What PacketSafari processes
PacketSafari is operated by Ripka Technologies S.L. in Valencia, Spain. The service processes the information needed to provide accounts, billing, support, security, packet analysis, and enabled AI-assisted features.
Customer data can include:
- account, workspace, support, and billing information
- uploaded packet captures and related files
- decoded output, searches, findings, reports, and investigation history
- prompts, selected packet context, model output, and transcripts when AI features are used
- authentication, audit, request, and security events
Packet captures can contain identifiers, credentials, communications, or other personal data in packet metadata and payloads. Customers must have authority to capture, upload, and analyze the network data they provide.
Privacy controls in place
| Control area | PacketSafari control | Status |
|---|---|---|
| Access control | MFA, roles, capture authorization, session timeout, and revocation restrict access to customer content | Implemented |
| Data inventory | Account, capture, analysis, AI-interaction, support, billing, audit, and security data categories are documented | Implemented |
| Rights requests | A published request channel covers access, correction, deletion, restriction, objection, and portability | Operational |
| Retention and deletion | Account content is removed from the live system on account deletion unless a legal hold applies; backup copies rotate within three days | Operational |
| Security of processing | TLS, audit events, bounded packet access, incident procedures, and deployment-specific egress controls protect the data path | Implemented |
| Service providers | Current SaaS providers and optional customer-configured providers are publicly identified | Published |
| On-premises privacy | Customers control infrastructure region, storage, keys, retention, backup, disposal, egress, and private AI routing | Customer controlled |
Retention and deletion
Uploaded captures, derived analysis, and account-scoped investigation history remain available while the account exists. When the customer deletes the account, that content is removed from the live system unless a legal hold applies. Backup copies can remain for up to three days until normal backup rotation completes.
Billing, security, incident, support, and legal records can have separate retention periods where needed to meet contractual, security, tax, dispute, or legal obligations.
SaaS and on-premises responsibilities
In managed SaaS, PacketSafari operates the application and hosted data path. The current public service-provider list names AWS, hosting.de, Paddle, and OpenAI, plus optional providers that apply only when the corresponding feature is enabled.
In an on-premises deployment, the customer selects and operates the infrastructure location, storage, retention, backups, disposal, network egress, identity integration, and any private AI endpoint.
Your data-protection rights
Depending on applicable law, individuals can request access, correction, deletion, restriction, objection, or a portable copy of applicable personal data. Requests can be sent to contact@packetsafari.com or through PacketSafari support. We may verify identity before completing a request.
Read the full Privacy Policy, GDPR and Data Rights page, and Subprocessor list. Contractual terms, including any DPA, are confirmed for the service and deployment being purchased.
