Legal
Terms & Privacy
Section A
Terms & Conditions
1. About ThiefDroppers and ELARA. ThiefDroppers Inc. is based in Ontario, Canada, and serves users in multiple countries. ELARA is an AI-assisted public-safety service being developed by ThiefDroppers to help people understand suspicious situations involving scams, fraud, recruitment abuse, impersonation, cyber grooming and related online harms. ELARA may organize information, identify inconsistencies, explain risk indicators and suggest verification or safety steps. It does not determine whether a person has committed a crime and does not make legal findings.
2. Who may use the service. Our public educational material is intended to be broadly accessible. Age and parental-consent requirements differ by country. Where applicable law requires parental or guardian consent, or where a young person cannot meaningfully understand the privacy consequences of a feature, ELARA must be used with the required adult involvement. We may apply additional age, consent or guardian controls for particular jurisdictions or sensitive features.
3. Accounts, access and abuse prevention. Some ELARA features may require an account, verified email address or approved access. We may use account, device, network, login and usage signals to prevent automated abuse, impersonation, malicious testing, evasion of usage limits and attempts to misuse ELARA. We may limit, suspend or close access where we reasonably believe an account threatens users, the service or the integrity of our safety systems.
4. What you may submit. You may submit material such as screenshots, emails, documents, job offers, chats, photos, URLs and business or contact details when reasonably necessary for the check you request. Submit only information you are entitled to share and only what is needed. Do not upload passwords, authentication codes, private keys, full payment-card numbers, highly sensitive identity information that is not necessary, malware, or sexually explicit images of a person under 18. If a child is being sexually exploited or intimate images are involved, use the appropriate child-safety, police or emergency reporting route rather than uploading the image itself.
5. Your responsibility for third-party information. A submission may contain information about another person, recruiter, business, family member or other third party. You are responsible for having a lawful reason to provide that information. ELARA is designed to assess situations and evidence, not to create public accusations, suspect lists or reputational scores about individuals.
6. AI-assisted results and uncertainty. ELARA uses automated systems and may use more than one model or technical provider. Results can be incomplete, incorrect or based on missing information. A reading such as “Appears Consistent,” “Needs Verification,” “Be Cautious,” “Avoid,” or “Manual Review Recommended” is guidance about the material reviewed, not a statement of fact about a person or organization. Do not rely on ELARA as the only basis for a financial, employment, legal, immigration, medical, law-enforcement or personal-safety decision.
7. Not an emergency or professional service. ThiefDroppers and ELARA are not emergency services, a police service, a bank, a law firm, a regulated financial adviser, a medical provider or a licensed investigative authority. If someone is in immediate danger, contact the appropriate local emergency service. If money is moving, contact the relevant bank or payment provider through an independently verified channel.
8. Acceptable use. You may use the service only for lawful, defensive and good-faith purposes. You must not use it to facilitate fraud, harassment, stalking, doxxing, discrimination, exploitation, grooming, credential theft, surveillance, malware, evasion of safety controls, automated abuse, or attempts to identify or target vulnerable people. You must not misrepresent an ELARA result as a legal finding, law-enforcement conclusion or verified accusation.
9. Service-improvement use. We may improve ELARA using testing, evaluation and de-identified or aggregated safety data. Where improvement would use information derived from a user's case beyond what is necessary to provide, secure or troubleshoot the service, we intend to obtain a separate opt-in consent. Raw uploaded files are not intended to be used as a training corpus. Human reviewers may examine PII-reduced summaries or snippets in escalated, quality-control or low-confidence cases.
10. Intellectual property. ThiefDroppers owns or licenses the website, ELARA, HARM, branding, software, original research, taxonomies and other protected material made available through the service. You retain ownership of material you submit. You grant us a limited right to process that material only as needed to provide, secure, maintain and, where separately permitted, improve the service.
11. Third-party resources. We link to government agencies, police services, regulators, reporting services and other external resources. Those services are independent of ThiefDroppers. Contact details and procedures can change, and you should confirm urgent information on the relevant official site.
12. Availability and changes. ELARA is being developed iteratively. Features, limits, availability, supported file types and automated capabilities may change. We may introduce paid plans or business services later. Any price, renewal or subscription terms will be disclosed before a user is charged.
13. No warranty. To the maximum extent permitted by applicable law, the service is provided on an “as available” basis. We do not guarantee that every scam, fraud, grooming pattern, business, recruiter, person, website or risk will be detected, or that every result or external contact will remain current. Nothing in these Terms excludes rights or warranties that cannot legally be excluded.
14. Limitation of liability. To the maximum extent permitted by applicable law, ThiefDroppers Inc. will not be liable for indirect, incidental, special, consequential or punitive losses arising from use of or inability to use the service, or from decisions made solely on an automated result. Where liability cannot be excluded, it will be limited only to the extent permitted by law. This section does not limit liability that applicable law does not permit us to limit.
15. Governing law. These Terms are governed by the laws of Ontario and the applicable federal laws of Canada, except where mandatory consumer, privacy or other protections in the country or region where you live apply regardless of that choice. Nothing in these Terms is intended to waive rights that cannot lawfully be waived. Courts located in Ontario will have jurisdiction where permitted by applicable law.
16. Changes and contact. We may update these Terms as the service changes. Material changes will be posted here and, where appropriate, communicated through the service. Questions may be sent to info@thiefdroppers.com. ThiefDroppers Inc., 200-1885 Wilson Ave, North York, Ontario, Canada.
Section B
Privacy Policy
1. Scope and accountability. This Privacy Policy applies to users globally and explains how ThiefDroppers Inc. handles personal information through thiefdroppers.com, ELARA, contact forms, access requests, workshops and related services. ThiefDroppers is responsible for personal information under its control, including information processed for us by service providers. Privacy questions and requests can be sent to info@thiefdroppers.com.
2. Information you give us. Depending on the feature, we may collect your name, email address, optional phone number, country or region, account and sign-in information, communications with us, consent choices, and the content you choose to submit for a check. Submitted content may include messages, screenshots, documents, URLs, job or business information, contact details and other material relevant to the situation you ask us to review.
3. Information collected for security and operation. We may collect limited technical and security information such as IP address, browser or device information, timestamps, authentication events, session identifiers, usage counts, rate-limit events, error logs and abuse signals. We use this information to operate the service, prevent automated or malicious use, protect accounts, enforce limits and investigate security incidents. We do not need invasive device fingerprinting or precise location data for ordinary use and do not intend to collect them unless a future security need is justified and disclosed.
4. How submitted files are handled. Raw uploaded files are intended to be used only long enough to extract the information needed for the requested check and are then discarded from the active processing workflow. Derived text, structured facts, case summaries, safety signals or saved briefs may be retained where needed to provide the service, keep a user-requested history, investigate abuse, meet legal obligations or support an approved quality-improvement process. Temporary system copies, backups or security logs may persist for a limited period before deletion.
5. AI processing and service providers. ELARA uses cloud infrastructure and AI-processing service providers to perform functions such as extraction, classification, reasoning, safety analysis, hosting, authentication and security. We do not need to publish the identity of every model used in a particular case, but we remain responsible for selecting providers, restricting their permitted use of personal information and applying appropriate contractual and technical safeguards. Information may be processed in Canada or other jurisdictions. Where applicable law requires safeguards for international transfers, we will use an appropriate transfer mechanism or other lawful safeguard and disclose material transfer information where required.
6. Human-in-the-loop review. ELARA is designed to reduce unnecessary exposure of personal information before human review. Low-confidence, escalated, safety, quality or troubleshooting cases may be reviewed by authorized personnel using PII-reduced summaries, structured facts or limited snippets where feasible. Raw uploads are not intended to be part of routine human review.
7. System improvement and research. We may use aggregated statistics and de-identified safety patterns to test and improve ELARA. If we want to use case-derived information for model or product improvement in a way that is not necessary to provide, secure or troubleshoot the service, we intend to ask for a separate opt-in consent. Declining that optional use should not prevent a person from receiving the core service.
8. Children and young people. Our safety information may be relevant to young people, including people affected by cyber grooming. We design notices for clarity and minimize collection where possible. Age thresholds and parental-consent rules vary internationally; where applicable law requires parental or guardian authorization, or where a young person cannot meaningfully understand the processing involved, we require the appropriate adult involvement. We do not ask users to upload sexually explicit images of minors.
9. Marketing email. Safety alerts, newsletters and promotional email are optional. Marketing consent is separate from access to the core service and is not pre-selected. Where required, our messages will identify ThiefDroppers and provide an unsubscribe mechanism. Withdrawing marketing consent does not close your ELARA account.
10. Cookies, local storage and analytics. We may use essential browser storage or similar technologies for sign-in state, saved preferences, fraud prevention and functions a user requests. We do not currently plan to use behavioural advertising pixels. If we introduce non-essential analytics, advertising or cross-site tracking technologies, we will update this Policy and provide consent or opt-out controls where required by the laws that apply to the user. We may use privacy-preserving, aggregated operational metrics that do not require tracking individuals across unrelated services.
11. When we disclose information. We may disclose personal information to service providers acting for us; when you direct us to do so; when necessary to protect the security and integrity of the service; or where required or permitted by law. We do not sell personal information. We do not provide advertisers with case submissions or user conversations.
12. Retention. We keep personal information only for as long as it is reasonably needed for the purpose for which it was collected, for security, or to meet legal and record-keeping requirements. Raw upload retention is designed to be short and tied to extraction. Account information and saved case material may remain while an account is active or until a user deletes it, subject to limited backup, security, fraud-prevention and legal-retention periods. We will continue to document and publish more specific retention periods as the production architecture is finalized.
13. Your choices and rights. Depending on where you live, you may have rights to know or access personal information, correct it, request deletion, restrict or object to certain processing, withdraw consent, obtain portable data, or opt out of certain sale, sharing, profiling or targeted-advertising uses where those rights apply. We do not sell personal information. You may also unsubscribe from marketing at any time. Some rights are subject to legal, security, fraud-prevention or other permitted exceptions. Requests can be sent to info@thiefdroppers.com. We may need to verify that a request is being made by the correct person.
14. Safeguards. We use administrative, technical and organizational safeguards appropriate to the sensitivity of the information, including access controls, least-privilege practices, logging, restricted service accounts, encrypted transport, controlled secrets, security review and separation between public interfaces and protected backend functions. No internet service can guarantee absolute security.
15. Privacy incidents. We maintain processes to assess suspected privacy and security incidents and will notify affected individuals and regulators where required by applicable law.
16. Changes to this Policy. We may update this Policy when ELARA, our vendors, data flows or legal obligations change. Material changes will be highlighted and, where a new use requires consent, we will request it before applying that use to personal information.
17. Contact. Privacy questions, complaints, access requests and deletion requests: info@thiefdroppers.com. ThiefDroppers Inc., 200-1885 Wilson Ave, North York, Ontario, Canada.
© 2026 THIEFDROPPERS INC.