Plain summary. We collect what we need to bill you and to monitor your equipment. We deliberately do not collect your subscribers' personal information. Our team is in South Africa and our servers are in the United States — that's disclosed below because it matters.
This policy explains what [LEGAL ENTITY NAME] ("Nightpoll") collects, why, and what we do with it. It covers our website and our monitoring services.
Name, business name, business email, phone number, and billing address. Card payments are processed by Stripe — we never see or store your card number.
From the devices you nominate, we collect operational metrics: device identifiers and hostnames, IP addresses of managed equipment, interface counters and error rates, signal levels and radio statistics, CPU, memory, temperature and power readings, uptime, and configuration change events.
Standard server logs (IP address, browser, pages requested) and information you submit through the quote form. We do not use advertising or tracking cookies.
This is a design decision, not an accident:
If you believe we are collecting something in these categories, tell us and we will remove the collection.
| Purpose | Data used |
|---|---|
| Detecting and alerting on faults | Network telemetry |
| Trend and capacity reporting | Historical telemetry |
| Billing and account management | Account and billing data |
| Support and communication | Contact details, correspondence |
| Security and abuse prevention | Access logs, audit records |
This section is deliberately explicit.
By using the service you consent to this arrangement. If your regulatory position requires that no non-US personnel access your telemetry, tell us before onboarding — we will say so plainly rather than work around it.
| Provider | Purpose | Location |
|---|---|---|
| [HOSTING PROVIDER] | Monitoring servers | United States |
| Stripe | Payment processing | United States |
| [BACKUP PROVIDER] | Encrypted backup storage | United States |
| [EMAIL PROVIDER] | Business email | United States |
Backups are encrypted by us before leaving our servers. The backup provider cannot read their contents.
On termination, live telemetry and credentials are destroyed promptly and you receive a written record. Encrypted backups may retain historical data until they age out under the schedule above.
Summary of controls: encrypted transport throughout; per-customer isolation with separate keys, networks and credentials; least-privilege, read-only access by default; multi-factor authentication on administrative access; encrypted, tested backups; and audit logging. Our full Security Overview, including known limitations, is available on request.
You may request access to, correction of, or deletion of the information we hold, and a copy in a portable format. Write to us and we will respond within 30 days.
We do not sell personal information, and we do not share it for cross-context behavioural advertising. Where California, Colorado, Virginia, Connecticut or similar state privacy laws apply to information you provide, we honour the rights they grant.
This is a business service. We do not knowingly collect information from anyone under 18.
We will post material changes here and notify active customers by email at least 30 days in advance.
[LEGAL ENTITY NAME]
[REGISTERED ADDRESS]
udisp.networks@gmail.com