Introduction
This Privacy Policy describes how DevHelm ("we", "our", "us") collects, uses, and protects your personal information when you use our uptime monitoring platform and related services.
By using DevHelm, you agree to the collection and use of information in accordance with this policy.
Data Controller
DevHelm is operated by Vladyslav Mokrousov, sole proprietor (jednoosobowa działalność gospodarcza) registered in Poland, NIP: 8522710570. As the data controller, we determine the purposes and means of processing your personal data.
Information We Collect
Account Information
When you create an account, we collect your name, email address, and organization details. If you subscribe to a paid plan, payment processing is handled by our payment provider (Paddle) — we do not store your credit card details directly.
Monitoring Data
We collect and store the results of uptime checks you configure, including response times, status codes, and assertion results. This data is used to provide the monitoring service, generate alerts, and populate dashboards and status pages.
Usage Data
We collect information about how you interact with our platform, including pages visited, features used, and API calls made. This helps us improve the product and troubleshoot issues.
Log Data
Our servers automatically log information such as your IP address, browser type, and request timestamps. This data is retained for security and operational purposes.
Phone Numbers (SMS and Voice Alerts)
If you configure SMS or phone-call alert channels, we collect the phone numbers you provide, verification status (including one-time password confirmation), delivery metadata, and opt-out status. Phone numbers are used only to deliver the transactional alerts you configured and to honor carrier opt-out requests.
How We Use Your Information
- Providing the Service: Running uptime checks, generating alerts, and displaying monitoring dashboards.
- Communication: Sending alerts and incident notifications via email, SMS, voice call, and other channels you configure, plus essential service updates.
- Improvement: Analyzing usage patterns to improve product features and user experience.
- Security: Detecting and preventing abuse, fraud, and unauthorized access.
- Support: Responding to your support requests and troubleshooting issues.
SMS and Phone Alerts
To enroll in DevHelm SMS alerts, a DevHelm account user adds a mobile number they control to an SMS alert channel, actively checks a dedicated SMS consent checkbox that is unchecked by default, and completes one-time password (OTP) verification. SMS alerts are not enabled until both affirmative consent and phone verification are complete.
After enrolling, you may receive recurring transactional SMS messages from DevHelm about monitoring incidents affecting services in your workspace (for example, downtime, acknowledgement, resolve, and reopen notifications), as well as user-requested channel test messages. If you separately configure a phone-call alert channel, DevHelm may place automated calls about the same incidents and channel tests to the verified number.
Message frequency varies with incident activity and is limited by your plan's SMS and call allowances. Message and data rates may apply.
You may opt out of SMS alerts at any time by replying STOP to any DevHelm SMS message. After you opt out, we will send a confirmation and will not send further alert SMS to that number until you opt back in (for example by replying START) or re-verify the number in the dashboard. Reply HELP for assistance, or contact [email protected].
We do not share, sell, or provide your mobile phone number or messaging consent data to third parties or affiliates for marketing or promotional purposes. Text messaging originator opt-in data and consent will not be sold, rented, transferred, or shared with any third parties. Twilio processes mobile phone numbers on DevHelm's behalf solely to deliver the alerts you requested, process STOP/HELP/START commands, and report delivery status.
We do not use SMS or voice alert channels for marketing or promotional campaigns.
Data Storage and Security
All monitoring data is stored in US-based datacenters. Data is encrypted at rest and in transit. Secret credentials (such as webhook URLs and integration tokens) are encrypted with AES-256 and stored in a secure vault.
GDPR-compliant data handling for EU customers is possible. Contact us at [email protected] for details.
Data Retention
Monitoring data retention depends on your plan tier. When you delete your account, we remove your personal data within 30 days, except where required by law. Phone numbers associated with alert channels and opt-out records are retained while needed to provide the Service and honor carrier opt-out obligations, then deleted with your account data subject to the same timeline.
Third-Party Services
We use the following third-party services:
- Auth0 for authentication
- Paddle for payment processing
- DigitalOcean and AWS for infrastructure
- Twilio for SMS delivery, voice calls, and phone-number verification (OTP)
Each of these services has their own privacy policy governing how they handle your data.
Your Rights
You have the right to:
- Access your personal data
- Correct inaccurate data
- Request deletion of your data
- Export your data
- Withdraw consent for optional data processing, including SMS and voice alerts (via STOP, dashboard channel removal, or contacting us)
To exercise any of these rights, contact us at [email protected].
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes via email or an in-app notification.
Contact Us
If you have questions about this Privacy Policy, contact us at [email protected].
Last updated: September 3, 2026