Skip to content
Legal

Privacy Policy

Last updated July 4, 2026

Data we process

UptimePad stores account details, organization membership, monitor configuration, check results, incidents, notification settings, API keys, audit logs, support messages, billing state, security logs, consent state, and product usage events. We also process the URLs, domains, IP addresses, DNS records, certificate metadata, webhook destinations, and alert-channel identifiers you choose to configure.

How data is used

We use this data to run checks, send alerts, generate status pages, secure accounts, process billing, and improve reliability. We do not sell customer monitor data.

Where a legal basis is required, processing is based on providing the service you requested, legitimate interests in security and reliability, consent for optional analytics or marketing where required, and legal obligations such as tax, accounting, abuse prevention, and dispute handling.

Retention and deletion

Retention depends on your plan and product settings. You can delete monitors, notification channels, API keys, and account data from the dashboard. Some records may remain for a limited time in backups, audit logs, billing records, security logs, or abuse-prevention records when needed to run the service, meet legal obligations, or resolve disputes.

Operational monitoring data

Check results can include status codes, response timing, SSL certificate details, DNS records, incident timestamps, linked server health snapshots, and alert delivery state. We use that data to run monitoring, show history, diagnose incidents, and enforce plan limits.

Analytics and product improvement

Marketing pages and the dashboard may collect usage analytics, consent state, referral source, browser metadata, approximate region, and product events. These signals help us find broken flows, measure onboarding, and decide which monitoring features need clearer documentation.

Analytics and advertising measurement respect the consent controls shown in the product where those controls are required. UptimePad does not sell personal information and does not use customer monitor data for cross-context behavioral advertising.

If your browser sends a Global Privacy Control signal, we treat it as an opt-out for analytics and advertising measurement on UptimePad pages.

Access and vendors

Access is limited to people and vendors needed to operate the service, process billing, deliver notifications, store logs, and investigate reliability or abuse issues. Payment details are handled by the active payment provider, not stored directly in UptimePad.

Vendors may include infrastructure, email, billing, analytics, error reporting, notification, customer support, and security providers. These providers process data only for the service purposes they support. Data may be processed in the jurisdictions where those providers operate.

Your privacy choices

Depending on where you live, you may have rights to access, correct, export, delete, restrict, or object to processing of personal information, withdraw consent, opt out of sale or sharing where applicable, and avoid discrimination for using those rights. We verify requests before acting on account or organization data and respond within the timeframe required by applicable law.

People in the European Economic Area, United Kingdom, and Switzerland can also ask for the legal basis for processing, object to direct marketing, and contact a local supervisory authority. People in U.S. states with privacy laws can use the same support flow to request access, correction, deletion, portability, and opt-out choices where those rights apply. People in Australia can request access to or correction of personal information handled by UptimePad.

Organization owners are responsible for responding to requests about personal information they add to monitor names, incident text, status-page content, webhook payloads, or alert destinations. Business customers that need a data processing agreement can request one before sending regulated personal information through the service.

How to make a request

Signed-in users can delete their account from the Profile screen. If you cannot sign in, or if you want to request access, correction, export, restriction, objection, opt-out, or deletion, email [email protected] from the address on your account. We verify ownership before acting on account or organization data.

Account-deletion instructions are also available at app.uptimepad.com/delete-account.

Security

UptimePad uses access controls, audit logs, rate limits, session protections, encrypted secret storage where supported, and operational monitoring to protect service data. No internet service can be guaranteed secure, so customers should avoid placing credentials, private keys, regulated health data, payment card numbers, or other highly sensitive information in monitor names, URLs, status-page text, or alert destinations.

Children

UptimePad is a business monitoring service and is not intended for children. Do not create an account or submit personal information if you are not old enough to use business software under the laws that apply to you.

Contact

Privacy questions and rights requests can be sent to [email protected] or through the support flow.