Privacy

Privacy Policy

How we collect, use, and protect your information when you monitor services with TwoPulse.

Last updated June 2026

Introduction

Welcome to TwoPulse. We provide uptime and heartbeat monitoring for web services, including health checks, latency tracking, dashboards, and alert notifications via email and webhooks.

This Privacy Policy explains what information we collect, how we use it, and the choices you have when you use our website at twopulse.io and our monitoring platform. By creating an account or using TwoPulse, you agree to the practices described here.

Information we collect

Account information

When you register, we collect your email address, display name, and a hashed password. Your email is used for sign-in, account recovery, and as the default recipient for alert notifications.

Service and monitoring data

When you add services to monitor, we store the configuration you provide, including:

  • Service name and target URL
  • Expected HTTP status code and maximum acceptable latency
  • Alert threshold (consecutive failures before alerting)
  • Heartbeat check results: timestamp, response latency, HTTP status code, pass/fail status, and error messages when checks fail

Our monitoring probes send HTTP requests to the URLs you configure. We do not intentionally collect the body content of your applications — only metadata from the health check response.

Alert and notification data

To deliver alerts, we process:

  • Additional notification email addresses you add in Settings
  • Per-service webhook URLs you configure (for integrations such as Slack or Discord)
  • Alert delivery history (event type, channel, and timestamp)
  • Service status details included in alert emails and webhook payloads (service name, status, latency, links to your dashboard)

Contact and support data

If you reach out via our contact form, we collect your name, email address, subject, and message content so we can respond to your inquiry.

Usage and technical data

We automatically collect limited technical information when you use TwoPulse, such as IP address, browser type, device information, and server logs. This helps us maintain security, diagnose issues, and improve the platform.

How we use your information

We use the information we collect to:

  • Provide, operate, and maintain the monitoring platform
  • Perform scheduled heartbeat checks against your configured service URLs
  • Send email alerts and webhook notifications when services go down or recover
  • Display dashboards, service history, and alert logs in your account
  • Respond to support requests and communicate about your account
  • Detect, prevent, and address security issues, abuse, and technical problems
  • Comply with legal obligations and enforce our Terms of Service
  • Improve TwoPulse through aggregated, anonymized usage analysis

We do not sell your personal information to third parties.

How we share information

We share information only in these circumstances:

  • Service providers: We use trusted vendors to operate TwoPulse (for example, email delivery via Resend and cloud hosting). They process data on our behalf under contractual obligations.
  • Webhook endpoints you configure: When an alert fires, we send a payload to the webhook URL you provide. You are responsible for ensuring those endpoints are appropriate and secure.
  • Legal requirements: We may disclose information if required by law, court order, or to protect the rights, safety, and security of TwoPulse and our users.
  • Business transfers: If TwoPulse is involved in a merger, acquisition, or asset sale, your information may be transferred as part of that transaction, subject to continued protection.

Data security

We implement industry-standard safeguards including encrypted connections (HTTPS), secure password hashing, access controls, and regular security reviews. Production environments use secure session and CSRF cookie settings.

No method of transmission or storage is completely secure. While we work to protect your information, we cannot guarantee absolute security. Please use a strong, unique password and notify us promptly if you suspect unauthorized access to your account.

Data retention

We retain data for as long as needed to provide the service:

  • Account data is kept while your account is active and for a reasonable period afterward to comply with legal obligations.
  • Heartbeat check results are retained for approximately 13 months to power historical charts and incident analysis, after which they are automatically purged.
  • Alert event history is retained to provide your alert log and audit trail.
  • Contact form submissions are retained as long as needed to resolve your inquiry.

You may request deletion of your account and associated data by contacting us. Some information may be retained where required by law or for legitimate business purposes such as fraud prevention.

Your rights and choices

Depending on your location, you may have the right to:

  • Access and receive a copy of your personal information
  • Correct inaccurate account information via Settings or by contacting us
  • Delete your account and associated data
  • Manage notification recipients and webhook URLs in your account settings
  • Object to or restrict certain processing, where applicable by law

To exercise these rights, contact us through our contact page. We will respond within a reasonable timeframe.

Cookies and similar technologies

TwoPulse uses essential cookies to keep you signed in, protect against cross-site request forgery, and maintain session security. These cookies are required for the platform to function and are not used for advertising.

You can control cookies through your browser settings, but disabling essential cookies may prevent you from using authenticated features.

Third-party services

TwoPulse relies on the following categories of third-party services:

  • Email delivery (Resend): Alert and transactional emails are sent through Resend from updates.twopulse.io. Resend processes recipient email addresses and message content on our behalf.
  • Cloud infrastructure: Our application and database are hosted on cloud providers that store and process data necessary to run the service.
  • Your webhook providers: When you configure a webhook URL, alert payloads are transmitted to that endpoint and governed by the recipient's policies.

These providers are permitted to use your information only as needed to perform services for TwoPulse and are subject to their own privacy policies.

Children's privacy

TwoPulse is not intended for users under 16 years of age. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us and we will delete it promptly.

Changes to this policy

We may update this Privacy Policy from time to time. When we make material changes, we will post the updated policy on this page and revise the "Last updated" date. Your continued use of TwoPulse after changes take effect constitutes acceptance of the updated policy.

Contact us

If you have questions about this Privacy Policy or how we handle your data, reach us at support@twopulse.io or through our contact page.