Wycast

CPaaSEdgeEngine
Legal

Privacy Policy

What we collect across the platform, why we collect it, and how long it stays.
Who we are

The controlling entity, its address, and how to reach it about data.

Account and identity data

What is held for a Member — email, name, authentication credentials and session records — and that identity is managed by our identity provider rather than stored ad hoc.

Billing data

That payment details are held by Stripe and not by us; we retain a customer reference and processed webhook events. Should be explicit that we never see card numbers.

Device and fleet data

Device records, room bindings, and the identity snapshot retained for each connected peer so that session participants can still be resolved after a device is renamed or deleted.

Usage and telemetry

Session records and the tiers of connection telemetry collected for billing and quality reporting — raw samples, derived rates, and end-of-session aggregates — and how long each tier is kept.

Media

That streamed audio and video is relayed, not recorded, and what transits a relay when a direct peer-to-peer path is unavailable.

Logs and operational data

Service logs, retention period, and the fact that they are held for operating and securing the platform.

Cookies

The session cookie and anything else set. Must be revisited the moment analytics is introduced — that is the change that creates a consent obligation.

Processors and sub-processors

The third parties involved — payments, identity, relay, hosting — and where they operate.

International transfers

Where data is stored and processed, and the basis for any transfer.

Retention

How long each category above is kept, and what deletion means for data already aggregated into billing records.

Your rights

Access, correction, deletion, portability and objection — and how to exercise them.

Changes to this policy

How changes are notified and when they take effect.

© Wycast

ServicesTermsPrivacyContact