Privacy Policy
Last updated: 22 September 2026
This Privacy Policy explains how Bistriy Sp. z o.o. (“Bistriy”, “we”, “us”) collects, uses, shares and protects personal data when you use BugsRadar: the website bugsradar.com, the web app app.bugsradar.com, the API at api.bugsradar.com and the BugsRadar NuGet package (together, the “Service”).
In short: we keep what we need to run your account — your email address, your projects and your channels. The events your applications send are forwarded to your channels and are never written to a database.
Contents
- Who we are (data controller)
- Information we collect
- Events your applications send
- How we use your information
- Legal bases for processing
- How we share information
- Data retention
- Your rights and how to complain
- Deleting your account
- Security
- Children
- International transfers
- Cookies and browser storage
- Changes to this policy
- Contact us
1. Who we are (data controller)
The controller of your personal data is:
Bistriy Sp. z o.o.
ul. Królewska 65A/1, 30-081 Kraków, Poland
KRS: 0000529467
Email: support@bistriy.com
You can contact us about this policy, your data or your privacy rights at support@bistriy.com. We have not appointed a Data Protection Officer; all data-protection matters are handled at that address.
2. Information we collect
Information you give us
- Account: your email address. You sign in with a one-time link we send to it; there is no password.
- Projects: the names of your projects and their API keys.
- Channels: the name of each channel and the credentials you enter for it — a Telegram bot token and chat ID, a Discord webhook URL, or a Pushover application token and user or group key.
- Support: what you write to us when you contact us.
Information collected automatically
- Sign-in data: the codes of the one-time sign-in link; an identifier your browser generates; and a key your browser uses to sign its requests to our API, kept in your browser and on our server.
- Channel status: when a channel last delivered a message and the error a service returned, so that you can see whether a channel works.
- Technical data: IP addresses, browser type and request times in our server logs, and request counters we use to protect the Service from abuse.
3. Events your applications send
The BugsRadar package and API receive events from your applications: error messages, exception types and stack traces, log message templates and their properties, and context such as the environment, host name and application version.
An event stays in memory only until it is delivered to the channels of its project. Events are not written to disk or to a database. While an error keeps repeating, BugsRadar keeps a counter with its latest sample in memory to send you summaries.
Events may contain personal data of your own users — for example, an email address in an exception message or a user ID in a log property. For that data you are the controller, and Bistriy processes it on your behalf (GDPR Art. 28) only to deliver it to the channels you have configured. Please send no more personal data than you need to fix errors. If you need a data processing agreement, write to us.
Delivering an event means sending its content to the service you chose — Telegram, Discord or Pushover — through your own bot, webhook or application. From that point it is processed by that service under its own terms and privacy policy.
4. How we use your information
- Create and secure your account and sign you in by email.
- Provide the Service: your projects and API keys, delivery of events to your channels, and the status of each channel.
- Check a channel's credentials with its service when you save the channel or press “Check again”, and send a test message when you ask for one.
- Send the emails the Service needs, such as sign-in links.
- Keep the Service secure: detect and stop abuse and diagnose problems.
- Answer your requests to support.
- Comply with legal obligations and enforce our Terms of Use.
5. Legal bases for processing
Where the GDPR (and, for UK users, the UK GDPR) applies, we rely on the following legal bases:
- Performance of a contract — to provide the Service you signed up for: your account, projects, channels and the delivery of events.
- Legitimate interests — to keep the Service secure, prevent abuse and fix problems, balanced against your rights.
- Legal obligation — to comply with applicable law, including Polish tax and accounting law once paid plans are available.
For personal data inside the events your applications send, the legal basis is yours as the controller; we act on your instructions, as described in section 3.
6. How we share information
We do not sell your personal data. We share information only as described here:
- Service providers (processors) — companies that host our servers and send our email, acting on our instructions and bound by confidentiality and data-protection obligations.
- The services you connect — Telegram, Discord and Pushover receive the content of your events, test messages and credential checks, because you set up a channel with them.
- Legal and safety — when required by law, to enforce our Terms, or to protect the rights, safety and security of our users or the public.
- Business transfers — if Bistriy is involved in a merger, acquisition or sale of assets, your information may be transferred, subject to this policy.
7. Data retention
- We keep your account data for as long as your account exists.
- A one-time sign-in link is deleted once it has been used. The key of a browser is deleted from our server when you sign out in that browser.
- A project or a channel you delete is no longer used or shown, and its data is erased within a reasonable period.
- Events are not retained: they are kept in memory only until they are delivered.
- Server logs are kept for a short period for security and diagnostics.
- When your account is deleted, we delete or anonymize your personal data within a reasonable period, except where we must keep certain records to comply with legal, tax or accounting obligations, to resolve disputes or to prevent abuse. Backup copies are deleted on a rolling schedule.
8. Your rights and how to complain
Under the GDPR you have the right to access, rectify, erase or receive a portable copy of your personal data, and to restrict or object to certain processing. You can see and change your projects and channels in the web app at any time. For any other request, email support@bistriy.com; we respond within the time limits set by law (generally one month).
If you believe we have handled your data unlawfully, you have the right to lodge a complaint with a supervisory authority. In Poland this is the President of the Personal Data Protection Office (Prezes Urzędu Ochrony Danych Osobowych), ul. Stawki 2, 00-193 Warsaw, Poland — uodo.gov.pl. If you live elsewhere in the EEA, you may complain to your local authority.
California residents: we do not sell or “share” personal information as those terms are defined under the CCPA/CPRA, and we will not discriminate against you for exercising your privacy rights.
9. Deleting your account
You can delete your projects and channels in the web app at any time. To delete your account, email support@bistriy.com from the address you sign in with. We delete the account together with its projects and channels, subject to the limited retention described in section 7.
10. Security
We use technical and organizational measures designed to protect your information. Traffic to our website, web app and API is encrypted with HTTPS. Channel credentials are stored encrypted with AES-256-GCM, are shown only as a mask after you save them, and never appear in our logs. Sign-in needs no password: each browser signs its requests with its own key.
Keep your API keys secret, and regenerate a key in the web app if it leaks. Keep access to your email secure, since it is used to sign in. No method of transmission or storage is completely secure, so we cannot guarantee absolute security.
11. Children
BugsRadar is a service for developers and businesses. It is not directed to children, and you must be at least 18 years old to create an account. If you believe a minor has provided us personal data, contact us and we will delete it.
12. International transfers
We aim to process your personal data within the European Economic Area (EEA). Where a service provider processes data outside the EEA, or your information is otherwise transferred internationally, we use appropriate safeguards (such as the European Commission's standard contractual clauses) as required by applicable law. You can request details of these safeguards using the contact details above. Events you deliver to Telegram, Discord or Pushover are transferred to those services at your instruction and handled under their own terms.
13. Cookies and browser storage
Our website bugsradar.com sets no cookies, uses no analytics and no advertising, and loads no fonts, scripts or other resources from third-party servers.
The web app app.bugsradar.com sets no cookies either. To keep you signed in, it stores a browser identifier and the key that signs your requests in your browser's local storage (localStorage and IndexedDB). They are strictly necessary for signing in and are not used for tracking. The key is removed when you sign out; the identifier stays until you clear the site's data in your browser.
14. Changes to this policy
We may update this Privacy Policy from time to time. We will revise the “Last updated” date above and, where a change is significant, notify you by email or in the web app. Your continued use of the Service after changes take effect means you accept the updated policy.
15. Contact us
Questions or requests about this policy or your data? Email support@bistriy.com, or write to us at the address in section 1.