1. Scope and controller
This notice covers the Apirelio website, account workspace, ingestion API and related communications. “Apirelio”, “we” and “us” mean the service provider identified in your applicable order form or commercial agreement. Before entering a paid agreement, we provide the contracting entity and registered details.
For telemetry submitted by a customer through the SDK, that customer generally decides why the data is processed and Apirelio acts as its service provider. Account and website data are processed by Apirelio for operating the service.
2. Data we process
Account and workspace data
Name, email address, password hash, organization and project settings, API-key metadata, alert configuration and report recipients.
Integration telemetry
Normalized route, HTTP method and status, duration, service, environment, customer and application identifiers, API version, SDK version, release, stable error code and explicitly allow-listed metadata.
Contact and security requests
The name, email, company, selected topic and message you submit. Infrastructure may temporarily process connection information for delivery, abuse prevention and rate limiting; it is not added to customer analytics.
Request or response bodies, credentials, cookies, query strings or client IP addresses as event dimensions.
3. Why we process data
We process data to provide and secure the service, authenticate users, display integration analytics, deliver requested reports and alerts, respond to messages, prevent abuse and meet legal obligations. We do not sell personal data or use customer telemetry for advertising.
5. Retention and security
Telemetry retention is configured per project and plan. Account data is kept while the workspace is active and for a limited period needed for recovery, security and legal obligations. Contact messages are retained only as long as reasonably needed to answer and document the request.
We use access controls, hashed secrets, scoped ingestion keys, validation and operational monitoring. No internet service can promise absolute security; suspected issues can be reported through our dedicated security contact path.
6. Your choices and rights
Depending on your location, you may request access, correction, deletion, restriction, portability or objection. You may also complain to your local data protection authority. Workspace administrators can update most account and project information directly.
We verify requests before acting and may need to retain limited information where required by law or necessary to protect the service.
7. Contact
Submit privacy questions or rights requests through the contact form and choose “Privacy request”. Include the email associated with your account, but never send passwords, ingestion keys or customer payloads.
Contact privacy →