Privacy notice.
Short version: we collect what we need to run the service, we don't sell data, we don't train on your customer data, and you can take it all back any time.
Note. This is a working draft. Final, reviewer-ready privacy documentation ships alongside K-Radar's general availability. For DPA or GDPR-specific requests today, email admin@bitcd.cloud.
What we collect
Account data (name, work email, company), service telemetry (cluster identifiers, resource names, action logs), and optional support communications. We do not knowingly collect sensitive personal data.
What we don't collect
We do not pull application-level data from your workloads. Agents operate on infrastructure metadata — pods, nodes, deployments, cost line items — not the payloads flowing through them.
How we use it
To run the service, provide support, and improve reliability. That's it. Your customer data is never used to train foundation models, and never shared with other tenants or third parties beyond the subprocessors listed on our subprocessor page.
Where it lives
Data is stored in your region of choice — US (us-east-1) or EU (eu-west-1). We do not replicate customer data across regions without your written consent.
How long we keep it
Audit logs default to 90 days on paid tiers; enterprise workspaces can configure retention up to indefinite. On workspace deletion, all customer data is purged within 30 days from primary storage and 90 days from backups.
Your rights
Access, export, correction, deletion — available from your workspace settings or by emailing admin@bitcd.cloud. We respond within 30 days (typically same-week).
Subprocessors
The list of third-party services we use to deliver bitcd.cloud is published and updated 30 days before any change.
Contact
Privacy questions? admin@bitcd.cloud.