Data protectionGDPR Policy

How Sparky Scout supports GDPR obligations for teams using the product in the European Economic Area, United Kingdom, or Switzerland.

Last updated: June 9, 2026
Roles

Sparky Scout generally acts as a processor for workspace content, integration tokens, indexed project records, and billing data provided by a customer or pulled from customer-approved tools.

The customer is the controller for its workspace data. Sparky Scout acts as an independent controller only for limited account, billing, support, and site-operation records.

Lawful Basis

We process customer data to provide the service, maintain security, complete billing, support onboarding, and honor deletion or access requests.

Where we are a controller, our lawful bases may include contract performance, legitimate interests in operating and securing the service, legal obligations, and consent where required.

Data Subject Requests

Customers can request access, correction, deletion, restriction, export, or objection support by contacting support@sparkyscout.com.

We verify the requester and coordinate with the workspace owner before disclosing or deleting workspace data that may belong to an organization.

Deletion And Retention

Workspace deletion removes stored installation tokens, onboarding sessions, subscription records, provider configuration, indexed project content, and workspace-scoped memory unless retention is required for security, billing, or legal reasons.

We target completion of verified deletion requests within 30 days and keep only minimal audit records needed to prove the request was handled.

Transfers And Sub-processors

Sparky Scout uses infrastructure and service providers listed on the Sub-processors page. These providers may process data in the United States and other regions where they operate.

For enterprise customers, a data processing addendum can be reviewed during onboarding.