Introduction
Welcome to TwoPulse. We provide uptime and heartbeat monitoring for web services, including health checks, latency tracking, dashboards, and alert notifications via email and webhooks.
This Privacy Policy explains what information we collect, how we use it, and the choices you have when you use our website at twopulse.io and our monitoring platform. By creating an account or using TwoPulse, you agree to the practices described here.
Information we collect
Account information
When you register, we collect your email address, display name, and a hashed password. Your email is used for sign-in, account recovery, and as the default recipient for alert notifications.
Service and monitoring data
When you add services to monitor, we store the configuration you provide, including:
- Service name and target URL
- Expected HTTP status code and maximum acceptable latency
- Alert threshold (consecutive failures before alerting)
- Heartbeat check results: timestamp, response latency, HTTP status code, pass/fail status, and error messages when checks fail
Our monitoring probes send HTTP requests to the URLs you configure. We do not intentionally collect the body content of your applications — only metadata from the health check response.
Alert and notification data
To deliver alerts, we process:
- Additional notification email addresses you add in Settings
- Per-service webhook URLs you configure (for integrations such as Slack or Discord)
- Alert delivery history (event type, channel, and timestamp)
- Service status details included in alert emails and webhook payloads (service name, status, latency, links to your dashboard)
Contact and support data
If you reach out via our contact form, we collect your name, email address, subject, and message content so we can respond to your inquiry.
Usage and technical data
We automatically collect limited technical information when you use TwoPulse, such as IP address, browser type, device information, and server logs. This helps us maintain security, diagnose issues, and improve the platform.
How we use your information
We use the information we collect to:
- Provide, operate, and maintain the monitoring platform
- Perform scheduled heartbeat checks against your configured service URLs
- Send email alerts and webhook notifications when services go down or recover
- Display dashboards, service history, and alert logs in your account
- Respond to support requests and communicate about your account
- Detect, prevent, and address security issues, abuse, and technical problems
- Comply with legal obligations and enforce our Terms of Service
- Improve TwoPulse through aggregated, anonymized usage analysis
We do not sell your personal information to third parties.
Data security
We implement industry-standard safeguards including encrypted connections (HTTPS), secure password hashing, access controls, and regular security reviews. Production environments use secure session and CSRF cookie settings.
No method of transmission or storage is completely secure. While we work to protect your information, we cannot guarantee absolute security. Please use a strong, unique password and notify us promptly if you suspect unauthorized access to your account.
Data retention
We retain data for as long as needed to provide the service:
- Account data is kept while your account is active and for a reasonable period afterward to comply with legal obligations.
- Heartbeat check results are retained for approximately 13 months to power historical charts and incident analysis, after which they are automatically purged.
- Alert event history is retained to provide your alert log and audit trail.
- Contact form submissions are retained as long as needed to resolve your inquiry.
You may request deletion of your account and associated data by contacting us. Some information may be retained where required by law or for legitimate business purposes such as fraud prevention.
Your rights and choices
Depending on your location, you may have the right to:
- Access and receive a copy of your personal information
- Correct inaccurate account information via Settings or by contacting us
- Delete your account and associated data
- Manage notification recipients and webhook URLs in your account settings
- Object to or restrict certain processing, where applicable by law
To exercise these rights, contact us through our contact page. We will respond within a reasonable timeframe.
Third-party services
TwoPulse relies on the following categories of third-party services:
- Email delivery (Resend): Alert and transactional emails are sent through Resend from
updates.twopulse.io. Resend processes recipient email addresses and message content on our behalf. - Cloud infrastructure: Our application and database are hosted on cloud providers that store and process data necessary to run the service.
- Your webhook providers: When you configure a webhook URL, alert payloads are transmitted to that endpoint and governed by the recipient's policies.
These providers are permitted to use your information only as needed to perform services for TwoPulse and are subject to their own privacy policies.
Children's privacy
TwoPulse is not intended for users under 16 years of age. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us and we will delete it promptly.
Changes to this policy
We may update this Privacy Policy from time to time. When we make material changes, we will post the updated policy on this page and revise the "Last updated" date. Your continued use of TwoPulse after changes take effect constitutes acceptance of the updated policy.
Contact us
If you have questions about this Privacy Policy or how we handle your data, reach us at support@twopulse.io or through our contact page.