DunckOps
Privacy Policy
How we handle account, subscription and commercial operation data for DunckOps Platform.
Last updated: May 23, 2026
1. Data processed by the portal
The commercial portal may process names, emails, companies, plans, subscription status, payments, activation tokens and webhook events required for billing and product activation.
2. Data in self-hosted deployments
Databases, backups, connection strings and operational secrets remain in customer self-hosted infrastructure. The portal does not need dumps, WAL files or business data from protected databases.
3. Security
Secrets must be encrypted in the backend, masked in logs and never fully exposed to the frontend. Cookies use secure settings and privileged accounts must use MFA.
4. Sharing
Data may be shared with providers required for billing, hosting, observability and support, limited to what is necessary. Payment webhooks must be signed and processed idempotently.
5. Retention
Commercial data is retained as needed for contracts, legal obligations, auditing and support. Tokens and sessions may be revoked; operational backups follow customer policies configured in the self-hosted environment.
6. Data subject rights
Requests for access, correction, portability or deletion may be fulfilled under applicable law and contractual obligations. Deletion does not remove records that must be retained for legal or security reasons.
7. Contact
For privacy, security or billing, use the official support channel listed in your contract or installation commercial portal.