Privacy Policy

Last updated: January 2026

qa-paas is an on-premise platform. By design, your test data never leaves your network. This policy covers the limited personal data we collect through our website and license portal.

1. Data We Collect

When you purchase a license or contact us, we collect your name, work email address, and company name. We do not collect, store, or process any test data, API schemas, Swagger files, or security scan results — these remain entirely on your local machine.

2. How We Use Your Data

Your email is used to deliver your signed license key, send renewal reminders, and respond to support requests. We do not sell, rent, or share your personal data with third parties for marketing purposes.

3. License Portal

The license portal receives a hashed token derived from your license key during the one-time activation handshake. The raw JWT and your test data are never transmitted to our servers.

4. Payment Processing

Payments are processed by Stripe, PayPal, or Paddle. We do not store credit card numbers or payment credentials on our servers. All payment data is handled by PCI-DSS compliant processors.

5. Cookies

Our marketing website uses minimal analytics cookies to understand traffic patterns. No cookies are used in the qa-paas desktop application or local deployment.

6. Data Retention

We retain your contact information and order records for 7 years for accounting and legal compliance. You may request deletion of your personal data at any time by emailing privacy@qa-paas.com.

7. GDPR & CCPA

If you are located in the EU or California, you have the right to access, correct, or delete your personal data. Contact us at privacy@qa-paas.com to exercise these rights.

8. Changes to This Policy

We may update this policy periodically. Material changes will be communicated via email to active license holders. Continued use of qa-paas after changes constitutes acceptance.

Contact

For privacy-related inquiries: privacy@qa-paas.com