At UptimeIO.com ("UptimeIO", "we", "us", or "our"), we are committed to protecting your privacy and ensuring the security of your personal data. This Privacy Policy explains how we collect, use, store, and protect your information when you use our website monitoring services.
1. Information We Collect
1.1 Account Information
When you create an account, we collect:
- Email address
- Name (optional)
- Password (encrypted)
- Billing information (processed securely by our payment provider)
- Organization name (if applicable)
1.2 Monitoring Data
To provide our services, we collect and process:
- URLs and endpoints you choose to monitor
- Check results (response times, status codes, availability)
- SSL certificate information for monitored domains
- Incident history and alerts
- Status page configurations
1.3 Usage Analytics
We use PostHog for analytics to improve our services. This includes:
- Pages visited and features used
- Device type and browser information
- IP address (anonymized for analytics)
- Referral source
- Session duration and interactions
2. How We Use Your Information
We use the collected information to:
- Provide, maintain, and improve our monitoring services
- Send you alerts and notifications about your monitored services
- Process payments and manage your subscription
- Communicate with you about service updates and support
- Analyze usage patterns to improve user experience
- Ensure the security and integrity of our platform
- Comply with legal obligations
3. Legal Basis for Processing (GDPR)
Under the General Data Protection Regulation (GDPR), we process your data based on:
- Contract Performance: Processing necessary to provide our services to you
- Legitimate Interests: Improving our services, ensuring security, and preventing fraud
- Consent: For optional communications and certain cookies
- Legal Obligation: When required by applicable laws
4. Data Sharing and Third Parties
We may share your data with the following categories of third parties:
4.1 Service Providers
- Payment Processing: To securely process your payments
- Email Services: To send transactional emails and notifications
- SMS Services: To deliver SMS alerts when configured
- Cloud Infrastructure: To host and operate our services
- Analytics: PostHog for usage analytics
4.2 Integrations (User-Enabled)
When you enable integrations, we share relevant data with:
- Slack, Discord, Telegram (for notifications)
- PagerDuty (for incident management)
- Webhook endpoints you configure
These integrations are optional and only activated at your request.
5. Data Storage and Security
5.1 Data Location
Your data is stored in secure data centers located within the European Union, distributed across multiple EU regions for reliability and compliance.
5.2 Security Measures
We implement industry-standard security measures including:
- Encryption in transit (TLS/HTTPS) and at rest
- Secure password hashing
- Regular security assessments
- Access controls and authentication
- Monitoring and logging of system access
6. Data Retention
We retain your data according to the following guidelines:
- Account Data: Retained while your account is active and for a reasonable period after deletion for legal compliance
- Monitoring Data: Retained according to your plan (3-24 months depending on subscription tier)
- Usage Analytics: Aggregated and anonymized data may be retained indefinitely for service improvement
- Billing Records: Retained as required by tax and accounting regulations
7. Your Rights
Under GDPR and applicable data protection laws, you have the right to:
- Access: Request a copy of your personal data
- Rectification: Correct inaccurate or incomplete data
- Erasure: Request deletion of your data ("right to be forgotten")
- Restriction: Limit how we process your data
- Portability: Receive your data in a portable format
- Object: Object to certain processing activities
- Withdraw Consent: Withdraw consent where processing is based on consent
To exercise these rights, contact us at support@uptimeio.com
8. International Data Transfers
As our services operate globally, some data may be transferred to countries outside the European Economic Area (EEA). When this occurs, we ensure appropriate safeguards are in place, including:
- Standard Contractual Clauses (SCCs) approved by the European Commission
- Data processing agreements with all third-party providers
- Transfers only to countries with adequate data protection or with appropriate safeguards
9. Children's Privacy
Our services are not intended for individuals under 18 years of age. We do not knowingly collect personal data from children. If you believe we have collected data from a minor, please contact us immediately.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by posting a notice on our website or sending you an email. Your continued use of our services after changes become effective constitutes acceptance of the updated policy.
11. Contact Us
If you have questions about this Privacy Policy or our data practices, please contact us:
You also have the right to lodge a complaint with a supervisory authority if you believe your data protection rights have been violated.