Privacy Policy
The short version
OpsGlance is built so that we cannot see your AWS data. Your credentials stay on your device, your AWS data flows directly between your device and AWS, and we run no accounts, no analytics, and no tracking. The only thing our server ever stores is an anonymous pair of push tokens, and only if you enable real-time alerts.
Your AWS credentials
The IAM access keys you add are stored exclusively in your device's Keychain, protected by iOS, and are never transmitted to us or anyone other than AWS. All AWS requests are signed on your device and sent directly to AWS. The app is read-only by design: the IAM policy we ask you to create allows no write actions.
Real-time alerts (Pro)
If you enable real-time push, two identifiers are stored on our relay server (Cloudflare Workers): a random pairing token generated by the app and your Apple push notification token. This pair lets a small function deployed in your own AWS account tell our relay to send your device a push when a CloudWatch alarm changes state. The alarm name and state pass through the relay transiently and are not retained. The pair is deleted when you disable push, and dead device tokens are removed automatically.
These identifiers are not linked to your name, email, or any account, because none exist. We cannot identify you from them.
What we do not collect
- No user accounts, names, or email addresses
- No analytics, telemetry, or crash reporting SDKs
- No advertising identifiers, no tracking
- No AWS resource data, metrics, or billing data on our servers
Purchases
Subscriptions are processed entirely by Apple. We receive no payment details and no identity information from your purchase.
Changes and contact
If this policy changes, the new version will be posted here with a new effective date. Questions: support@opsglance.com.