Data Retention Policy

This Policy explains how long we keep different categories of data and how deletion works. It complements our Security page and DPA.

1) Product data (core service)

  • Incident clips: Short clips (typically 10–15s with 5–7s pre/post) created on event detection. Default auto-delete after 24–72 hours(plan-dependent and admin-configurable). Legal hold pauses deletion for investigations.
  • Incident metadata: Timestamps, camera label, confidence score, acknowledgement state. Retained for operational logs and audit (e.g., 90–180 days by default; longer under Enterprise if required by contract).
  • Camera/NVR details: Camera labels/IDs, ingest configuration. Retained while the account is active and 90 days after termination unless earlier deletion is requested.
  • Audit logs: Admin actions, logins, clip views, and alert changes retained90–180 days (configurable by plan) to support security and compliance.
  • Backups/snapshots (control plane/metadata): Daily encrypted snapshots;RPO ≤ 24h; snapshots auto-expire per schedule (e.g., 30–90 days). Short-lived clips are not backed up by default—use legal hold to preserve an incident.

2) Website data (forms & marketing)

  • Enquiry/demo forms: up to 12 months from last interaction.
  • Marketing list: until you unsubscribe or 12 months inactivity.
  • Analytics cookies: typically up to 12 months.

3) Support & communications

  • Email/ticket threads: retained while open + 24 months for history, unless deletion is requested and legally permissible.

4) Billing & contracts

  • Invoices, payments, contracts (including MSA/Order Forms): retained up to6 years to satisfy accounting and legal requirements.

5) Deletion & export

Admins can request export or early deletion via support. We'll honour Controller instructions under the DPA. Deletion cascades through active stores and scheduled snapshots as quickly as practicable.

6) Exceptions

Where required by law, investigation, or litigation hold, we may preserve limited data for longer.