What Data We Collect
CloudNexus values your privacy and is committed to transparency regarding the data we collect, process, and retain. This page outlines the types of information we gather when you interact with our cloud infrastructure, hosting services, management portal, and support channels.
Note: We only collect data necessary to deliver, secure, and improve our services. You retain full ownership of your application data and customer data hosted on our infrastructure.
Data Collected Directly
We collect information you voluntarily provide when creating an account, purchasing services, or contacting support:
| Data Category | Examples |
|---|---|
| Identity Information | Full name, email address, phone number, company name |
| Account Credentials | Username, password hash, MFA backup codes |
| Payment Details | Billing address, invoice preferences, payment method tokens (processed securely via PCI-DSS compliant providers) |
| Support Interactions | Ticket content, attached logs, correspondence history |
Data Collected Automatically
When you access the CloudNexus control panel, API endpoints, or documentation sites, we automatically log technical and behavioral data to maintain service integrity and improve user experience:
- Device & Browser Info: IP address, user agent, operating system, language preferences, and screen resolution.
- Access Logs: Timestamps, URL requests, referrer links, and session duration.
- Cookies & Local Storage: Essential session cookies, authentication tokens, and optional analytics cookies (opt-in).
- Location Data: Approximate geographic location derived from IP address for routing and compliance purposes.
Infrastructure & Usage Data
As a cloud hosting provider, we monitor resource consumption to ensure performance, prevent abuse, and optimize capacity:
- Compute utilization (CPU, RAM, I/O metrics)
- Network traffic patterns and bandwidth consumption
- Storage allocation and snapshot frequency
- API call volume, rate limiting triggers, and authentication success/failure rates
- Deployment logs, container image pulls, and orchestration events
We do not inspect, store, or process the payload of your application traffic or customer data unless explicitly requested for security incident investigation.
Why We Collect It
Data collection serves specific operational and legal purposes:
- Service Delivery: Provisioning resources, maintaining SLA compliance, and ensuring platform stability.
- Security & Fraud Prevention: Detecting unauthorized access, mitigating DDoS attacks, and verifying account authenticity.
- Billing & Compliance: Generating invoices, adhering to tax regulations, and fulfilling contractual obligations.
- Product Improvement: Analyzing aggregate usage trends to optimize infrastructure and develop new features.
Security & Retention
We implement industry-standard safeguards including AES-256 encryption at rest, TLS 1.3 in transit, role-based access controls, and continuous vulnerability scanning. Data is retained only as long as necessary:
- Account & Billing Data: Retained for the duration of your relationship + 7 years for tax/legal compliance.
- Usage & Logs: Aggregated and anonymized after 12 months.
- Support Tickets: Archived for 3 years post-resolution.
You may request deletion or export of your data at any time through your account dashboard or by contacting our privacy team.
Your Rights & Choices
Depending on your jurisdiction, you may have the right to:
- Access, correct, or delete your personal information
- Restrict or object to certain processing activities
- Data portability in a machine-readable format
- Opt out of non-essential analytics tracking
- Withdraw consent where processing is consent-based
To exercise these rights, please contact us using the details below. We will respond within 30 days.
Contact Us
If you have questions about this policy, your data, or need assistance with your account, reach out to our dedicated privacy and support teams.
Get in Touch
100 Innovation Drive, Suite 400
San Francisco, CA 94105