This Privacy Policy describes how Alertica, a brand operated by www.pagewiz.com, a company registered in Israel www.alertica.io, collects, uses, stores, and protects information in connection with the Alertica platform (the "**Service**") and our website at (https://www.alertica.io/).
By accessing or using the Service, you acknowledge that you have read and understood this Privacy Policy.
Alertica is a file integrity monitoring (FIM) and configuration change detection tool. It monitors files and IoT device configurations (such as security cameras) for unauthorized changes by comparing cryptographic hashes. Alertica operates as a Software-as-a-Service (SaaS) platform and is also available as an on-premises deployment. Alertica does not access or store the contents of monitored files or device configurations.
- Visitors to the Website
- Users who register accounts on the Service
- Customers using the SaaS version of the Service
- Individuals whose data may appear in system audit logs
For on-premises deployments, the customer operates the Service locally. See Section 10 for details.
- Email address — used for authentication, communication, and account management.
- Authentication credentials — account login passwords are securely hashed using industry-standard one-way hashing and cannot be reversed or viewed by anyone, including Alertica staff.We do not collect names, phone numbers, physical addresses, or other personal identifiers beyond your email address.
- Device connection details — IP addresses, usernames, and passwords for monitored devices.Device credentials are stored using reversible encryption so the Service can connect to your devices. Access to device credentials is restricted to authorized personnel under strict internal controls and only for the purpose of providing the Service.You may delete device credentials at any time through the Service.
- File hashes — cryptographic hashes of monitored files. We do not store file contents.
- Configuration hashes — cryptographic hashes of IoT device configurations. We do **not** store raw configuration data.
- IP addresses
- Email addresses
- User actions and events
- Timestamps
- Error traces (which may contain limited configuration-related metadata)**Legal basis (GDPR):** Legitimate interest in maintaining platform security and integrity.
Retention: Up to 360 days.
In limited circumstances, and only after notifying the affected customer, we may enable enhanced debug logging. Debug logs may include certain file metadata or configuration values necessary to diagnose issues.
**Retention:** Up to 30 days.
- Browser type and version
- Operating system
- Pages visited and time spent
- Referral source
- IP address
- Device identifiers
This data is collected through cookies and similar technologies. See our [Cookie Policy](cookie-policy.md) for details.
Payments are processed by Tranzila. Alertica does not store credit card details.
We use collected information for the following purposes:
We do not use customer monitoring data (file hashes, configuration hashes, or device credentials) for any purpose other than providing the Service.
We do not use anonymized or aggregated customer data for product improvement or any secondary purpose.
Data processed through the SaaS platform is currently hosted in Israel. Upon request and subject to contractual agreement, we may host customer data in the European Union or the United States.
- Encryption of data in transit (TLS)
- Encryption of data at rest
- Device credentials stored using reversible encryption with access controls
- Account passwords hashed using one-way algorithms
- Administrative access logging
- Encrypted backups retained for a minimum of one (1) year
No system can guarantee absolute security. While we strive to protect your information, we cannot guarantee that unauthorized access will never occur.
We may offer multi-factor authentication as an additional security measure. Where available, we recommend that users enable it.
Data may remain in encrypted backups during retention periods. Upon expiration of the applicable retention period, data is deleted or anonymized in accordance with our internal procedures.
We do not sell your personal data.
We may engage additional sub-processors from time to time. An updated list of sub-processors is available upon request.
We may also disclose information where required by law, regulation, legal process, or governmental request.
Your data may be transferred to and processed in countries outside your country of residence, including Israel and countries where our sub-processors operate.
Where personal data is transferred from the European Economic Area (EEA), United Kingdom, or Switzerland to a country that has not received an adequacy decision, we rely on appropriate safeguards, including Standard Contractual Clauses (SCCs) approved by the European Commission.
- Access — request a copy of your personal data
- Rectification — request correction of inaccurate data
- Erasure — request deletion of your personal data
- Restriction — request restriction of processing
- Data Portability — receive your data in a structured, machine-readable format
- Objection — object to processing based on legitimate interest
- Withdraw Consent — where processing is based on consent, you may withdraw your consent at any time
To exercise any of these rights, contact us at info@pagewiz.com.
We will respond to requests within 30 days or the timeframe required by applicable law.
- All monitored data is processed and stored locally on the customer's infrastructure.
- Alertica does **not** have remote access to on-premises installations.
- No telemetry, monitoring data, or device information is transmitted to Alertica.
- The on-premises software performs periodic license validation checks that verify entitlement only. No device data, monitoring data, or personal data is transmitted during these checks.
- The customer acts as the **data controller** for all data processed through the on-premises deployment.
In the event of a personal data breach, we will notify affected customers without undue delay and, where feasible, within 72 hours of becoming aware of the breach, where required by applicable law.
Where required under applicable law, Alertica will designate a representative in the European Union. Until such designation, inquiries from EU residents may be directed to info@pagewiz.com.
The Service is not directed to individuals under the age of 18. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us and we will take steps to delete such information.
We may update this Privacy Policy from time to time. Material changes will be posted on the Website with an updated "Last Updated" date. Your continued use of the Service after changes become effective constitutes acceptance of the revised policy.
If you have questions about this Privacy Policy or our data practices, contact us at:
Alertica (operated by Pagewiz 515270841 LTD) Israel Email: info@pagewiz.com
Get a personalized tour of Alertica from one of our team members and learn how it can fit your infrastructure.
Request a Demo