Privacy Policy
Last updated: June 2026
Aegis is a continuous security watchdog for apps built on Supabase, operated by Arctyne. This policy explains what we collect, what we deliberately do not collect, and how we handle the credentials you trust us with. We built Aegis to make your app safer, so privacy and data minimization are core to how it works.
What we collect
We collect the minimum needed to run the service: your account email address, metadata about the projects you connect (such as the project URL and configuration needed to run a scan), and the results of scans we perform — the findings, scores, and the table and column names involved.
What we don't collect
We never store your users' row data. When Aegis probes your project, it records only structural information — table and column names and counts — never the actual rows, records, or personal data belonging to your users. Any secret discovered during a scan is redacted to its first and last four characters before it is stored or displayed.
Credential handling
To run scans we store your project's anon key. You may optionally provide a service-role key and a read-only database connection string for deeper checks. These sensitive credentials are encrypted at rest in Supabase Vault and are never sent to the browser. Scans run server-side only, and decrypted credentials never leave our backend.
Subprocessors
We rely on a small set of trusted providers to operate Aegis:
- Supabase — database, authentication, and encrypted secret storage (Vault).
- Stripe — subscription billing and payment processing.
- Vercel — application hosting and infrastructure.
- Resend — transactional and alert email delivery.
Data retention & deletion
You stay in control of your data. You can delete individual projects or your entire account at any time. When you do, we remove the associated data, including any encrypted secrets held in Supabase Vault. Some records may persist briefly in backups before being cycled out.
Contact
Questions about this policy or your data? Email us at security@arctyne.com.