Your privacy
Privacy policy
This policy explains what DeskTester keeps in your browser, what it sends to our systems, and how to make a privacy request.
Effective September 11, 2026
NMajor Studios LLC, a Wyoming limited liability company, operates DeskTester at www.desktester.com. This policy covers the website, its browser-based tests, interaction analytics, and the contact form.
1. Raw test input stays in your browser
DeskTester processes microphone audio, camera video, keystrokes, pointer movement, touch contacts, controller input, sensor readings, MIDI messages, and test results locally in your browser. DeskTester does not upload that raw test input to its application servers or analytics service.
A tool may let you make a short recording, image, or file for local playback or download. That file remains on your device unless you choose to send it somewhere after leaving DeskTester. Resetting the test or closing the page clears temporary test state. Media tests also stop active tracks when you stop the test or leave the page.
2. Permissions
Camera, microphone, MIDI, and supported sensor tests request permission only after you choose to start them. Your browser and operating system control those permissions. DeskTester cannot bypass a denial or read a device that the browser does not expose.
3. Interaction analytics
DeskTester uses a self-hosted Rybbit instance at rybbit.nmajor.net to learn whether people can use the tests. DeskTester does not load Rybbit's tracking script or send a page-view event. It sends a custom event only after an eligible interaction, unless you opt out or your browser sends Do Not Track or Global Privacy Control.
Recorded product events are limited to coarse actions such as starting or completing a test, a permission result, an unsupported browser API, opening a troubleshooting step, choosing a result from the test search, or submitting the contact form. An event may include the page path, test type, coarse result, browser family, a result-count range, or a fixed step identifier. Search words are not sent.
Analytics events do not include recordings, frames, keys, typed text, search terms, pointer coordinates, touch points, controller values, sensor readings, MIDI data, device labels, contact-form fields, share clicks, or persistent account identity. Like any web request, Rybbit receives an IP address and browser headers. The property is configured not to store raw IP addresses and to rotate its anonymous identifier daily. DeskTester does not enable session replay, automatic click capture, outbound-link tracking, JavaScript error capture, or analytics cookies.
The opt-out is stored in local storage for this domain. Clearing site data resets it. Changing the setting affects later interactions and future page loads.
4. Contact messages
When you use the contact form, we receive the topic, your name, reply email address, message, and an optional DeskTester page path. Do not include recordings, screenshots, passwords, financial information, medical information, or other sensitive data in the message.
The form posts to a Cloudflare Worker and then to a self-hosted Chatwoot inbox at chatwoot.nmajor.net. Chatwoot stores the conversation so a person can read it and reply. Cloudflare also receives normal request data, including your IP address, browser headers, and a Turnstile token used to check for automated abuse. The Worker does not store a separate copy of the message.
5. Service providers
- Cloudflare provides DNS, site delivery, Workers, Turnstile, rate limiting, security controls, and operational logs.
- Chatwoot, hosted on NMajor infrastructure, stores and manages contact-form conversations.
- Rybbit, hosted on NMajor infrastructure, receives the limited interaction events described above.
- MXroute provides the mailbox used to reply to contact messages.
We may disclose information when law requires it, to protect people or the service, or as part of a merger, financing, acquisition, or sale subject to suitable privacy obligations. We do not sell personal information or use it for targeted advertising.
6. Retention
Local test state remains only until you reset the test, close the page, clear site data, or your browser removes it. Contact conversations, security logs, rate-limit records, and analytics events remain for as long as needed to answer requests, operate and secure the site, meet legal duties, and follow the configured retention periods of each provider.
7. Your privacy rights
Depending on where you live, you may have rights to access, correct, delete, or receive a copy of your personal information. You may also have the right to object to or restrict some processing, withdraw consent, or appeal a denied request.
Submit a request through the contact form. Use the same reply email address that you used before so we can find the relevant conversation. We may ask for information needed to verify the request.
8. Children
DeskTester does not offer accounts and does not knowingly collect personal information from children under 13, or a higher minimum age where local law requires it. A parent, guardian, or teacher may supervise a child's use of the public tests. Children should not submit the contact form.
9. International processing and security
DeskTester and its providers may process information in the United States and other countries where they operate. We use HTTPS, access controls, input limits, rate limits, bot checks, and restricted service credentials. No internet service can guarantee absolute security.
10. Changes and contact
We may update this policy as DeskTester changes. We will post a new effective date and provide any notice or request any consent required by law.
Use the contact form for privacy requests, legal notices, or questions about this policy. DeskTester does not publish an email address.