Privacy Policy

Last updated: 2026-05-18

This Privacy Policy describes how Monitelia ("we", "us") collects, uses, and shares personal data when you use our service.

1. Data we collect

1.1 Account data

When you sign up we collect your email address and password (stored hashed, never in plaintext). We use these to authenticate your account and send transactional emails (invoices, security alerts, password resets).

1.2 Usage data

1.3 Billing data

We use Stripe for billing. We store only your Stripe customer ID and subscription metadata; full payment details are stored by Stripe. See Stripe's privacy policy.

1.4 Cookies

See our Cookie Policy.

2. How we use your data

3. Legal basis (GDPR Art. 6)

4. Sub-processors

We share necessary data with the following processors. Each is bound by their own data-processing terms:

5. International transfers

If your data is stored in a region different from yours we rely on Standard Contractual Clauses (SCCs) for compliance with EU data- transfer rules.

6. Retention

7. Your rights (GDPR Art. 15-22)

8. Security

HTTPS everywhere, TLS 1.2+. Passwords hashed by Supabase Auth (bcrypt). API tokens stored as SHA-256 hashes. Row-level security enforces tenant isolation. We use OAuth refresh tokens for third-party integrations (you can revoke them anytime).

9. Children

The service is not directed at children under 16.

10. Contact

Data controller / DPO contact: privacy@yourdomain.com(replace with your real address).

Legal disclaimer: these documents are starting templates derived from common GDPR / EU and US privacy practice. They are NOT legal advice. Have qualified counsel review before publishing to real customers in your jurisdiction.

Privacy Policy | Monitelia