Section 01The record we keep
- Who you are. A name, an email address, a company. Enough to provision the controls and to find a human when something breaks.
- What you pay. Subscription history and receipts. The card itself belongs entirely to Stripe and has never been near our servers. We are shown four digits and a yes or no.
- What is under management. Which endpoints, mailboxes, servers, tenants and company files carry a control, plus agent health and the history of the jobs.
- What the controls observe. Detection events, process and network behaviour, web activity from managed devices, allowlisting verdicts, and the case notes for anything the desk worked on.
- What is in the vaults. Backed-up content and anything else handed into our custody, sealed under a 256-bit AES key and wrapped while it travels. Your material, parked with us. Never a dataset of ours.
- Ordinary server logs. Address, timestamp, page. Nothing profiling, nothing advertising.
Section 02Why any of it exists
To stand the controls up, run them, bill them and support them. To tell you when a control is failing, when something looks like an intrusion, and when your account needs a decision. To satisfy tax and statutory obligations.
That is the whole of it. Nobody buys personal details from us, because we do not offer them for sale. Nothing you place with us is mined, sampled, or fed to a model, and the only futures it has are being handed back to you or being acted upon for you.
Section 03The processors involved
Strictly the ones the service cannot run without: Stripe for taking payment, the security and backup vendors underneath the lines you bought, the cloud providers hosting the vaults, and a mail service that carries receipts, alerts and every sign-in link. Each of them works to our instruction and pursues nothing of its own.
Should a subpoena or court order turn up, we give it precisely what the law obliges and not a byte more.
Section 04How long it stays
Vault content lives for whatever window the line you bought specifies, which might be four weeks of file versions, seven years of Exchange mail, or an unbounded history of Entra ID configuration. Detection telemetry and case notes are held long enough to investigate properly and to answer later questions about what took place. Once a subscription lapses, protected content is destroyed on our vendors' deprovisioning timetable. Account and billing history stays as long as accounting and tax rules oblige.
Section 05Rights you can exercise
People in California and in a good many other places have statutory rights to inspect, correct, export or erase what a company holds about them. Write from the address on your account and we will honour whichever ones reach you. Note that erasing an account cannot be undone, and neither can erasing what is protected inside it, so expect us to confirm before we do anything irreversible.
Section 06Reaching us
Fortify 24x7 · support@hacked.help