Privacy Policy
Effective date: 27 August 2026.
Last updated: 27 August 2026.
This Privacy Policy explains how Alpha & Omega Limited ("Alpha & Omega Limited", "we", "us", "our") handles information in connection with OmegaSecurityPro.com, the Omega Security Pro website, browser application and installable Progressive Web App ("Omega Security Pro", the "App", or the "Service").
Omega Security Pro has been designed around a local-first, data-minimisation and privacy-by-design architecture.
This distinction is fundamental: information that Omega Security Pro processes locally inside your browser is not automatically information collected or held by Alpha & Omega Limited.
Your core security data is designed to stay on your device.
Omega Security Pro is deliberately designed so that many of its most sensitive functions can operate within your browser rather than requiring your security information to be uploaded to us.
- Password analysis: designed to run locally.
- Password generation: designed to run locally.
- Encrypted vault: encrypted and stored locally in browser storage.
- Master password: not intentionally stored by Omega Security Pro.
- Selected-file inspection: standard inspection and hashing are designed to occur locally.
- Phishing/message analysis: core structural analysis is designed to occur locally.
- Browser/privacy diagnostics: primarily inspect information exposed to the current browser.
- Performance diagnostics: run through browser-accessible capabilities rather than unrestricted device surveillance.
- Password breach checking: when deliberately requested, a limited hash prefix may be sent to an external breach-range service.
- Website/domain checks: public URLs or domain names may need to be transmitted to Omega Security Pro server functionality or external Internet infrastructure to perform the requested public check.
- No registration: the core application does not require a user account.
- No sale of security contents: Omega Security Pro is not designed to sell your passwords, vault contents, selected files or security-scan contents.
1. Who Is Responsible for Omega Security Pro?
Omega Security Pro is operated by:
Alpha & Omega Limited
New Zealand
Website:
OmegaSecurityPro.com
General:
contact@omegasecuritypro.com
Privacy and legal:
legal@omegasecuritypro.com
Where applicable privacy law treats Alpha & Omega Limited as the organisation determining the purposes and means of processing personal information, Alpha & Omega Limited acts as the relevant controller, agency, business or equivalent regulated organisation.
2. Scope of This Policy
This Policy applies to information handled through:
- OmegaSecurityPro.com;
- the Omega Security Pro browser application;
- the installed Progressive Web App;
- Omega Security Pro security tools;
- password tools;
- phishing and URL tools;
- user-selected file tools;
- website security checks;
- email-domain security checks;
- privacy diagnostics;
- performance diagnostics;
- encrypted local vault functionality;
- local reports;
- support and contact communications;
- PWA installation-related functionality.
3. Local Processing Is Not the Same as Collection by Us
Modern web applications can process information using code running inside a user's browser.
When Omega Security Pro processes information entirely inside your browser and does not transmit that information to Alpha & Omega Limited, we do not receive that information merely because the application processed it.
This distinction is particularly important for passwords, vault contents, selected files and local security reports.
4. Information Processed Locally
Depending on the feature used and browser capabilities, Omega Security Pro is designed to process the following locally:
- password text entered into local strength-analysis tools;
- locally generated passwords;
- password-strength calculations;
- local phishing-text analysis;
- URL structural analysis;
- user-selected file contents for standard local inspection;
- SHA-256 hashes calculated from selected files;
- file-extension and basic file-risk indicators;
- encrypted local vault records;
- browser security diagnostics;
- browser privacy diagnostics;
- browser permission states where exposed by browser APIs;
- browser/device capability information;
- local performance-test results;
- locally generated security reports;
- application preferences stored locally.
5. Password Strength Analysis
Passwords entered into the ordinary password-strength analysis function are designed to be analysed within your browser.
Omega Security Pro does not need to send the plaintext password to Alpha & Omega Limited merely to calculate its local strength assessment.
You should nevertheless avoid entering credentials into a device or browser that you do not trust.
6. Password Generation
Password generation is designed to occur locally using browser-supported cryptographic functionality.
Generated passwords are not intentionally transmitted to Alpha & Omega Limited merely because the generator created them.
7. Optional Password Breach Checking
Password breach checking is different from ordinary local password-strength analysis because it may require a network request.
When the optional breach-check function is deliberately used, Omega Security Pro is designed to hash the password locally and send only a limited initial portion of the resulting SHA-1 hash to a compatible breach-range service using a k-anonymity model.
The full plaintext password is not intended to be sent as part of this range request.
The service can return candidate hash suffixes associated with the supplied prefix, allowing comparison to be completed locally.
Because this function contacts an external service, ordinary Internet metadata such as an IP address, request time and technical request information may necessarily be visible to network infrastructure and the external service.
8. Encrypted Local Vault
Omega Security Pro includes an encrypted credential-vault function.
Vault information is designed to be encrypted locally using AES-GCM.
The encryption key is derived from the user's master password using PBKDF2-SHA256.
Encrypted vault data may be retained in browser local storage on the device where the vault is used.
9. Master Password
Omega Security Pro is designed so that the vault master password is not stored as the vault's recoverable master credential by the application.
Alpha & Omega Limited therefore cannot promise to recover a forgotten master password.
If the encryption credentials required to decrypt locally stored vault data are lost, the encrypted information may become permanently inaccessible.
10. Vault Security Is Also Dependent on Your Device
Local encryption substantially changes where sensitive information is handled, but it does not make a compromised device safe.
A malicious browser extension, compromised operating system, malware, physical device compromise, insecure backup or other endpoint attack may create risks outside Omega Security Pro's control.
Users should protect devices with appropriate operating-system security, updates, access controls and other safeguards.
11. Vault Export and Import
Where Omega Security Pro provides export or import functionality, users control the exported or imported files.
Once an export leaves application-controlled browser storage, protecting that exported file becomes the user's responsibility.
Users should not store sensitive exports in insecure locations or transmit them through untrusted channels.
12. Phishing and Suspicious-Link Analysis
Omega Security Pro can inspect characteristics of URLs and suspicious message text for indicators such as disguised destinations, suspicious host structures, raw-IP addresses, punycode, misleading formatting and scam-language patterns.
Core structural analysis is designed to occur locally where the feature does not require an external lookup.
If a particular check requires information from the Internet, the relevant URL, hostname, domain or necessary request information may be transmitted to perform that check.
13. User-Selected File Inspection
Omega Security Pro does not have unrestricted access to every file on your device.
Standard file inspection requires you to select or otherwise grant browser access to a file.
The standard local file scanner is designed to read the selected file in the browser for functions such as:
- SHA-256 hashing;
- file-extension inspection;
- double-extension detection;
- basic signature or executable indicators;
- other browser-safe heuristic checks.
14. Selected Files Are Not Automatically Uploaded
The standard Omega Security Pro local file scanner is designed not to upload the contents of the selected file to Alpha & Omega Limited merely to calculate the local hash or perform the ordinary local heuristic inspection.
This is materially different from a cloud malware-scanning service that uploads files to remote infrastructure for analysis.
15. File Scanner Limitations
Omega Security Pro is a browser/PWA security toolkit and is not a kernel-level antivirus system.
File analysis should not be interpreted as proof that a file is safe or malicious.
Omega Security Pro cannot silently inspect every file on your device, scan every installed application or replace native operating-system security software.
16. Website Security Checks
When you deliberately request a website security check, Omega Security Pro may transmit the public URL, hostname or domain you supplied to server-side functionality or other Internet infrastructure required to retrieve publicly available website information.
The check may inspect information such as:
- HTTPS availability;
- public HTTP response headers;
- security-related response headers;
- other publicly retrievable website-security information.
You should not place passwords, API keys, authentication tokens, private query strings or other secrets into a URL submitted for public website analysis.
17. Email-Domain Security Checks
Omega Security Pro may inspect publicly available email-domain authentication information, including:
- SPF records;
- DMARC records;
- DKIM-related public DNS information where supported.
The domain name entered for such a check may be transmitted to server-side functionality, DNS infrastructure or another service required to retrieve the requested public DNS information.
Omega Security Pro does not require access to a user's private email inbox merely to perform a public-domain DNS audit.
18. Browser Privacy Diagnostics
Privacy diagnostics may inspect browser-accessible information relevant to privacy and security, including where supported:
- secure-context status;
- browser security capabilities;
- WebCrypto availability;
- WebAuthn availability;
- permission states;
- privacy-related browser signals;
- browser storage capabilities;
- other security-related browser properties.
These checks are limited by browser security boundaries and the APIs the browser chooses to expose.
19. Browser Permissions
Omega Security Pro does not gain unrestricted access to a device merely because it is installed as a PWA.
Browser and operating-system permission controls continue to apply.
Where a function requires permission, your browser or device may request that permission or expose an existing permission state.
20. Performance Diagnostics
Omega Security Pro's performance functionality is designed around browser-safe diagnostics rather than unrestricted operating-system monitoring.
Depending on browser support, diagnostics may evaluate:
- browser performance measurements;
- rendering performance;
- JavaScript/CPU-style benchmark results;
- browser storage capabilities;
- memory or device capability information exposed by the browser;
- same-site latency or application timing;
- other browser-exposed performance characteristics.
21. What Performance Diagnostics Do Not Do
Omega Security Pro does not claim that a PWA can:
- terminate arbitrary applications;
- read every running process;
- clean protected operating-system memory;
- access unrestricted hardware information;
- silently inspect other applications;
- replace operating-system performance management.
22. Security Scores and Reports
Omega Security Pro may generate security, privacy, password, URL, file-hygiene or performance scores and reports.
These results are diagnostic assessments based on the information available to the relevant browser function.
They are not universal determinations of device security and should not be interpreted as guarantees.
Reports designed for local storage remain on the device unless the user exports, shares or otherwise transmits them.
23. Browser Storage
Omega Security Pro may use browser storage for legitimate application functionality.
Locally stored information may include:
- encrypted vault data;
- application preferences;
- local reports;
- PWA/application state;
- other data required for local application functionality.
Such information may remain until it is deleted by application functionality, browser settings, device settings, storage eviction, application removal or the user.
24. Service Worker and PWA Caching
Omega Security Pro uses Progressive Web App technology and may use a service worker to cache application resources.
Cached resources can include:
- HTML;
- CSS;
- JavaScript;
- icons;
- images;
- offline resources;
- other application-shell assets.
The application cache is not intended to operate as a remote repository of your passwords or selected source files.
25. PWA Installation Statistics
Omega Security Pro may maintain aggregate counts relating to PWA installation events so Alpha & Omega Limited can understand general adoption of the application.
The supplied installation-counting design is intended to avoid intentionally recording:
- passwords;
- vault contents;
- selected file contents;
- filenames;
- security-scan contents;
- browsing history;
- persistent user identifiers;
- device fingerprints.
Infrastructure handling a request may nevertheless process ordinary network metadata as explained below.
26. Server and Hosting Logs
Like ordinary websites and web applications, Omega Security Pro depends on Internet and hosting infrastructure.
When your browser requests a webpage, script, stylesheet, image, API endpoint or other resource, servers and infrastructure providers may technically process information such as:
- IP address;
- request date and time;
- requested resource;
- HTTP method and response status;
- browser/user-agent information;
- referrer information where supplied by the browser;
- security and network metadata.
Such logs may be necessary for security, availability, troubleshooting, abuse prevention and operation of the website.
27. Cookies and Similar Technologies
Omega Security Pro's core local-first security functionality does not require the creation of an advertising profile from passwords, vault contents, selected files or security-scan contents.
Browser storage, service workers and similar technologies may be used for application functionality, preferences, security, offline/PWA operation and related legitimate purposes.
If materially different analytics, advertising or tracking technologies are introduced in the future, this Policy should be updated before or when those technologies become operational, and consent controls will be provided where legally required.
28. Contact and Support Information
If you contact Alpha & Omega Limited, we may receive information you voluntarily provide, such as:
- your name;
- email address;
- message content;
- support information;
- screenshots or files you deliberately attach;
- technical information you choose to provide.
Support communications are different from information processed solely inside the local application.
29. Do Not Send Passwords to Support
Do not email or otherwise send us:
- master passwords;
- account passwords;
- private cryptographic keys;
- authentication tokens;
- recovery codes;
- unnecessary confidential files;
- other secrets that are not required to resolve your enquiry.
30. Categories of Personal Information We May Actually Receive
Depending on how you interact with the Service, Alpha & Omega Limited may receive limited categories of information including:
- contact information you voluntarily provide;
- support correspondence;
- ordinary server/network metadata;
- public URLs or domains submitted for online checks;
- limited request information required for optional online functionality;
- aggregate PWA installation-event information;
- information required for legal, security or abuse-prevention purposes.
31. Information We Are Not Designed to Centrally Collect
The ordinary architecture is not designed to create a central Alpha & Omega Limited database containing:
- plaintext passwords entered into local tools;
- passwords generated locally;
- vault master passwords;
- decrypted vault contents;
- every file on a user's device;
- the contents of files selected for standard local scanning;
- complete device browsing history;
- contents of other applications;
- private email inbox contents;
- other applications' passwords;
- unrestricted device activity.
32. Why We Process Information
Where Alpha & Omega Limited actually receives personal information, it may be processed for purposes including:
- providing requested functionality;
- responding to enquiries;
- providing technical support;
- operating and maintaining Omega Security Pro;
- protecting website and application security;
- preventing fraud and abuse;
- diagnosing technical problems;
- maintaining service availability;
- understanding aggregate PWA adoption;
- complying with legal obligations;
- establishing, exercising or defending legal claims;
- improving legitimate application functionality.
33. Data Minimisation
Omega Security Pro is designed around the principle that sensitive information should not be transmitted to a remote service merely because browser-local processing can perform the requested function.
We aim to limit information collection to what is reasonably necessary for legitimate functions, security, support and legal requirements.
34. Lawful Bases for EEA and UK Users
Where the GDPR, UK GDPR or comparable legislation applies, processing may rely on one or more lawful bases according to the circumstances, including:
- performance of a contract or steps requested by you where processing is necessary to provide a requested service;
- legitimate interests in operating, securing, maintaining and improving the Service, provided those interests are not overridden by applicable rights;
- legal obligations where processing is required by law;
- consent where applicable law requires consent and we rely upon it.
35. Sensitive and Special-Category Information
Omega Security Pro is not designed as a service for centrally collecting health records, biometric databases, political affiliations, religious beliefs, sexual-orientation information or other special-category information.
Users should avoid voluntarily sending such information through support channels unless genuinely necessary and lawful.
Information stored only inside a user's local encrypted vault is different from information transmitted to Alpha & Omega Limited.
36. Children and Young People
Omega Security Pro is a general security utility and is not designed as a service directed specifically at young children.
We do not knowingly seek to create profiles of children from their passwords, files or security information.
Where applicable law requires parental or guardian consent for a particular processing activity, that requirement must be satisfied.
A parent or guardian who believes a child has directly supplied personal information to Alpha & Omega Limited may contact legal@omegasecuritypro.com .
37. Sharing and Disclosure
Alpha & Omega Limited does not need to disclose locally processed information that it never receives.
Personal information actually received by us may be disclosed only where reasonably necessary, including to:
- hosting and infrastructure providers;
- technical service providers;
- security providers;
- professional advisers;
- regulators or public authorities where legally required;
- courts or law-enforcement bodies where disclosure is lawfully required;
- a successor organisation in a legitimate corporate transaction;
- other recipients with your direction or valid consent where required.
38. Third-Party Online Services
Certain optional functions may necessarily interact with third-party Internet services.
Examples can include:
- password breach-range services;
- DNS infrastructure;
- public website infrastructure;
- hosting/network providers.
Information processed independently by a third party may also be subject to that third party's privacy practices and applicable law.
39. No Sale of Passwords, Vault Contents or Selected Files
Alpha & Omega Limited does not design Omega Security Pro around selling plaintext passwords, decrypted vault contents or user-selected file contents.
The local-first architecture is specifically intended to minimise the need for Alpha & Omega Limited to possess such information in the first place.
40. Behavioural Advertising
Omega Security Pro's core security functionality is not designed to construct behavioural advertising profiles from your passwords, encrypted vault contents, selected files or local security-scan contents.
If this business model materially changes in the future, this Privacy Policy must be updated and legally required choices or consents must be provided.
41. International Data Transfers
Omega Security Pro is available over the Internet and infrastructure or service providers involved in hosting, networking, security or optional external functionality may operate in more than one country.
Where Alpha & Omega Limited transfers or discloses personal information internationally, we will take measures required by applicable law, which may include contractual protections, adequacy mechanisms, consent where appropriate, or other recognised transfer safeguards.
Again, information that remains solely inside your browser and is never transmitted to us is not transferred internationally by Alpha & Omega Limited merely because Omega Security Pro processed it locally.
42. Retention
We aim not to retain personal information longer than reasonably necessary for the purpose for which it was obtained, subject to security, legal, accounting, dispute-resolution and other legitimate retention requirements.
Retention periods depend on the category and purpose of the information.
For example:
- support correspondence may be retained for the period reasonably necessary to resolve and document the matter;
- security logs may be retained for a reasonable security and operational period;
- legally required records may be retained for the applicable statutory period;
- local browser data may remain until deleted by you, the browser, the operating system or application functionality.
43. Deleting Local Information
Depending on your browser and device, local Omega Security Pro information may be removed by:
- using an available in-app delete/reset function;
- clearing site data;
- clearing browser storage;
- clearing application data;
- uninstalling the PWA;
- using browser or operating-system storage controls.
Users should understand the consequences before deleting encrypted vault data or other information that cannot be reconstructed.
44. Security Safeguards
Alpha & Omega Limited takes reasonable technical, organisational and operational measures appropriate to the nature of information actually handled by the Service.
Omega Security Pro's privacy and security architecture includes, where applicable:
- local-first processing;
- data minimisation;
- HTTPS transport protections;
- browser security boundaries;
- cryptographic browser APIs;
- AES-GCM local vault encryption;
- PBKDF2-SHA256 key derivation;
- limited k-anonymity breach requests;
- user-mediated file access;
- restricted PWA/browser permissions;
- security-focused application design.
45. No Security System Is Infallible
No website, browser, encryption system, device or communications network can be guaranteed to be completely secure.
Users should maintain appropriate device security, browser updates, operating-system updates, backups, strong authentication and other reasonable safeguards.
46. Privacy and Security Incidents
If Alpha & Omega Limited becomes aware of a privacy or security incident involving personal information that we actually hold, we will assess and respond to the incident in accordance with applicable law.
Where a privacy breach meets applicable legal notification thresholds, notifications will be made to affected individuals, regulators or other parties as required.
47. New Zealand Privacy Act 2020
Alpha & Omega Limited is based in New Zealand and treats the Privacy Act 2020 and its Information Privacy Principles as a central privacy framework for the Service where applicable.
Those principles address matters including:
- purpose of collection;
- source of personal information;
- notice when collecting information;
- lawful and fair collection;
- storage and security;
- access;
- correction;
- accuracy;
- retention;
- use;
- disclosure;
- unique identifiers;
- overseas disclosure.
48. New Zealand Access and Correction Rights
Subject to applicable exceptions, individuals may have rights to request access to personal information about them held by Alpha & Omega Limited and to request correction of that information.
Requests may be submitted to:
We may need to verify identity before disclosing personal information.
We cannot provide a server copy of information that never left your device and is not held by Alpha & Omega Limited.
49. European Economic Area Privacy Rights
Where the EU General Data Protection Regulation applies, an individual may, subject to its conditions and exceptions, have rights including:
- the right to be informed;
- the right of access;
- the right to rectification;
- the right to erasure;
- the right to restrict processing;
- the right to data portability;
- the right to object;
- rights concerning certain automated decision-making;
- the right to withdraw consent where processing relies on consent;
- the right to complain to an appropriate supervisory authority.
50. United Kingdom Privacy Rights
Where UK data-protection legislation applies, individuals may have corresponding rights under applicable UK law, subject to the relevant conditions, limitations and exemptions.
Requests concerning personal information actually held by Alpha & Omega Limited may be submitted to the privacy contact below.
51. California Privacy Rights
Where the California Consumer Privacy Act, as amended, applies to Alpha & Omega Limited and a particular individual or processing activity, eligible California residents may have rights including, subject to applicable conditions and exceptions:
- the right to know;
- the right to access applicable personal information;
- the right to request deletion;
- the right to request correction;
- the right to opt out of qualifying sale or sharing;
- the right to limit certain uses of sensitive personal information where applicable;
- the right not to be discriminated against for exercising applicable privacy rights.
This section does not represent that the CCPA necessarily applies to every Omega Security Pro interaction. Rights apply where the statutory requirements are satisfied.
52. Sale and Sharing Under California Law
Omega Security Pro is not designed around selling users' passwords, vault contents, selected-file contents or local security-scan contents.
If future business practices create a statutory "sale" or "sharing" obligation under applicable California law, Alpha & Omega Limited will provide notices and opt-out mechanisms required by that law.
53. Other United States Privacy Laws
Residents of other United States jurisdictions may have additional privacy rights where applicable state privacy legislation applies to Alpha & Omega Limited and the relevant processing.
We will respond to valid requests in accordance with applicable law.
54. Australia
Where Australia's Privacy Act 1988 and Australian Privacy Principles apply to Alpha & Omega Limited or relevant processing, we will handle covered personal information in accordance with applicable requirements, including transparency, security, access, correction and cross-border requirements.
55. Canada
Where Canada's applicable federal or provincial private-sector privacy legislation applies, covered personal information will be handled according to applicable requirements concerning matters such as accountability, identified purposes, appropriate consent, limiting collection, safeguards, openness and individual access.
56. Other Countries
Omega Security Pro may be accessed internationally.
Users may have additional rights under mandatory privacy laws in their jurisdiction.
Nothing in this Policy is intended to remove a mandatory privacy right that applicable law does not permit Alpha & Omega Limited to exclude.
57. Exercising Privacy Rights
Privacy and data-protection requests may be sent to:
Alpha & Omega Limited
Privacy & Legal
legal@omegasecuritypro.com
Please clearly describe the right you wish to exercise and the information or interaction concerned.
We may request information reasonably necessary to verify identity and protect against unauthorised disclosure.
58. Identity Verification
Privacy rights must not become a mechanism through which an unauthorised person obtains another individual's information.
We may therefore take reasonable steps to verify identity or authority before completing certain requests.
Verification information will be used for legitimate verification, security and compliance purposes.
59. Authorised Agents
Where applicable law permits a person to exercise privacy rights through an authorised agent, we may require reasonable evidence of the agent's authority and may take additional verification steps permitted by law.
60. Automated Decision-Making
Omega Security Pro generates automated diagnostic scores and classifications relating to security, passwords, URLs, selected files, privacy or performance.
These are technical diagnostic outputs.
Omega Security Pro is not designed to use these diagnostic scores to make decisions on behalf of Alpha & Omega Limited concerning employment, credit, housing, insurance, education or other similarly significant legal or personal eligibility decisions.
61. Do Not Track and Global Privacy Signals
Browser privacy signals and legal requirements continue to evolve.
Where applicable law requires Alpha & Omega Limited to recognise a legally binding browser-based opt-out signal for a particular processing activity, we will seek to honour that requirement.
Omega Security Pro's core local security functions do not depend upon behavioural advertising profiles generated from sensitive security-tool contents.
62. Government and Legal Requests
Alpha & Omega Limited may disclose information actually in its possession where disclosure is required or permitted by applicable law, valid legal process or binding governmental authority.
Local-only information that Alpha & Omega Limited never received cannot be produced from an Alpha & Omega Limited server as though it had been centrally stored there.
63. Corporate Transactions
If Alpha & Omega Limited undergoes a merger, acquisition, restructuring, financing, sale of assets or similar legitimate transaction, information actually held by the business may be transferred subject to applicable privacy law and appropriate safeguards.
64. Links to Other Websites
Omega Security Pro may contain links to independent websites.
Alpha & Omega Limited does not control the privacy practices of independent third-party websites merely because Omega Security Pro links to them.
Users should review the privacy information supplied by the relevant third party.
65. User Responsibility for Device Security
The effectiveness of local-first privacy depends partly on the security of the user's own environment.
Users should:
- keep operating systems updated;
- keep browsers updated;
- use reputable device security;
- protect device access;
- avoid untrusted browser extensions;
- use strong authentication;
- protect exported vault information;
- avoid using sensitive security tools on compromised devices.
66. Browser/PWA Security Boundaries
Omega Security Pro operates within browser and PWA security boundaries.
It cannot legitimately:
- silently read every application on a device;
- access arbitrary private application files;
- read every password stored by other software;
- intercept all device network traffic;
- replace a native firewall;
- perform kernel-level antivirus monitoring;
- bypass operating-system security boundaries.
67. Privacy by Design
Omega Security Pro's architecture seeks to reduce privacy risk through principles including:
- local processing where practical;
- collection minimisation;
- user-selected file access;
- encrypted local vault storage;
- limited disclosure for breach checking;
- public-data-only website/domain auditing where applicable;
- browser-safe permissions;
- avoiding unnecessary account registration;
- avoiding central storage of core security-tool contents.
68. Changes to the Application
Omega Security Pro may evolve.
New functionality may change what information is processed or transmitted.
Where a material change introduces a materially different use of personal information, this Privacy Policy will be reviewed and updated as appropriate and additional notice or consent will be provided where required by law.
69. Changes to This Privacy Policy
Alpha & Omega Limited may update this Policy to reflect changes in:
- Omega Security Pro functionality;
- privacy practices;
- security architecture;
- service providers;
- legal requirements;
- regulatory guidance;
- business operations.
The effective or last-updated date at the top of this page will be changed when appropriate.
70. Complaints
If you believe Alpha & Omega Limited has handled personal information incorrectly, please contact us first so that the matter can be investigated.
Email: legal@omegasecuritypro.com
Depending on your location and applicable law, you may also have the right to complain to an appropriate privacy or data-protection regulator.
71. New Zealand Privacy Complaints
Individuals may have the right to raise a privacy complaint with the New Zealand Office of the Privacy Commissioner where the Privacy Act 2020 applies.
We encourage users to contact Alpha & Omega Limited so we have an opportunity to investigate and respond to the concern.
72. Relationship With the Terms of Use
This Privacy Policy should be read together with the Omega Security Pro Terms of Use and the information describing the Omega Security Pro Security Model .
73. Important Security Disclaimer
Omega Security Pro is a browser/PWA security and privacy toolkit.
It is not a replacement for native operating-system antivirus, endpoint detection and response, enterprise network security, professional incident response or other security controls appropriate to the user's circumstances.
74. Contact
For privacy, data-protection, security or legal enquiries:
Alpha & Omega Limited
New Zealand
Privacy & Legal:
legal@omegasecuritypro.com
General Contact:
contact@omegasecuritypro.com
Support:
support@omegasecuritypro.com
Process locally when practical. Transmit only when the requested function requires it.
Omega Security Pro is designed around a simple privacy principle: sensitive security information should not be collected centrally merely because a browser can process it locally.
Password analysis, password generation, selected-file inspection, encrypted vault operations, browser diagnostics and local reports are therefore designed around local browser processing wherever the relevant function permits.
Where an online function genuinely requires a network request, such as an optional k-anonymity breach check or public website/domain audit, Omega Security Pro seeks to limit the information transmitted to what is reasonably necessary for the requested function.
Omega Security Pro Core Engine and Public PWA Separation
Private server-side security administration data is maintained for the operator’s own hosted website and is not a public-user account system. The public PWA does not require user registration. Browser-local vaults, reports and selected-file analysis are designed to remain local unless a specific online function is explicitly requested.
Anonymous PWA Installation Metrics
Omega Security Pro may maintain aggregate counts for install prompt availability, prompt acceptance/dismissal, browser appinstalled events, first standalone launches and confirmed installs. Confirmed-install notifications are sent only to sales@omegasecuritypro.com using authenticated SMTP. The counter is designed not to intentionally store IP addresses, user agents, device fingerprints, browsing history, selected filenames or contents, passwords, vault contents or security-scan contents.
Privacy & Data Enquiries
For privacy, data-protection or rights-related enquiries contact legal@omegasecuritypro.com .
For general enquiries contact contact@omegasecuritypro.com .
Operator: Alpha & Omega Limited.
Country: New Zealand.
Hybrid security analysis and user-selected files
Local scans operate in the browser/PWA. If the user explicitly chooses an Online Deep Scan, the selected file is transmitted to the Omega Security Pro server endpoint for analysis. The endpoint is designed to use the temporary server upload and does not intentionally persist the sample. If a compatible server antivirus engine is available, its result may be included. Local PWA threat vaults use browser storage and do not silently remove the original device file.
Browser-reported device memory is approximate where available. Storage usage/quota refers to the Omega web-app origin, not the user's total physical disk capacity.