DeployBeacon privacy notice
How Fleeta Limited uses information when you visit DeployBeacon, create an account or use a workspace. Updated: 5 October 2026.
Who is responsible
Fleeta Limited is the controller for DeployBeacon account, security and business information. Our registered office is 50 Princes Street, Ipswich, England, IP1 1RJ. Email hello@deploybeacon.ai with a privacy request. For content or form messages a customer collects on their own website, that customer determines its purposes; contact the website operator about that information.
Information and purposes
We use your name, email, workspace membership, account settings, uploads and service activity to create and operate your account and provide the hosting you request. This processing is necessary to perform our agreement with you. Passwords are stored as hashes, and verification links and recovery mechanisms are protected rather than exposed in normal dashboard responses.
We process sign-in events, network addresses, device and browser information, security checks and audit events to protect accounts, prevent abuse and investigate failures. Our lawful basis is our legitimate interest in operating a secure service. We use correspondence to answer support requests, and retain records needed to meet legal obligations or resolve disputes. We do not use signup acceptance as consent to marketing.
Cookies and browser checks
Essential cookies maintain your sign-in session, protect against forged requests and remember a recognised device for security checks. Session and recognised-device cookies have a seven-day lifetime; server checks can revoke access earlier. Cloudflare Turnstile checks relevant submissions for abuse. These security measures are required for protected account actions.
Hosted-site analytics use request information and aggregates without analytics cookies. Website paths can contain personal information: avoid placing personal details in URLs. Customer websites may add their own cookies or external services and must explain those separately.
Who receives information
Authorised members of your workspace can access information according to their roles. Publicly published website files are available to visitors; anyone holding a private-preview bearer link can use it until expiry or revocation. Share these links carefully.
Infrastructure and security providers process information needed to operate the service, including our OVH-hosted server and Cloudflare's network and abuse-protection services. Microsoft provides our service email. If you choose a payment or registrar service when it is available, the named provider receives information needed for that transaction; its checkout and privacy information explain its own role. We may disclose information where required by law or necessary to address abuse or protect legal rights.
Providers may process information outside the UK. Where a restricted transfer requires safeguards, we must use an applicable adequacy decision or approved contractual safeguards. Contact us for information about the safeguards applicable to your data.
Retention and deletion
Account information and retained website files remain while needed to provide your account, subject to the deletion and recovery controls shown in the dashboard. Retired extracted releases and scheduled upload removals have a seven-day recovery period before eligible cleanup. This does not instantly erase copies from encrypted backups.
Sign-in activity is retained for 90 days. Audit network addresses are cleared after 30 days; ended sessions have their raw network and browser details cleared by maintenance. Hosted-site per-request logs are retained for 7 to 30 days according to plan, and hourly aggregates for 90 days. Finished email-delivery receipts are retained for 30 days; expired account challenges are cleaned after seven days. Processing and backup schedules can delay final removal. We retain records longer where required for a legal obligation or an unresolved security incident or claim.
Your rights and complaints
Depending on the circumstances, you can request access, correction, deletion, restriction or a portable copy of personal information, and object to processing based on legitimate interests. We may need to verify your identity and explain any lawful reason a request cannot be fulfilled. If processing relies on consent, you may withdraw it without affecting earlier lawful processing.
You can complain to the Information Commissioner's Office. We would also welcome the chance to address your concern directly. We will update this notice when our processing changes and communicate material changes where appropriate.
Explore the product and guides
Access is invitation-only. No payments are collected during the private beta. Sign in to your invited workspace.