Privacy Policy

Effective date: June 29, 2026

This Privacy Policy explains how UptimeDesk ("we", "us", "our") collects, uses, and protects your personal information when you use uptimedesk.io. We take your privacy seriously and are committed to handling your data responsibly.

1. Information We Collect

Account information

  • Name and email address (provided at registration)
  • Password (stored as a one-way bcrypt hash — never readable)
  • Organization name and brand colour (if provided in settings)

Monitor data

  • URLs you add for monitoring
  • Check results (HTTP status codes, response times)
  • Incident history and downtime records
  • SSL certificate expiry data

Group data

  • Group names and email addresses you provide for reporting
  • Status page slugs and settings

Payment information

  • We do not store payment card details — all payments are handled by Stripe
  • We store your Stripe customer ID and subscription ID to manage your plan

Usage data

  • IP addresses and browser information from server logs
  • Pages visited and features used within the Service

2. How We Use Your Information

We use the information we collect to:

  • Provide and operate the monitoring service
  • Send downtime alerts and recovery notifications to your registered contacts
  • Process payments and manage your subscription
  • Generate status pages and reports you share with your users or clients
  • Respond to support requests sent to support@uptimedesk.io
  • Send transactional emails (account confirmation, billing receipts, service notices)
  • Improve and debug the Service

We do not use your data for advertising. We do not sell your data to third parties. We do not share your data with third parties except as described in Section 4.

3. Data Retention

  • Account data — retained for as long as your account is active
  • Check history (Free plan) — retained for 7 days
  • Check history (Pro plan) — retained for 90 days
  • After account deletion — all personal data deleted within 30 days

4. Third-Party Services

We share data with the following third-party providers solely to operate the Service:

  • Stripe — payment processing. Your payment data is governed by Stripe's Privacy Policy.
  • Resend — transactional email delivery. Email addresses are shared only to deliver alerts and notifications.
  • Railway — cloud infrastructure hosting. Your data is stored on Railway's servers.

We do not use analytics platforms, advertising networks, or social tracking pixels.

5. Cookies and Sessions

We use a single session cookie to keep you logged in. This cookie is essential for the Service to function and does not track you across other websites. We do not use advertising cookies, analytics cookies, or third-party tracking cookies.

6. Public Status Pages

If you create a public status page for a group, the following information becomes publicly accessible to anyone with the link:

  • The status page title and your organization name (if configured)
  • Monitor names and their current status
  • Uptime percentages and response time history
  • Incident history for that group's monitors

You control which monitors appear on each status page. URLs themselves are not displayed on public status pages by default.

7. Data Security

We take reasonable technical and organisational measures to protect your data:

  • All data is transmitted over HTTPS/TLS
  • Passwords are hashed using bcrypt and never stored in plaintext
  • Database access is restricted to application services only
  • Payment data never touches our servers — handled entirely by Stripe

No method of transmission or storage is 100% secure. In the event of a data breach affecting your personal information, we will notify you by email within 72 hours of becoming aware of it.

8. Your Rights (GDPR & Privacy Laws)

Depending on your location, you may have the following rights regarding your personal data:

  • Access — request a copy of the data we hold about you
  • Correction — request correction of inaccurate data
  • Deletion — request deletion of your account and all associated data
  • Portability — request your data in a machine-readable format
  • Objection — object to processing of your data in certain circumstances

To exercise any of these rights, email us at support@uptimedesk.io. We will respond within 30 days.

9. Account Deletion

You may delete your account at any time by contacting us at support@uptimedesk.io. Upon deletion:

  • Your account and all associated monitors, groups, and contacts are permanently deleted
  • Check history and incident data are permanently deleted
  • Public status pages are taken offline immediately
  • All personal data is removed from our systems within 30 days
  • Stripe subscription is cancelled and no further charges are made

10. Children's Privacy

The Service is not directed at children under 18. We do not knowingly collect personal information from anyone under 18. If you believe a minor has provided us with personal information, contact us at support@uptimedesk.io and we will delete it promptly.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by email before they take effect. The effective date at the top of this page reflects when the current version was last updated.

12. Contact

For any privacy-related questions or requests, contact us at support@uptimedesk.io. We aim to respond within 2 business days.

Terms of Service · Back to UptimeDesk