Privacy Policy
Last updated: April 2026 · Effective date: April 2026
This Privacy Policy explains how Maunitoring ("we", "us", "our") collects, uses, and protects your personal data in accordance with the General Data Protection Regulation (GDPR) and applicable laws.
1. Who We Are
Maunitoring is a SaaS security intelligence platform (SIEM/SOC). For any privacy-related inquiry, contact us at contact@maunitoring.com.
2. Data We Collect
Account & Billing Data
- Name and email address (registration and login)
- Organization name and billing address
- Payment information (processed by our payment provider — we do not store card details)
Usage Data
- Login timestamps, IP addresses, and session tokens
- Feature usage and navigation within the dashboard
- API request logs for debugging and security purposes
Security Monitoring Data
When you use the platform to monitor your infrastructure, the following data is processed:
- Windows/Linux event logs sent by your deployed agents
- Network metadata, process information, and system health metrics
- Alert and incident data generated by the platform
This data belongs to your organization. We process it solely to deliver the service.
Cookies
- Session cookies — strictly necessary for authentication
- Preference cookies — theme (dark/light mode)
- We do not use tracking or advertising cookies
3. Legal Basis for Processing (GDPR)
- Contract — processing necessary to deliver the service you subscribed to
- Legitimate interest — security, fraud prevention, abuse detection
- Legal obligation — compliance with applicable laws
- Consent — marketing communications (you can unsubscribe at any time)
4. How We Use Your Data
- Provide, operate, and improve the Maunitoring platform
- Send transactional emails (alerts, reports, account notifications)
- Ensure platform security and prevent abuse
- Comply with legal and regulatory obligations
- Send product updates if you have opted in
5. Data Retention
- Account data — retained for the duration of the contract + 12 months after termination
- Security logs — configurable per organization (default: 90 days)
- Audit logs — retained for 365 days by default
- Billing records — retained for 7 years (legal obligation)
6. Data Sharing & Third Parties
We do not sell your data. We only share data with:
- Payment processors — for subscription billing (e.g. Stripe)
- Infrastructure providers — cloud hosting (data stored in the EU)
- Law enforcement — only when legally required
7. Your Rights (GDPR)
As a data subject, you have the right to:
- Access — request a copy of your personal data
- Rectification — correct inaccurate data
- Erasure — request deletion of your data ("right to be forgotten")
- Restriction — limit how we process your data
- Portability — receive your data in a machine-readable format
- Objection — object to processing based on legitimate interest
To exercise any right, contact us at contact@maunitoring.com. We will respond within 30 days.
8. Data Security
- All data in transit is encrypted using TLS 1.2+
- Passwords are hashed using bcrypt/scrypt — never stored in plain text
- Two-factor authentication (TOTP) available for all accounts
- Role-based access control within your organization
- Regular security audits and dependency updates
9. International Transfers
Your data is stored and processed within the European Union. If any transfer outside the EU is required, we ensure adequate safeguards are in place (Standard Contractual Clauses).
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you by email or in-app notification at least 14 days before any material change takes effect.
11. Contact & Complaints
For any privacy concern, contact us at contact@maunitoring.com.
You also have the right to lodge a complaint with your local data protection authority (e.g., CNIL in France, APD in Belgium).