Privacy Policy
NotifyHero privacy policy.
Privacy Policy
Last updated: March 1, 2026
Plain English summary: We collect only what we need to run NotifyHero for you. Your incident data is yours. We encrypt everything, don't sell your data, and you can delete your account anytime. That's it.
1. Who We Are
NotifyHero is operated by Bring On The Good, Inc. ("we", "us", "our"). This policy explains how we collect, use, and protect your information when you use NotifyHero at notifyhero.com and app.notifyhero.com.
2. What Data We Collect
Account Information
- Name, email address, and password (hashed)
- Organization name and billing details
- Profile preferences and notification settings
Incident & Operational Data
- Incidents, alerts, escalation policies, and schedules you create
- On-call rotations and notification history
- Status page configurations and updates
- Postmortem reports and response timelines
Usage Analytics
- Feature usage patterns and page views
- Performance metrics (page load times, API response times)
- Device type, browser, and operating system
- IP address and approximate location (country/region level)
Communication Data
- Support tickets and chat messages with our team
- Feedback and survey responses
3. How We Use Your Data
We use your information to:
- Deliver the service — Route alerts, manage incidents, run on-call schedules
- Improve NotifyHero — Understand usage patterns, fix bugs, build better features
- Communicate with you — Service updates, security notices, and (with your consent) product news
- Billing — Process payments and manage subscriptions
- Security — Detect abuse, prevent fraud, and protect our infrastructure
We never sell your personal data to third parties.
4. Data Storage & Security
Your data security is a top priority:
- Encryption at rest: AES-256 encryption for all stored data
- Encryption in transit: TLS 1.3 for all connections
- Infrastructure: Hosted on AWS with SOC 2 compliant data centers
- Access control: Role-based access, audit logs, and least-privilege principles
- Backups: Encrypted, geographically redundant backups
5. Third-Party Services
We use a limited number of third-party services:
- Stripe — Payment processing (billing details, payment method)
- Analytics — Anonymized usage data only
All third-party providers are vetted for security and privacy compliance. We do not share your incident data with any third party.
6. Data Retention & Deletion
- Active accounts: Data retained for the duration of your subscription
- Closed accounts: Data deleted within 30 days of account closure, unless legally required to retain
- Backups: Purged from backup systems within 90 days of deletion
- You can request deletion of your data at any time by contacting support@notifyhero.com
7. GDPR Compliance
If you're in the European Economic Area (EEA), you have the following rights:
- Access — Request a copy of your personal data
- Rectification — Correct inaccurate data
- Erasure — Request deletion of your data ("right to be forgotten")
- Portability — Export your data in a machine-readable format
- Restriction — Limit how we process your data
- Objection — Object to data processing based on legitimate interests
To exercise any of these rights, email support@notifyhero.com. We respond within 30 days.
A Data Processing Agreement (DPA) is available upon request for Enterprise customers.
8. Cookies
We use cookies for:
- Essential cookies — Authentication, session management, security (always active)
- Analytics cookies — Understanding how you use NotifyHero (opt-out available)
We do not use advertising or tracking cookies.
You can manage cookie preferences in your browser settings.
9. Children's Privacy
NotifyHero is not intended for users under 16. We do not knowingly collect data from children.
10. Changes to This Policy
We may update this policy from time to time. We'll notify you of significant changes via email or an in-app notice at least 30 days before they take effect.
11. Contact Us
Questions about privacy? Reach us at:
- Email: support@notifyhero.com
- Website: notifyhero.com
Bring On The Good, Inc. — Making incident management better for everyone.