Do Not Track compliance policy - SAMPLE, fictional example.com This document is a sample of the machine-discoverable policy some sites publish at /.well-known/dnt-policy.txt to state how they honour the DNT: 1 request header. It describes a fictional site and is not a legal commitment. 1. Scope This policy covers www.example.com and cdn.example.net. 2. What we do on DNT: 1 - No advertising or analytics identifiers are set. - Server logs are retained for 10 days and then deleted. - No profile is built and no data is shared with third parties. 3. Exceptions - Security logs for suspected abuse are kept for 30 days. - Aggregate counts with no identifiers are retained indefinitely. 4. Third parties Every third party embedded on the site is contractually required to follow this policy or is not embedded at all. 5. Contact privacy@example.com Version: 1.0 Updated: 2026-01-01