Skip to content

Privacy Policy

Last updated August 27, 2026

1. Information We Collect

Account information. When you create an account, we collect your name, email address, and authentication credentials. If you sign in with Google or your organisation's SAML/OIDC identity provider, we receive the profile information (name and email) released by that provider as authorised by you.

Usage data. We collect event metadata, API request logs, and performance metrics to operate and improve the service.

Access and BYOC ("bring your own cloud") requests. When you submit the request form on this site, we store the name, email address, company and description you provide, together with the IP address, browser user-agent, and country the request was made from. We use these to evaluate the request, to contact you about it, and to prevent automated abuse of the form.

BYOC deployment telemetry. A BYOC deployment sends us an hourly check-in containing its release version and git SHA, its AWS region, the AWS account id the licence is bound to, whether the optional analytics plane is enabled, event counters, an approximate table item count and size, and a health status. We treat the AWS account id as information that may identify your organisation. The check-in carries no event payloads, no trace content, no organisation or application names, and no user names or email addresses. The full field list is published in our terms and rendered by your own deployment at /license/telemetry-preview.

Support diagnostics. Where you ask us for support, your BYOC deployment may build and upload a diagnostics bundle containing health information, configuration value names without their contents, and recent error-level log lines scrubbed for credentials. Bundles are stored encrypted and are only collected in response to a support request.

2. How We Use Your Information

We use your information to:

  • Provide, maintain, and improve axonpush
  • Authenticate your identity and manage your account
  • Process and deliver events through our infrastructure
  • Evaluate and respond to access and BYOC requests
  • Meter licensed usage and support BYOC deployments
  • Send service-related communications
  • Detect and prevent fraud or abuse

3. Data Storage and Security

Hosted. Your data is stored on secure servers with encryption at rest and in transit. Event payloads are isolated per organisation using tenant-level separation, enforced at the query layer.

BYOC. Your event data is stored in your own AWS account and is never transmitted to us. We hold only the licence record, the check-in telemetry described in section 1, and any diagnostics bundle you have asked us to collect.

Request records, licence records and BYOC telemetry are stored in infrastructure operated by Cloudflare on our behalf.

4. Data Retention

We keep personal information no longer than we need it:

  • Access and BYOC request records: 24 months from our last contact with you about the request.
  • BYOC check-in telemetry: 13 months on a rolling basis.
  • Support diagnostics bundles: 90 days from upload.
  • Licence and billing records: for the duration of the relationship and afterwards for as long as tax and contract law requires.

These periods are being enforced automatically by 30 November 2026. Until then, we will delete any of the above on request — write to privacy@axonpush.xyz and we will action it rather than wait for the schedule.

5. Data Sharing

We do not sell your personal information. We may share data with third-party service providers who help us operate the platform (for example, hosting or analytics), but only to the extent necessary and under appropriate confidentiality obligations.

6. Your Rights

Hosted accounts. You can access, update, or delete your account information at any time through the dashboard settings.

BYOC deployments. Your event data is in your own infrastructure and under your control; we cannot access, export or delete it. For the licence record and check-in telemetry we do hold, contact us.

Request records. If you submitted a request form and want that record removed, contact us; there is no dashboard for these.

For a full data export or deletion, or any question about what we hold, contact privacy@axonpush.xyz.

7. Cookies

We use essential cookies for authentication and session management. We do not use third-party tracking cookies.

8. Changes

We may update this policy from time to time. We will notify you of significant changes via email or an in-app notice.

9. Contact

If you have questions about this policy, contact us at privacy@axonpush.xyz.