← back

Privacy policy

Last updated: 2026-07-11

What we collect

We store the data you give us when you sign in (GitHub account id, login, name, avatar, verified email) and the data you generate by using the product: monitored MCP server URLs, captured schema snapshots, drift events, alert channel settings, and billing records. We log HTTP requests (method, path, status, latency, hashed IP) for security and capacity planning.

What we don't collect

We do not store OAuth access tokens beyond the lifetime of a single request. We do not sell, rent, or share your data with third parties for advertising. We do not profile you across other sites.

Why we process it

To run the service you asked for: scan the MCP servers you point at, send you the alerts you configured, and bill the plan you chose. Aggregated, non-identifying metrics (e.g. "12k snapshots this week") may be used for product communications.

Where it lives

Production data is stored on managed PostgreSQL and object storage in the EU (Hetzner FSN1, Frankfurt). Backups are encrypted at rest. Test environments use sandboxed clones that are destroyed on test run.

Your rights

You can export the data tied to your account (servers, snapshots, drift events, tokens) and request deletion of your account at any time. Contact [email protected] and we will action within 30 days.

Changes

We will update this page and notify active subscribers at least 14 days before any material change takes effect. The current version is at the top of the page.

Questions about these terms? Contact [email protected].