Privacy Policy
Last updated: April 27, 2026
1. Information We Collect
We collect information you provide directly to us when you create an account, upload SBOMs, or contact us for support. This includes:
- Name and email address
- Organization name and billing information
- SBOM files and associated metadata you upload
- Usage data and logs generated by your use of the platform
2. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the SBOMVault.ai platform
- Process transactions and send related information
- Send security alerts, compliance reports, and digest emails
- Respond to support requests and communicate with you
- Monitor and analyze usage patterns to improve the service
3. Data Storage and Security
Your SBOM files are stored in encrypted cloud storage. We use industry-standard security practices including encryption at rest and in transit, access controls, and regular security audits. We do not store SBOM file contents in our database — files are stored in isolated blob storage and access is controlled via time-limited tokens.
4. Data Sharing
We do not sell your personal information. We may share your information with:
- Service providers who help us operate the platform (hosting, payments, email delivery)
- Law enforcement when required by applicable law
- Other parties with your explicit consent
5. Third-Party Services
SBOMVault.ai integrates with third-party services including Stripe for payment processing, Resend for email delivery, and Vercel for hosting. Each of these services has their own privacy policy governing their use of data.
6. Your Rights
You have the right to access, correct, or delete your personal data at any time. You may also request an export of your data. To exercise these rights, contact us at privacy@sbomvault.ai.
7. Data Retention
We retain your data for as long as your account is active or as needed to provide services. When you delete your account, we will delete or anonymize your data within 30 days, except where retention is required by law.
8. Cookies
We use essential cookies to maintain your session and authentication state. We do not use tracking or advertising cookies.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes via email or a notice on the platform.
10. Contact Us
If you have questions about this Privacy Policy, please contact us at privacy@sbomvault.ai.