We will respond within 45 days (60 days where state law permits). If you remain unhappy with the outcome, you may contact your state Attorney General, including the Colorado Attorney General at coag.gov.
12. Complaints
You may also complain to your data protection authority. In the UK that is the Information Commissioner's Office (ico.org.uk). In the EU, it is the supervisory authority where you live or work.