Scope of this beta notice
This notice describes the information handled by the current PointWarden beta at pointwarden.app. PointWarden is a DE Layer product for monitoring public HTTP Endpoints and notifying Workspaces when observed Availability changes.
This is an implementation draft identified as beta-2026-08-26. The operator's identifying name and a staffed privacy contact must be confirmed before external beta enrollment opens.
Information we handle
Identity and security
Signup and authentication handle your name, email address, a password verifier, email-verification and password-reset records, sessions, and security metadata used by authentication and abuse controls. Cloudflare Turnstile also processes data needed to assess whether an authentication request is legitimate.
Workspace configuration
PointWarden stores Workspace membership and roles, Monitor names and schedules, public Endpoint configuration, and Notifier configuration. Sensitive Endpoint query data, Notifier URLs, and Generic signing secrets are encrypted at the application layer.
Operational evidence
Check Evidence is deliberately narrow: timestamp, Monitor Revision, outcome, final status when available, latency to response headers, redirect count, and a sanitized failure category. PointWarden does not retain response bodies, request or response headers, redirect URLs, cookies, certificates, network addresses, or server banners as Check Evidence. The service also stores Incidents, Availability Rollups, Notification Events, Deliveries, and safe delivery diagnostics.
How we use information
- Create and protect your User and sessions.
- Operate Workspaces, Monitors, Checks, and Notifiers.
- Confirm Incidents and Recovery from Check Evidence.
- Send verification, security, invitation, and service emails.
- Deliver subscribed Notification Events.
- Diagnose failures, enforce beta limits, and protect the service.
PointWarden does not ask you to agree to this Privacy Policy as a blanket consent. Signup separately asks you to agree to the Terms of Service.
Service providers
The beta is built on Cloudflare services, including Workers, D1, Queues, Email Service, Turnstile, Analytics Engine, logs, and traces. These services process or store information needed to deliver and protect PointWarden. A final subprocessor list and processing-location statement depend on the production setup and contracts and are not claimed by this draft.
Retention and deletion
The current operational retention schedule is bounded:
- individual Check Evidence: 8 days, with 7 days visible;
- five-minute Availability Rollups: 7 days;
- hourly Availability Rollups: 90 days;
- closed Incidents: 180 days after they end; and
- Delivery Attempts and Test Deliveries: 30 days.
Active identity and Workspace configuration remain while needed to operate the beta. Workspace deletion stops Checks immediately and is designed to purge active PointWarden data within 24 hours. Platform recovery history may remain for the provider's limited recovery window, is not available through PointWarden, and expires automatically. Deleting your User also deletes the Terms-acceptance fields stored with that User after any owned Workspaces are transferred or deleted.
Your choices and requests
You can update your profile and password, pause or delete Monitors and Notifiers, delete eligible Workspaces, and delete your User after resolving Workspace ownership. PointWarden does not yet publish a staffed privacy inbox. A verified contact method and request process must replace this sentence before external beta enrollment opens.
Changes to this notice
A revised notice will show a new effective date and version. A privacy notice update is notice, not automatic contractual assent. If a new activity needs a separate choice, PointWarden will present that choice separately rather than hiding it in this page.