Last updated: March 17, 2026
ShipSafe CLI: The CLI runs entirely on your machine. We do not collect, transmit, or store your source code, scan results, or any data from the CLI. Zero telemetry.
@shipsafe/monitor: If you install the optional monitoring snippet, it sends error reports and performance metrics to our API. All data goes through automatic PII scrubbing before transmission — emails, credit card numbers, social security numbers, phone numbers, and IP addresses are stripped. You can add a beforeSend hook to filter or block any event.
shipsafe.org: This website does not use cookies, analytics, or tracking scripts. We do not collect any personal information from visitors.
Monitoring data is used solely to display error reports and performance metrics in your ShipSafe dashboard. We do not sell, share, or use your data for advertising. We do not train AI models on your data.
Monitoring data is stored in encrypted databases. Source maps are stored temporarily for stack trace resolution and automatically deleted after 90 days. All API communication uses HTTPS with TLS 1.3.
Error data is retained for 30 days by default. Performance metrics are retained for 7 days. Source maps are retained for 90 days. You can request deletion of all your data at any time by emailing privacy@shipsafe.org.
We do not share data with third parties. We use no third-party analytics, advertising, or tracking services on this website or in our products.
You can request access to, correction of, or deletion of your data at any time. Contact privacy@shipsafe.org. We respond within 30 days.
Questions? Email privacy@shipsafe.org.