Account data. Tenant owner and invited user profile data (name, email, role, auth identifiers).
Telemetry. Device telemetry from agents you install on managed endpoints (hardware inventory, patch state, script outputs, session recordings when you enable them).
Billing. Stripe customer identifiers, subscription state, and usage metrics needed to produce invoices. We never receive or store card numbers — payment details are held by Stripe.
Support. Content you submit through support chat or email, and metadata about those conversations.
We process data only to deliver the Service, meter billing, respond to support requests, detect abuse, and comply with legal obligations. We do not sell customer or end-user data, and we do not use tenant data to train third-party models.
Each tenant is pinned to a single region (US or EU) at signup. Agent telemetry and customer records never leave the chosen region. See our data map for the current inventory of data categories per region.
Our current list of sub-processors is published at /legal/sub-processors. We notify tenant owners of material changes at least 30 days in advance.
Telemetry is retained per your tenant's retention settings. Audit logs default to 365 days. After account termination, all tenant data is deleted within 30 days unless retention is legally required.
You can export or delete your tenant's data at any time from Settings → Privacy. For data-subject requests that concern your end customers, contact us and we will process them on your behalf as your processor.