Privacy Policy
Last updated: January 1, 2025
1. Information We Collect
Information you provide directly:
• Account information: your email address provided at registration
• Organization information: the name of the organization you create or join
• Monitoring configuration: app package names, website URLs, notification webhook addresses, etc.
• Payment information: subscription payment records (sensitive card details are handled by our payment processor Paddle and are never stored by us)
Information collected automatically:
• Log data: access timestamps, IP addresses, browser type, request paths
• Usage data: feature usage frequency, API call records
• Cookies: session cookies used to maintain your login state (managed by Supabase Auth)
2. How We Use Your Information
We use the information we collect to:
1. Provide, maintain, and improve our monitoring services
2. Process your subscriptions and payments
3. Send service-related notifications (monitoring alerts, billing reminders, status updates)
4. Respond to your support requests
5. Detect and prevent fraud and abuse
6. Comply with legal obligations
We do not sell your personal information to third parties or use it for unrelated advertising purposes.
3. Information Sharing
We share your information with third parties only in the following circumstances:
1. Service providers: We use Supabase for authentication and user data storage, Railway for backend services, Vercel for frontend hosting, and Paddle for payment processing. These providers access your data only to the extent necessary to perform services on our behalf.
2. Legal requirements: We may disclose information when required by law or in response to valid governmental requests.
3. Safety and security: We may share information to protect the rights, property, or safety of JAST, our users, or the public.
4. Business transfers: In the event of a merger, acquisition, or sale of assets, user information may be transferred. We will notify users before such a transfer occurs.
4. Data Storage and Security
1. Account data is stored in Supabase-managed databases; monitoring data is stored in a Railway PostgreSQL instance.
2. All data in transit is encrypted via HTTPS; database access is subject to strict access controls.
3. Our multi-tenant architecture ensures complete data isolation between organizations, enforced via org_id logical partitioning.
4. We conduct regular security reviews. However, no method of internet transmission or electronic storage is 100% secure.
5. Data Retention
1. Account data: deleted within 30 days after you close your account.
2. Monitoring logs: retained on a rolling 90-day window.
3. Payment records: retained for 5 years as required by financial regulations.
6. Your Rights
You have the following rights regarding your personal data:
• Access: request a copy of the personal data we hold about you
• Correction: request that inaccurate information be corrected
• Deletion: request that your account and associated data be deleted
• Portability: export your data in a machine-readable format
• Objection: object to certain ways we process your data
To exercise any of these rights, email service@jast.me. We will respond within 30 business days.
7. Cookies
We use cookies solely to maintain your login session (session cookies). We do not use tracking cookies or third-party advertising cookies. You may disable cookies in your browser settings, but doing so will prevent you from staying logged in.
8. Children's Privacy
The Platform is not directed at children under the age of 13. We do not knowingly collect personal information from children. If we become aware that we have inadvertently collected such information, we will delete it promptly.
9. Changes to This Policy
When we make material changes to this Privacy Policy, we will notify registered users by email and update the “Last updated” date on this page. Continued use of the Platform after changes take effect constitutes your acceptance of the revised policy.
10. Contact Us
If you have any questions or concerns about this Privacy Policy, please contact us at:
Email: service@jast.me