1. Introduction
Deadpipe ("we", "us", or "our") respects your privacy and is committed to protecting your personal data. This privacy policy explains how we collect, use, and safeguard your information when you use our data observability platform.
Deadpipe provides monitoring services for data pipelines and applications through heartbeat tracking, API monitoring, and real-time dashboards. This policy covers both our hosted service and self-hosted deployments.
2. Information We Collect
2.1 User Account Data
- Email address and authentication credentials
- Account preferences and settings
- Organization information for team accounts
- API keys and configuration data
2.2 Monitoring Data
- Pipeline heartbeat signals (success/failure status, timestamps, metadata)
- API call metrics (endpoints, response times, status codes, error details)
- Data freshness scores and pipeline health metrics
- JavaScript error logs and performance data (frontend monitoring)
2.3 Technical Data
- IP addresses and browser information
- Device and operating system details
- Cookies and similar tracking technologies
- Log files and usage analytics
3. How We Use Your Information
3.1 Service Provision
- Monitor and display pipeline and application health
- Generate alerts and notifications based on your configured rules
- Provide real-time dashboards and analytics
- Process webhook deliveries to your configured endpoints
3.2 Service Improvement
- Analyze usage patterns to improve our platform
- Debug and troubleshoot service issues
- Develop new features and functionality
- Generate anonymized analytics and performance metrics
3.3 Legal Compliance
- Comply with applicable laws and regulations
- Enforce our terms of service
- Protect against fraud and abuse
- Respond to legal requests and court orders
4. Data Processing and Storage
4.1 Data Processing
We process your data solely for the purposes described in this policy. All processing is necessary for the performance of our contract with you and based on your consent where required.
4.2 Data Storage
- Self-hosted deployments: All data remains on your infrastructure
- Hosted service: Data is stored in our secure, encrypted databases
- Data retention: Monitoring data retained according to your retention settings (default: 90 days)
- Account data: Retained for the duration of your account plus applicable legal requirements
4.3 Data Security
We implement industry-standard security measures including:
- End-to-end encryption for data in transit and at rest
- Regular security audits and penetration testing
- Access controls and role-based permissions
- Automated backups with encryption
- Incident response procedures
5. Data Sharing and Third Parties
5.1 Webhook Deliveries
We deliver alerts and notifications to third-party services (Slack, PagerDuty, etc.) based on your configuration. These deliveries contain only the data you specify in your alert rules.
5.2 Service Providers
We may use trusted third-party service providers for:
- Cloud hosting and infrastructure (when using hosted service)
- Analytics and performance monitoring
- Email delivery services
- Payment processing (for paid plans)
5.3 Legal Requirements
We may disclose your information if required by law, court order, or to protect our rights and safety.
6. Your Rights (GDPR)
If you are located in the European Economic Area, you have the following rights:
- Access: Request a copy of your personal data
- Rectification: Correct inaccurate or incomplete data
- Erasure: Delete your personal data (right to be forgotten)
- Restriction: Limit how we process your data
- Portability: Receive your data in a structured format
- Objection: Object to processing based on legitimate interests
- Withdraw consent: Withdraw consent where processing is consent-based
To exercise these rights, contact us at privacy@deadpipe.com. We will respond within 30 days.
7. International Data Transfers
If you use our hosted service, your data may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place, including:
- Standard contractual clauses approved by the European Commission
- Adequacy decisions for certain countries
- Certification schemes and codes of conduct
8. Cookies and Tracking
We use cookies and similar technologies to:
- Authenticate your sessions
- Remember your preferences
- Analyze usage patterns and improve our service
- Provide personalized features
You can control cookie settings through your browser preferences.
9. Data Breach Notification
In the event of a data breach affecting your personal data, we will:
- Notify you within 72 hours if the breach poses a risk to your rights
- Report the breach to relevant supervisory authorities within 72 hours
- Take immediate steps to contain and mitigate the breach
- Provide information about the breach and recommended protective measures
10. Children's Privacy
Our service is not intended for children under 16. We do not knowingly collect personal data from children under 16. If we become aware that we have collected such data, we will delete it immediately.
11. Changes to This Policy
We may update this privacy policy from time to time. We will notify you of material changes by:
- Email notification to your registered email address
- Prominent notice on our website and dashboard
- Update of the "Last updated" date at the top of this policy
12. Contact Us
If you have questions about this privacy policy or our data practices, please contact us:
Email: privacy@deadpipe.com
Data Protection Officer: dpo@deadpipe.com