Sentinel AI

Privacy Policy

Version 1.0 | Effective: February 1, 2026

Blueora ("we", "us", or "our") operates the Sentinel AI security scanning platform. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service.

Please read this privacy policy carefully. If you do not agree with the terms of this privacy policy, please do not access the service.

Contents
  1. Information We Collect
  2. How We Use Your Information
  3. Data Sharing and Third Parties
  4. Data Retention
  5. Your Rights (GDPR/CCPA)
  6. Cookies and Tracking
  7. Security Measures
  8. Children's Privacy
  9. International Data Transfers
  10. Contact Information
  11. Policy Updates

1. Information We Collect

Personal Data

When you register and use Sentinel AI, we may collect:

  • Account Information: Name, email address, username, and profile picture (when using OAuth providers)
  • Authentication Data: OAuth tokens and identifiers from GitHub, Google, or Microsoft
  • Billing Information: Payment details processed through Stripe (we do not store full credit card numbers)
  • Organization Data: Company name, team member information
Usage Data

We automatically collect:

  • IP addresses and browser/device information
  • Pages visited, features used, and time spent on the platform
  • Scan configurations, target URLs, and scan results
  • Error logs and performance metrics
Scan Data

When you perform security scans, we collect:

  • Target URLs and domains you scan
  • Security findings and vulnerability reports
  • Subdomain discovery results
  • Email addresses submitted for breach monitoring

2. How We Use Your Information

We use collected information to:

  • Provide, maintain, and improve the Sentinel AI platform
  • Process your security scans and generate vulnerability reports
  • Send you scan results, alerts, and notifications you've requested
  • Process payments and manage your subscription
  • Provide customer support and respond to inquiries
  • Detect, prevent, and address security issues and abuse
  • Analyze usage patterns to improve our services
  • Send important service updates and security notices

3. Data Sharing and Third Parties

We share your information with the following third-party services:

Service Purpose Data Shared
Stripe Payment processing Billing information, email
SendGrid Email notifications Email address, notification content
Have I Been Pwned (HIBP) Breach monitoring Email addresses for breach checks
OAuth Providers
(GitHub, Google, Microsoft)
Authentication OAuth tokens, profile information
Anthropic (Claude AI) AI-powered vulnerability analysis Scan findings for analysis (anonymized)

We may also disclose your information:

  • To comply with legal obligations or valid legal processes
  • To protect our rights, privacy, safety, or property
  • In connection with a merger, acquisition, or sale of assets

4. Data Retention

We retain your data for as long as:

  • Account Data: As long as your account is active, plus 30 days after deletion
  • Scan Results: 12 months, or as required by your subscription plan
  • Billing Records: 7 years as required for tax and legal compliance
  • Usage Logs: 90 days for operational purposes

You may request deletion of your data at any time (see Your Rights section).

5. Your Rights (GDPR/CCPA)

Depending on your location, you may have the following rights:

Right to Access

Request a copy of the personal data we hold about you.

Right to Rectification

Request correction of inaccurate personal data.

Right to Erasure

Request deletion of your personal data ("right to be forgotten").

Right to Data Portability

Receive your data in a structured, machine-readable format.

Right to Object

Object to processing of your personal data for certain purposes.

Right to Withdraw Consent

Withdraw consent where processing is based on consent.

To exercise these rights, contact us at [email protected]. We will respond within 30 days.

6. Cookies and Tracking

We use cookies and similar technologies for:

  • Essential Cookies: Required for authentication, security, and basic functionality
  • Preference Cookies: Remember your settings (e.g., dark mode, notification preferences)
  • Analytics Cookies: Help us understand how you use our service to improve it

You can control cookies through your browser settings. Note that disabling essential cookies may affect your ability to use the service.

7. Security Measures

We implement appropriate technical and organizational measures to protect your data:

  • Encryption of data in transit (TLS 1.3) and at rest (AES-256)
  • Secure authentication via OAuth 2.0 with trusted providers
  • Regular security assessments and penetration testing
  • Access controls and audit logging
  • Secure cloud infrastructure with SOC 2 certified providers

While we strive to protect your information, no method of transmission over the Internet is 100% secure. We cannot guarantee absolute security.

8. Children's Privacy

Sentinel AI is not intended for users under 18 years of age. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.

9. International Data Transfers

Your information may be transferred to and processed in countries other than your own. When we transfer data internationally, we ensure appropriate safeguards are in place, including:

  • Standard Contractual Clauses approved by the European Commission
  • Transfers to countries with adequate data protection laws
  • Binding Corporate Rules where applicable

10. Contact Information

For privacy-related questions or to exercise your rights, contact us:

Blueora

[email protected]

www.blueora.com

11. Policy Updates

We may update this Privacy Policy from time to time. We will notify you of any material changes by:

  • Posting the new Privacy Policy on this page
  • Updating the "Effective Date" at the top of this policy
  • Sending you an email notification for significant changes

We encourage you to review this Privacy Policy periodically. Your continued use of the service after changes become effective constitutes acceptance of those changes.


Terms of Service Back to Login
© 2026 Blueora. All rights reserved.