Privacy document

Privacy Policy

How SiteAlert handles account data, monitoring data, billing providers, alert settings, and public status pages.

Last updated

08-07-2026

Product

SiteAlert

Privacy contact

support@usesitealert.com

Summary

SiteAlert uses data to provide website monitoring, alerts, billing, support, webhooks, and public status pages. Third-party providers are only used where needed to deliver the service. You can contact support for privacy questions or data requests at support@usesitealert.com.

1. What data do we collect?

SiteAlert collects and stores data needed to operate the service, including:

  • Account data, such as your name, email address, and password hash.
  • Temporary security data, such as the IP address used to register, for abuse prevention.
  • Monitored website data, such as website name, URL or domain, and check interval.
  • Monitoring data, such as checks, response times, HTTP status codes, errors, downtime events, recovery events, and incidents.
  • SSL monitoring data, such as certificate status, expiry dates, issuer details, and SSL/TLS connection errors.
  • Performance monitoring data, such as response-time measurements, slow thresholds, performance status, and performance alert history.
  • Alert data, such as email alert settings, an optional monitoring alert email address, WhatsApp phone number, alert preferences, and alert logs.
  • Billing and subscription data handled through Polar.
  • Public status page data, such as title, slug, enabled state, logo, and visible monitoring or status information.
  • Webhook data, such as endpoint names, destination URLs, selected events, security keys or key hashes, delivery attempts, HTTP response codes, response snippets, and error messages.
  • Support or contact messages you send to us.
  • Technical and security logs needed to operate, protect, debug, and improve the service.

2. How do we use your data?

We use your data to provide and improve SiteAlert, including to:

  • Manage your account and subscription.
  • Monitor your websites and display monitoring results.
  • Send downtime, recovery, and monitoring summary emails to your monitoring alert email address when configured. Account, security, and billing emails continue to use your account email address.
  • Send WhatsApp alerts when you enable that alert channel and your plan includes it.
  • Show incident history and recent checks.
  • Check SSL certificate health and website response-time performance.
  • Display public status pages when you enable them.
  • Send selected monitoring events to webhook endpoints you configure.
  • Manage billing and subscriptions.
  • Answer support and privacy requests.
  • Secure and improve the service.
  • Detect repeated or suspicious account registrations.

3. Legal basis

We process data where it is needed to provide SiteAlert to you, manage your account and subscription, secure the platform, prevent abuse, respond to support requests, or meet legal obligations. In simple terms, this may be based on our contract with you, our legitimate interest in operating and protecting SiteAlert, legal obligations such as billing or tax records, or your consent where consent is required.

4. Third-party providers

We use selected third-party providers only where needed to deliver SiteAlert. These may include Polar for payments and subscriptions, email providers for transactional and alert emails, Twilio or WhatsApp providers for WhatsApp alerts, and hosting or infrastructure providers for running the service. SiteAlert is available at usesitealert.com.

If you enable WhatsApp alerts, we process the phone number you provide and send alert content through WhatsApp, Twilio, or similar messaging infrastructure. If you configure webhooks, monitoring events may be sent to the endpoint URLs you provide.

Some providers may process data outside the Netherlands or European Economic Area. Where that happens, we rely on the safeguards offered by those providers, such as contractual safeguards or other lawful transfer mechanisms. We do not sell your personal data. We may also disclose data if legally required or necessary to protect the service, our users, or our rights.

5. Public status pages

Public status pages may be visible to anyone with the link. They can include website status, incident information, response or uptime details, status page titles, and your uploaded logo if enabled.

You are responsible for what you publish or share through public status pages. Do not include secret, private, or sensitive information in public status page content, titles, or logos.

6. Retention period

Check history and incident history are stored according to your selected plan. The registration IP address is removed from the active account record after 30 days. Webhook delivery logs, alert logs, monitoring logs, technical logs, and security logs are kept only as long as needed to operate, debug, secure, or evidence the service, unless a longer period is required for security, billing, legal, or abuse-prevention reasons.

After you delete your account, monitoring stops and your active service data is removed from the application. Some data may remain temporarily in backups, billing records, security records, support records, or legal records where required. Backup copies are removed or overwritten according to our normal backup rotation.

7. Cookies

SiteAlert uses necessary cookies and local storage for authentication, session management, security, checkout or billing flows, and preferences such as theme settings. No third-party tracking or advertising cookies are placed. If this changes, we will update this policy.

8. Security

SiteAlert uses reasonable technical and organizational measures to protect your data. No system can be guaranteed 100% secure. You should keep your login details safe and use a strong password.

9. Your rights

You may request access, correction, deletion, export, restriction, or objection to the processing of your personal data where applicable. You may also withdraw consent where processing is based on consent. For privacy questions or data requests, contact support@usesitealert.com. Requests are handled under applicable Netherlands and EU privacy requirements where they apply. If you believe your privacy request has not been handled properly, you may contact the Dutch Data Protection Authority or another competent data protection authority.

10. Changes

This Privacy Policy may be updated periodically. The latest version will always be available on this page.