Legal
Privacy Policy
Last updated: January 2026
qa-paas is an on-premise platform. By design, your test data never leaves your network. This policy covers the limited personal data we collect through our website and license portal.
1. Data We Collect
When you purchase a license or contact us, we collect your name, work email address, and company name. We do not collect, store, or process any test data, API schemas, Swagger files, or security scan results — these remain entirely on your local machine.
2. How We Use Your Data
Your email is used to deliver your signed license key, send renewal reminders, and respond to support requests. We do not sell, rent, or share your personal data with third parties for marketing purposes.
3. License Portal
The license portal receives a hashed token derived from your license key during the one-time activation handshake. The raw JWT and your test data are never transmitted to our servers.
4. Payment Processing
Payments are processed by Stripe, PayPal, or Paddle. We do not store credit card numbers or payment credentials on our servers. All payment data is handled by PCI-DSS compliant processors.
5. Cookies
Our marketing website uses minimal analytics cookies to understand traffic patterns. No cookies are used in the qa-paas desktop application or local deployment.
6. Data Retention
We retain your contact information and order records for 7 years for accounting and legal compliance. You may request deletion of your personal data at any time by emailing privacy@qa-paas.com.
7. GDPR & CCPA
If you are located in the EU or California, you have the right to access, correct, or delete your personal data. Contact us at privacy@qa-paas.com to exercise these rights.
8. Changes to This Policy
We may update this policy periodically. Material changes will be communicated via email to active license holders. Continued use of qa-paas after changes constitutes acceptance.
Contact
For privacy-related inquiries: privacy@qa-paas.com