Effective: January 28, 2025
This Privacy Policy explains how hugo.ms Sàrl ("we", "us", "our") collects, uses, and protects your personal data when you use okok.now. We are committed to protecting your privacy in compliance with the Swiss Federal Act on Data Protection (FADP) and the EU General Data Protection Regulation (GDPR).
When you create an account, we collect your email address, name, and password (stored securely hashed).
We automatically collect IP addresses and browser user agents when you access our service, for security and session management.
We store the websites you add for monitoring, crawl results, detected issues, and your notification preferences. This data relates to the websites you monitor, not to you personally.
If you connect third-party services like Slack, we store the necessary authentication tokens to deliver notifications.
Contract performance: To provide the monitoring service, manage your account, and process payments.
Legitimate interest: For security, fraud prevention, error tracking, and service improvement.
Consent: For optional marketing communications (you can opt out anytime).
We use the following processors to deliver our service:
Hetzner (Germany, Finland) — Infrastructure hosting
Cloudflare (EU) — Object storage for reports
Resend (USA) — Email delivery
Sentry (EU) — Error monitoring
Google PageSpeed Insights (USA) — Performance analysis
Most of your data is stored within the EU (Germany, Finland). For services based in the USA (Resend, Google), we rely on Standard Contractual Clauses (SCCs) approved by the European Commission. Switzerland has an adequacy decision from the EU, allowing free data flow between the EU and Switzerland.
Account data: Retained until you request deletion.
Session logs: 30 days.
Error logs: 90 days.
Monitoring data: Varies by type; historical records may be retained indefinitely but contain no personal information.
Under GDPR and Swiss data protection law, you have the right to:
To exercise these rights, email legal@okok.now. We will respond within 30 days. You may also lodge a complaint with the Swiss Federal Data Protection and Information Commissioner (FDPIC) or your local EU data protection authority.
We use only essential cookies for authentication and session management. We do not use third-party tracking or analytics cookies. No cookie consent banner is required as we only use strictly necessary cookies.
We protect your data with HTTPS encryption, secure password hashing, and access controls. While no system is perfectly secure, we take reasonable measures to protect your information.
We may update this policy from time to time. Material changes will be communicated via email or a notice in the service. Continued use after changes constitutes acceptance.
Questions about this policy? Email legal@okok.now