Privacy Policy

Last updated: January 1, 2025

JAST (“we”, “our”, or “us”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, store, and safeguard your personal information when you use our platform. By using JAST, you agree to the data practices described herein.

1. Information We Collect

Information you provide directly:

• Account information: your email address provided at registration

• Organization information: the name of the organization you create or join

• Monitoring configuration: app package names, website URLs, notification webhook addresses, etc.

• Payment information: subscription payment records (sensitive card details are handled by our payment processor Paddle and are never stored by us)

Information collected automatically:

• Log data: access timestamps, IP addresses, browser type, request paths

• Usage data: feature usage frequency, API call records

• Cookies: session cookies used to maintain your login state (managed by Supabase Auth)

2. How We Use Your Information

We use the information we collect to:

1. Provide, maintain, and improve our monitoring services

2. Process your subscriptions and payments

3. Send service-related notifications (monitoring alerts, billing reminders, status updates)

4. Respond to your support requests

5. Detect and prevent fraud and abuse

6. Comply with legal obligations

We do not sell your personal information to third parties or use it for unrelated advertising purposes.

3. Information Sharing

We share your information with third parties only in the following circumstances:

1. Service providers: We use Supabase for authentication and user data storage, Railway for backend services, Vercel for frontend hosting, and Paddle for payment processing. These providers access your data only to the extent necessary to perform services on our behalf.

2. Legal requirements: We may disclose information when required by law or in response to valid governmental requests.

3. Safety and security: We may share information to protect the rights, property, or safety of JAST, our users, or the public.

4. Business transfers: In the event of a merger, acquisition, or sale of assets, user information may be transferred. We will notify users before such a transfer occurs.

4. Data Storage and Security

1. Account data is stored in Supabase-managed databases; monitoring data is stored in a Railway PostgreSQL instance.

2. All data in transit is encrypted via HTTPS; database access is subject to strict access controls.

3. Our multi-tenant architecture ensures complete data isolation between organizations, enforced via org_id logical partitioning.

4. We conduct regular security reviews. However, no method of internet transmission or electronic storage is 100% secure.

5. Data Retention

1. Account data: deleted within 30 days after you close your account.

2. Monitoring logs: retained on a rolling 90-day window.

3. Payment records: retained for 5 years as required by financial regulations.

6. Your Rights

You have the following rights regarding your personal data:

Access: request a copy of the personal data we hold about you

Correction: request that inaccurate information be corrected

Deletion: request that your account and associated data be deleted

Portability: export your data in a machine-readable format

Objection: object to certain ways we process your data

To exercise any of these rights, email service@jast.me. We will respond within 30 business days.

7. Cookies

We use cookies solely to maintain your login session (session cookies). We do not use tracking cookies or third-party advertising cookies. You may disable cookies in your browser settings, but doing so will prevent you from staying logged in.

8. Children's Privacy

The Platform is not directed at children under the age of 13. We do not knowingly collect personal information from children. If we become aware that we have inadvertently collected such information, we will delete it promptly.

9. Changes to This Policy

When we make material changes to this Privacy Policy, we will notify registered users by email and update the “Last updated” date on this page. Continued use of the Platform after changes take effect constitutes your acceptance of the revised policy.

10. Contact Us

If you have any questions or concerns about this Privacy Policy, please contact us at:

Email: service@jast.me