Skip to content

Legal

Privacy policy.

Your compliance evidence stays on your machine. The only personal data we hold is an email address you choose to give us.

Last updated · April 2026

What we collect

The ComplianceGuard desktop application stores all evidence data, AWS credentials, and compliance reports locally on your machine in a SQLite database. The desktop application sends none of this to our servers.

The ComplianceGuard website collects your email address if you voluntarily submit it through the waitlist or contact form. We store it in a secured Supabase database. We do not sell, share, or rent your email address to third parties.

What we don't collect

We do not collect your compliance evidence, your AWS credentials, your endpoint scan results, your audit reports, telemetry or usage data from the desktop application, or any personally identifiable information beyond what you voluntarily provide.

Cookies and local storage

The ComplianceGuard website uses no tracking cookies and loads no analytics scripts. We use localStorage and sessionStorage for interface preferences only — for example, dismissed banners and saved checklist progress. This data never leaves your browser.

Third-party services

The website uses Supabase to store submitted email addresses. Supabase's privacy policy is available at supabase.com/privacy. No other third-party data processors are used.

Data retention

Email addresses submitted to the waitlist are retained until you request deletion. To request deletion, email getcomplianceguard@gmail.com with the subject "Delete my data."

Your rights

You have the right to access, correct, or delete any personal data we hold about you. Contact getcomplianceguard@gmail.com for any data request.