// privacy
What we know about you
We are a monitoring company, not an advertising one. We collect what the product needs to work and what the law makes us keep, and nothing else. There are no trackers on this site, no analytics pixels, no third-party scripts, and nothing about you is sold or shared for marketing.
Last updated 20 August 2026
The short version
- > Your data is stored in the EU and stays there.
- > Our probes check from around the world but hold none of it.
- > One cookie, and it only keeps you signed in.
- > We log the IP and device of every session so you can revoke one.
- > Delete your account and it all goes, apart from invoices.
Who is responsible
The data controller for everything described here is relay19, of Popovstraat 72, 8013 RK Zwolle, The Netherlands, registered under KvK 08177087. Reach us at privacy@relay19.com.
What we hold
Two kinds of data pass through relay19: the small amount that describes you as a customer, and the much larger amount your monitors generate. Both are listed below.
| Data | Basis | Kept |
|---|---|---|
| Account Name, email address, hashed password, and (if you turn it on) your two-factor credentials. Needed to give you an account at all. | Contract | Until you delete the account. |
| Sessions For each signed-in device: IP address, browser user-agent, approximate city derived from the IP, and when it was first and last used. So you can see what is signed in as you and sign out anything you do not recognise, and so we can shut down a stolen session. | Legitimate interest (account security) | While the session is live, then 30 days. |
| What you monitor The URLs, hostnames, ports and heartbeat names you configure, plus every check result: up or down, status code, response time, error text. This is the service. | Contract | Per your plan's retention window. |
| Server metrics If you install the agent: hostname, platform and kernel version, CPU, memory, disk, network and container statistics. This is the service. | Contract | Per your plan's retention window. |
| Notification settings Recipient addresses, webhook URLs, and any bot token or integration key you paste in. To deliver alerts where you asked for them. | Contract | Until you delete the channel. |
| Audit log Who in your organization changed what, and when. So an account owner can reconstruct what happened. | Legitimate interest (accountability) | Until the organization is deleted. |
| Billing Company name, billing address, VAT number, invoices. Card details go straight to our payment provider and never reach us. Invoicing and tax. | Legal obligation | Seven years, as tax law requires. |
| Abuse limits Short-lived counters keyed to your IP address, used to slow down automated abuse of the sign-in routes. To stop brute-force and bulk sign-up attempts. | Legitimate interest (security) | Less than a day. |
| Site check If you use the free site check, we record the domain you asked about, the IP address the request came from, and when it happened. Nothing from the report itself is kept, and you do not need an account to use it. The checker makes requests to other people's servers on request, so it has to be possible to see it being misused and to stop it. It is also how we honour a request from a site owner to keep their domain out of it. | Legitimate interest (security) | Thirty days, then deleted automatically. |
Session and device records
This one deserves spelling out, because it is the only place we deliberately record an IP address against your name. Every time you sign in, we store the IP address the request came from, your browser's user-agent string, and a city-level location worked out from that IP. Your account page lists these back to you, so an unfamiliar device is something you can see and end on the spot.
The location lookup runs against a geolocation database on our own servers. Your IP address is not sent to a third-party lookup service to produce it. Signing a device out removes the record from your list, and it is deleted outright 30 days after the session expires.
Cookies
One, plus a short-lived second one. The session cookie keeps you signed in; it is httpOnly, so page scripts cannot read it, and SameSite=Lax, so it is not sent from other sites. If you use two-factor authentication, a short-lived challenge cookie bridges the gap between your password and your code. Neither is used for tracking, and there is nothing else to consent to, which is why we do not ask.
Who else sees it
Two processors, both under contract, neither permitted to use your data for their own ends:
Mollie
Payments and card handling
Netherlands
Lettermint
Transactional email (alerts, password resets, invites)
EU
Where it runs
Everything described above is stored on infrastructure we rent in the EU from Hetzner, in Germany. Your account, your sessions, your monitors and their history never leave the EU.
The checking itself is deliberately separate. We run probes in several countries, some of them outside the EU, because checking from one place only tells you whether one place can reach you. A probe is given the bare minimum: the address to check, how long to wait, and how often. It has no access to the database, stores nothing, and never learns whose monitor it is running. What comes back is up or down, a status code and a response time. No personal data reaches those machines, so no personal data leaves the EU.
We will hand data to law enforcement only against a valid legal order, and we will tell you it happened unless we are forbidden from doing so.
Your rights
Under the GDPR you can ask for a copy of your data, correct it, have it deleted, restrict or object to how we use it, and take it elsewhere in a portable format. Write to privacy@relay19.com and we will answer within 30 days. Most of it you can also do yourself: the account page ends sessions, the organization settings delete monitors and servers along with their history, and deleting your account removes everything except the invoices we are legally required to keep.
If you think we have handled your data badly, please let us know. If that goes nowhere, you can complain to your national data protection authority; in the Netherlands that is the Autoriteit Persoonsgegevens.
Breaches
If something happens that puts your data at risk, we notify the supervisory authority within 72 hours and tell you directly when the risk to you is high. We would rather send an awkward email than a quiet one.
Changes
When this page changes in a way that matters, we date it and email account owners before it takes effect. Small corrections are just dated.
Questions
Anything here that is unclear, or that you want in writing for your own compliance file, we will send.
privacy@relay19.com