This policy explains what EventSend collects, why we collect it, how long we keep it, and the choices you have. It applies to the EventSend website and service.
EventSend is operated by My Tiny Rocket LLC, a Wyoming limited liability company ("EventSend", "we", "us"). You can reach us about anything in this policy at [email protected].
The short version
We collect what we need to run the service and nothing else. We do not sell your data, we do not share it for advertising, and we run no advertising trackers on our website. The analytics we use count visits to the website without identifying you or following you anywhere. The events you send us are yours; we process them to deliver them where you tell us to, and we delete them automatically when your plan's retention window ends.
Information we collect
Account information. Your name, email address, and time zone. If you sign in with a third-party account, we receive your email address and a stable identifier from that provider so we can recognise you on your next visit. We never receive your password for that provider.
Organization and billing information. Your organization's name, its web address, the contact and invoicing email addresses you give us, and a customer reference from our payment processor. We do not receive or store your card number — payment details are entered directly with our payment processor and are never sent to us.
Content you send us. The events your applications and connected services submit: an event name, a severity, a message, and any structured data you choose to include, together with the record of where each one was delivered and whether it succeeded. You decide what is in this content. If you put personal data in an event, we hold it for as long as your plan's retention window and process it to deliver it — see How long we keep information below.
Information from services you connect. When you connect a chat workspace, a bot, a device, or an inbound provider, we store what is needed to deliver to it or to verify what it sends us — for example the destination you selected and the credential that authorises posting there. Credentials are encrypted.
Technical information. Standard server records created when you use the service: the network address a request came from, the time, the pages or endpoints requested, and diagnostic information when something fails. We use these to keep the service running, secure, and within its limits.
How we use information
- To provide the service: accepting your events, applying your routing rules, and delivering them.
- To operate your account: signing you in, showing your history, and letting your team collaborate.
- To bill you and keep the records we are legally required to keep.
- To secure the service: preventing abuse, enforcing limits, investigating incidents.
- To support you when you ask, and to send you service messages about your account, your destinations, or your billing.
- To improve reliability by diagnosing failures.
We do not use your content to build advertising profiles, and we do not use it to train machine learning models.
Legal bases
Where the GDPR or similar law applies, we rely on: performance of a contract (providing the service you signed up for), legitimate interests (keeping the service secure and reliable, and communicating with you about it), legal obligation (financial records), and consent where we ask for it — for example before a browser may send you push notifications, which you can withdraw at any time in your browser or in your account.
How we share information
We do not sell your information. We share it only in these situations:
- Where you tell us to. The entire purpose of the service is to deliver your events to destinations you choose — a chat workspace, a messaging account, a push service, or an endpoint you operate. Once we deliver to a destination you configured, the content is handled by that provider under their terms and privacy policy, not ours. The same applies in reverse for inbound providers you connect.
- Service providers. We use a small number of vendors to host and operate the service, process payments, send transactional email, and monitor for faults. They may process your information only on our instructions and only to provide their service to us. A current list of these providers is available on request at [email protected].
- Payments. Card payments and subscriptions are handled by Stripe, which processes your payment details under its own privacy policy.
- Sign-in providers. If you choose to sign in with a third-party account, that provider learns that you signed in to EventSend.
- Legal reasons. If we are required by law, or where we reasonably believe it is necessary to protect the rights, safety, or property of our users, the public, or us.
- A business transfer. If the service is ever acquired or transferred, information may move with it. We will tell you before your information becomes subject to a different policy.
Where information is processed
The service is operated from the United States, and your information is processed there. If you are in the European Economic Area, the United Kingdom, or Switzerland, we rely on appropriate safeguards, including standard contractual clauses with our providers, for that transfer.
How long we keep information
- Events and their delivery records are deleted automatically at the end of your plan's retention window. That window is shown on our pricing page and in your account, and it currently ranges from 7 days to 90 days depending on plan. Deletion is automatic — you do not need to ask.
- Account and organization information is kept while your account is open.
- Records of significant account actions — for example who changed a setting, and when — are kept for one year after an organization is closed, so we can answer security and billing questions.
- Financial records are kept for as long as tax and accounting law requires.
When you close an organization, its configuration and content are deleted; the records named above are the exception, and they expire on the schedule above.
Security
We protect your information with encryption in transit and at rest, access controls that limit who can reach production systems, and separation between customers' data. Credentials for the services you connect are encrypted, and we do not display them back to you in full.
No service can promise perfect security. If you believe you have found a vulnerability, please write to [email protected] — see our security contact.
Cookies
We use strictly necessary cookies only: one to keep you signed in for the duration of your session, and one to remember you between visits if you ask us to. Both can be cleared in your browser, though clearing them signs you out.
We do not use advertising cookies, analytics cookies, or tracking of any kind. The analytics tools that count visits to our website are cookieless: they store nothing on your device, do not identify you, and do not follow you across sites. That is why you are not asked to accept cookies when you arrive.
Your choices and rights
Depending on where you live, you may have the right to access the information we hold about you, to correct it, to delete it, to receive a copy in a portable form, to object to or restrict certain processing, and to withdraw consent where we relied on it.
To exercise any of these, email [email protected]. We will respond within 30 days. During our current early-access period these requests are handled by our team rather than through a self-service page; that does not limit your rights in any way. We may need to verify your identity before we act.
If you are an end user whose personal data appears inside events sent to us by one of our customers, that customer decides what to send and for how long we keep it. Please contact them directly; if you contact us, we will refer you to them and assist them in responding.
You may also complain to your local data protection authority.
Children
EventSend is a tool for developers and businesses. It is not directed at children, and we do not knowingly collect information from anyone under 16. If you believe a child has given us information, write to us and we will delete it.
Changes to this policy
We may update this policy as the service changes. If we make a material change, we will tell account holders by email or in the app before it takes effect. The date at the top of this page is always the date of the current version.
Contact
Questions, requests, or complaints: [email protected].