Processed data
The service processes the data required for monitoring: user account, monitored site, plan configuration, check status, incidents, sent alerts and generated reports.
Data not collected
- Card numbers and sensitive payment data.
- Detailed end-customer cart contents.
- Full screenshots or payloads containing unnecessary personal data.
- Advertising scripts or third-party trackers on the public website.
Application security
- Sensitive forms use session, CSRF, trusted origin and rate limiting.
- Exports and proof pages are no-store or noindex where appropriate.
- Secrets stay server-side and never in public assets.
- Payments and webhooks are activated server-side after verification.
Retention and deletion
Proof, reports, public links and sessions are intended to stay bounded in time. The duration depends on the plan and purpose: incident operations, contractual proof, security or legal obligations.
GDPR rights
You can request access, correction, limitation, objection, export or deletion via the contact page.
