Legal

Privacy Policy

Effective 1 January 2026

1. Data we never collect

PingCastle audits run entirely inside your network. Domain names, user accounts, group memberships, GPO contents and risk findings stay on the machine that ran the scan. No audit output is transmitted to us unless you deliberately attach a report to a support request.

2. Information you give us

If you download the tool, request a quote or send feedback, we store the email address and message you provide. We use it only to reply and to send release notes you asked for. You can ask for deletion at any time.

3. Cookies

We set one strictly necessary cookie to remember your consent choice, and — only if you accept — anonymous analytics cookies that count page views and download clicks. Declining keeps the site fully functional.

4. Retention

Support correspondence is kept for 24 months. Analytics data is aggregated after 14 months. Licence records are kept as long as legally required for accounting.

5. Your rights

Under GDPR you may request access, correction, portability or erasure of your personal data, and object to processing. Write to privacy@pingcastle.example and we will answer within 30 days.

6. Changes

Material changes to this policy are announced on this page with a new effective date. Continued use of the site after that date constitutes acceptance.