What we collect
RunProof uses account details, incident records, runbook metadata, evidence packets, and approval decisions to provide the product experience. We avoid collecting data that is not needed for those workflows.
RunProof is designed to handle incident context with restraint: collect what the product needs, preserve the approval trail, and keep production control visible.
RunProof uses account details, incident records, runbook metadata, evidence packets, and approval decisions to provide the product experience. We avoid collecting data that is not needed for those workflows.
Product data is used to authenticate users, prepare evidence-backed recommendations, display audit history, and improve reliability. We do not sell customer operational data.
Evidence packets and approvals are retained so teams can review what happened, who approved an action, and why a production step was allowed or blocked.
Every console route requires an authenticated session. Access is not partitioned per user or per workspace: any signed-in account can read all incidents, runs, and audit entries in the deployment. Grant accounts only to people who should see all of it.
Customers can request export or deletion of account-linked data where legal, security, and audit obligations allow it.
For privacy questions, contact the project maintainers through the repository or the support channel configured for your deployment.