Privacy Policy
GreatPing is built to know as little about you as it can. This policy explains what it does keep, why, and for how long.
Last updated
Who we are
GreatPing is operated by B.I.K.S. Trading OÜ, Narva mnt 7-634, 10117 Tallinn, Estonia ("we", "us"). We are the controller of the personal data described here. For anything about privacy, write to privacy@greatping.com. You can also reach the company at support@bikstrading.com.
This policy covers the GreatPing apps for iOS and Android, the greatping command line tool, the GreatPing service they connect to, and this website.
The short version
- There is no email, password, name or phone number. An account is a group of your devices and computers.
- Nothing from your agent's prompt leaves your computer. An agent alert says which agent waits and why, never the command, the question or file names.
- What you send yourself (the text of questions and messages, your answers, project names) is end-to-end encrypted to your own devices. We relay it and cannot read it.
- Alert content is deleted 7 days after the alert finishes, and the alert itself after 30 days.
- Usage analytics are off unless you turn them on. We do not sell data or use it for advertising.
What we process
Your account and its keys
A random account identifier, when it was created, whether you allowed usage analytics, and the account's signed list of members with their public keys. Private keys stay on your devices and computers.
Your devices
For each phone or tablet: the name the device reports (for example "Alex's iPhone"), its model and system version, the app version, its push notification token, whether notifications are allowed, your notification settings (alert types, quiet hours, pause, time zone, Lock Screen preferences), whether the app lock is on, which device approved it, and when it was last active.
Your computers
For each computer: its name, operating system and version, processor architecture, greatping version, which supported agents have GreatPing set up and when a hook last ran, its alert settings (presence delay, escalation, reminder, pause, project label mode) and when it was last active. If you turn project labels on, the computer's list of recent project names is stored end-to-end encrypted.
Approximate location of activity
When a device or computer talks to the service, our hosting provider tells us the approximate city, country and network (for example the internet provider) of the connection. We store the most recent one for each device and computer and show it in the app, so you can spot a device or computer that is not yours, and we show where a pairing or device link was started before you approve it. We do not store IP addresses. They are processed only in transit, including to limit abuse.
Alerts, questions and answers
For each alert: which computer and agent it came from, why it was sent (for example a permission prompt or a finished turn), its kind, opaque identifiers derived on your computer for the chat session and project, when it was created, opened, answered and finished, which device answered, and its outcome. The text, title and choices of questions and messages, project names and your answers are stored only as encrypted envelopes that we cannot read.
Security activity
A log of changes to your account (devices and computers joining or leaving, pairing and linking), with the names involved, the time and the approximate location. You can see it in the app.
Notification delivery
Push tickets and receipts from the push service, to know whether a notification was accepted, and the results of test notifications you request.
Optional usage analytics
Only if you choose Share when you set up the app, or turn it on later in Settings › Privacy: product events such as "app opened", "computer paired" or "question answered", with the platform, app version and alert type. The identity is a one-way hash of your account identifier. Events never contain questions, answers, commands, names, project labels, paths, tokens, identifiers of your devices or requests, or location. The app sends them through our service, so the analytics provider does not receive your IP address.
Crash diagnostics
When the app hits an error, it may send a diagnostic report: the error type, the app and system version, and which operation failed. Reports are cleaned before they leave the device and contain no alert content, names, tokens or credentials; IP addresses and user identifiers are not attached.
Messages you send us
If you write to us, we receive your email address and what you write. We use it only to answer you.
This website
The website uses no cookies and no third-party trackers. The servers that deliver it process your IP address and request details as part of delivering the page and protecting against abuse.
To know how many people visit and which pages help them, we use Cloudflare Web Analytics. It counts page views, the page you came from, your country, your browser and device type, and how fast the page loaded. It sets no cookies, stores nothing on your device, does not use your IP address to identify you and does not follow you across sites. We see only totals.
Why we process it
| Purpose | Legal basis (GDPR) |
|---|---|
| Providing the service: pairing, delivering and escalating alerts, relaying questions and answers, syncing settings across your devices | Performance of our contract with you (Art. 6(1)(b)) |
| Keeping accounts secure: showing where activity comes from, the security log, rate limits and abuse prevention | Our legitimate interest in a secure service (Art. 6(1)(f)) |
| Crash diagnostics | Our legitimate interest in a working app (Art. 6(1)(f)) |
| Usage analytics | Your consent (Art. 6(1)(a)), which you can withdraw at any time in Settings › Privacy |
| Website visit statistics, without cookies or identifiers | Our legitimate interest in knowing how the website is used (Art. 6(1)(f)) |
| Answering your messages | Our legitimate interest in supporting you, or steps before a contract (Art. 6(1)(b) and (f)) |
| Complying with the law | Legal obligation (Art. 6(1)(c)) |
We do not make decisions about you based solely on automated processing.
Who processes data for us
We use these service providers, under contracts that require them to protect the data and use it only for us:
| Provider | Purpose |
|---|---|
| Cloudflare, Inc. | Hosting of the service, its database and this website, email routing, website visit statistics |
| Expo (650 Industries, Inc.) | Sending push notifications to Apple and Google |
| Apple Inc. (Apple Push Notification service) | Delivering notifications to iPhone and iPad |
| Google LLC (Firebase Cloud Messaging) | Delivering notifications to Android |
| Functional Software, Inc. (Sentry) | Crash diagnostics |
| PostHog, Inc. (EU hosting) | Usage analytics, only with your consent |
Push providers see the routing data a notification needs and its generic text, for example "Claude Code · Needs your approval", which can include the computer's name. Content is encrypted: on iPhone and iPad the device decrypts it to show it, on Android the notification carries only encrypted data.
Some of these providers are based in the United States. Where data leaves the European Economic Area, we rely on the EU-US Data Privacy Framework where the provider is certified, or on the European Commission's Standard Contractual Clauses.
We do not sell or rent personal data, and we do not share it for advertising. We disclose data to authorities only when the law requires it, and we can only disclose what we have; we cannot decrypt your content.
How long we keep it
| Data | Kept |
|---|---|
| Content of an alert (encrypted text, choices, project name, answer) | 7 days after the alert finishes |
| The alert itself (agent, reason, times, outcome) | 30 days after it finishes |
| Security activity | 90 days, at most the latest 1,000 entries |
| Pairing and device-link sessions | 1 day after they expire |
| Test notification results | 1 day |
| A removed device or computer | 30 days after removal |
| Your account and everything in it | Until you delete it, or it is deleted for inactivity (below) |
| Usage analytics events | According to the analytics provider's retention, currently up to one year |
| Emails you send us | As long as needed to answer, then up to 2 years |
When you delete your account, or the last device leaves it, the account is closed and deleted with its devices, computers, alerts and security activity at once, and at the latest within an hour. An account with no computer whose devices have not been seen for 30 days is deleted. An account with no activity from any device or computer for 12 months is deleted 7 days after a notice to its devices. Database backups that allow recovery from errors are kept for up to 30 days, after which deleted data is gone from them too. Deleting your account stops analytics collection but does not remove events the analytics provider already received; write to us and we will ask the provider to delete them.
Notifications already shown on your devices stay there until you clear them.
Your rights
Under the GDPR you have the right to access your data, to have it corrected or deleted, to restrict or object to its processing, to data portability, and to withdraw consent at any time without affecting earlier processing.
Most of these you can use directly in the app: it shows your devices, computers, their activity and location, your alerts and your security activity, lets you rename computers, remove devices and computers, turn analytics on and off, and delete the account (Settings › Delete Account; see Delete your account). For anything else, write to privacy@greatping.com.
An account has no name, email or other identifier that links it to you, so we cannot find an account from a message, and nobody can ask us to change or delete an account that is not theirs. That is why the rights that change an account are exercised in the app, by a device that belongs to it. If you no longer have such a device, the account and its data are deleted automatically as described above.
You can also complain to a supervisory authority, in particular in the EU country where you live or work. Ours is the Estonian Data Protection Inspectorate (Andmekaitse Inspektsioon, www.aki.ee).
Security
Long-lived credentials are stored on the service only as hashes. Pairing is confirmed with a one-time code whose secret half never reaches the service. Content is encrypted with HPKE (RFC 9180) and signed by its sender. Read more on the Security page.
Children
GreatPing is a tool for software developers and is not directed at children under 16. We do not knowingly process their data.
Changes
We will update this policy when what we do changes, and change the date at the top. If a change matters to you, we will also tell you in the app before it applies.
Contact
B.I.K.S. Trading OÜ
Narva mnt 7-634, 10117 Tallinn, Estonia
Privacy: privacy@greatping.com
Company: support@bikstrading.com
