Privacy Policy
Last updated: April 1, 2026
What we collect
We collect the minimum data needed to run an uptime monitoring service:
- Account data — email address, name, organization name. Used for login, alerts, and billing.
- Monitor configuration — URLs, check intervals, alert settings, status page content. This is the service you're using us for.
- Check results — HTTP status codes, response times, error messages. Stored to show uptime history and power alerts.
- Usage data — page views, API calls, feature usage. Used to improve the product, not sold to anyone.
- Signup source — the campaign tags in the link you first arrived from (
utm_source,utm_medium,utm_campaign), the referring site (address without query string), and the first page you visited. Kept in your browser until you sign up, then stored with your account so we know which channels bring customers. No IP address, no cookies, no third parties.
Where we store it
All data is stored in PostgreSQL databases on Netcup servers in Nuremberg, Germany (EU). We don't use US-based database providers. Backups are encrypted and stored on a separate server.
How long we keep it
Check result retention depends on your plan:
- Free — 30 days
- Pro — 2 years
- Team — 2 years
- Business — 5 years
Account data is kept as long as your account exists. When you delete your account, it is deactivated at once, and you can ask support to restore it for 30 days. After 30 days we permanently delete your account, your organization, your monitors, alert settings, incidents and check results. Encrypted database backups expire on a rolling schedule, so the deleted data leaves our backups within 35 more days. Invoices are kept by Paddle, our payment provider, as the law requires.
Third-party services
We use a small number of third-party services:
- Paddle — payment processing. They handle your credit card data directly; we never see it.
- Brevo — transactional email (alert notifications, password resets). Receives your email address.
- Cloudflare — CDN and DDoS protection for the frontend. Standard web traffic data (IP, headers).
We do not sell data to anyone. We don't use Google Analytics or any ad-tracking pixels.
Cookies
We use a single session cookie (_uptrack_key) to keep you logged in. No tracking cookies, no third-party cookies, no cookie banner needed.
MCP / Claude Connector
If you connect Uptrack to Claude.ai via our MCP connector, Claude can access your monitor data, incidents, and analytics through OAuth 2.0. You authorize this explicitly, and you can revoke access anytime from Dashboard Settings > Integrations. We don't share your data with Anthropic beyond what you explicitly request through Claude.
Your rights
You can:
- Export your data — available from Dashboard Settings
- Delete your account — permanently deletes all data after a 30-day restore period (backups within 35 more days)
- Revoke integrations — disconnect Claude or other OAuth clients anytime
If you're in the EU, you have additional rights under GDPR (access, rectification, erasure, portability). Email us and we'll handle it.
Contact
Questions about privacy? Email [email protected]