Privacy policy
The service is provided by the operator of OpsMate (itops.sh). This policy explains how we collect, use, and protect information related to the website, accounts, sign-in, subscriptions, and operations features. The service is for organizations and professional users.
1. Information we collect
- Account data: email, display name, and identity provider subject identifiers.
- Billing data: payment and subscription status processed by Stripe; we usually do not store full card numbers.
- Server and operations data: server configuration you add, patrol results, problem records, and SSH credentials you choose to host in the cloud.
- AI context: when you use cloud AI, this may include your question, recent terminal output, patrol summaries, or related log excerpts. Secret-looking material is redacted first. SSH private keys are not provided to the model as connection credentials.
- Technical logs: IP address, browser type, and request time, used for security and troubleshooting.
Telegram
If you bind Telegram to receive alerts or confirm actions in chat, we may process Telegram user IDs and chat IDs for account binding and alert delivery. Content of alert cards, and confirmation or follow-up messages you send in the private chat with the bot, may be processed to deliver notifications and support troubleshooting. As described in the product, server alerts go to your private chat with the bot, not to public groups.
2. How credentials are stored
On the standalone desktop client, SSH keys and passwords stay in an on-device encrypted vault by default and are not uploaded automatically. They are stored in the cloud only if you explicitly choose cloud hosting, so unattended patrols can continue after the computer is off. Credentials added in the web console are cloud-hosted. Keeping credentials on-device does not mean all data stays on-device.
3. Why we use it
To provide and improve the service, authenticate users, bill and invoice, support customers, protect security, meet legal requirements, and run patrols and AI-assisted analysis (aggregated or redacted where practical).
4. Sharing
We do not sell personal information. We may share data with Stripe, cloud AI providers (only as needed for an AI request you start or the system runs), infrastructure and email vendors (only as needed), and authorities when required by law or to protect rights. In an Enterprise private deployment, business data stays in the environment you control by default.
We do not promise a specific retention period at the model provider. Content sent to cloud AI may be handled under that provider's own policy.
5. Storage location
If you use our hosted SaaS, data may be stored on cloud infrastructure in the region where the service runs. Private deployments let you choose location and backups.
6. Retention
We keep data while the account exists and as required by law. You may ask us to delete an account. Some billing and audit records may be kept longer where the law requires it.
7. Security
We use reasonable technical and organizational measures (access control, encryption in transit, credential encryption). No system is perfectly secure. The standalone desktop client is open source for review; that is not a third-party security audit.
8. Your rights
Where applicable law allows, you may request access, correction, export, deletion, or restriction of personal information. Contact hello@itops.sh.
9. Cookies
The website and console may use necessary cookies (session and language). You can manage cookies in your browser.
10. Children
The service is for organizations and professional users, not for children.
11. Changes
We may update this policy and will post the revision date here. Material changes will be announced in a reasonable way.
12. Contact
hello@itops.sh · See also Terms of service · Cancel & refunds