PacketSafari Trust Center
Security facts.Plainly stated.
A concise view of where capture data lives, which controls protect it, when providers are involved, and who operates each boundary.
- Managed data region
- EU or US Customer selected
- Encryption boundary
- TLS + EBS Transit, volumes, snapshots
- Backup rotation
- 3 days After live-system deletion
- AI request context
- Bounded Not a whole large capture
01 / Security
Controls you can verify.
MFA, authorization, encryption, release checks, and egress are shown with the operating boundary attached.
01Identity and access
02Encryption in transit
03Encryption at rest
04Software security
05Network egress
02 / Data flow
Follow the capture boundary.
The public frontend, managed capture path, optional AI path, and on-premises path stay visibly separate.
- 01Cloudflare PagesMarketing website only
No uploaded PCAP storage - 02EU or US regionApplication, captures
and backups - 03PacketSafariBounded processing
and evidence retrieval - 04Approved AIOptional selected context
or customer endpoint
01Public marketing website
02Application and capture data
03AI-assisted analysis
04Anoncap
03 / Service providers
Purpose before provider.
Each provider is tied to a specific service and data scope. Optional sign-in providers do not receive uploaded captures.
Amazon Web Services
Application hosting, encrypted storage and snapshots, and outbound product email through AWS SES.
Account data, PCAPs, analysis data, operational data, and email addresses as applicable.OpenAI
Primary hosted AI processing when managed cloud AI or an OpenAI-specific feature is enabled.
Selected bounded packet context, analysis results, prompts, and model outputs.OpenRouter and selected model provider
Optional gateway and underlying model for an administrator-selected, approved hosted AI route.
Selected bounded packet context, analysis results, prompts, and model outputs.PostHog
Consent-gated browser analytics plus limited product measurement and error diagnostics.
Account or contact details, usage and device metadata, and evaluation-upload metadata; not packet-capture contents in normal analytics events.Google Analytics
Consent-gated usage and interaction analytics for the public website and managed-SaaS frontend.
Routes, interaction events, browser and device data, and IP-derived metadata; not packet-capture contents.Slack
Internal service operations, customer communications, and support collaboration.
Contact or account details, support messages, and deliberately shared diagnostics; not packet captures in the core processing path.Cloudflare
Static hosting, delivery, TLS, availability, and security for the public website.
Visitor IP addresses, request URLs and headers, browser or device metadata, and delivery or security logs; not uploaded PCAPs.lemlist
Consent-gated website visitor tracking and sales outreach.
Visitor, contact, company, and campaign-interaction data where available; not uploaded PCAPs.Paddle
Checkout, subscriptions, payment processing, and billing activation.
Billing and subscription data; not uploaded PCAPs.hosting.de
PacketSafari mailbox infrastructure.
Support, operational, and contact email data.Contract and transfer details are maintained in the subprocessor and transfer summary.
04 / Retention and incident contact
Deletion has a defined clock.
Organization policy sets capture deadlines. Legal holds pause retention actions; on-premises customers set their own schedule.
Enterprise Shared SaaS
Archive eligible after 7 days; deletion scheduled at 14 days.
Configured by planEnterprise Dedicated SaaS
Archive eligible after 14 days; deletion scheduled at 30 days.
Configured by planOn-premises
Retention, disposal, backups, and recovery are set by the customer.
Customer-operatedScheduled retention processing records warning and purge audit events, honors legal holds, and applies configured grace periods. Live-system deletion can leave backup copies for up to three days while backup rotation completes.
Current posture
Framework information, without certification theatre.
PacketSafari publishes current posture pages for enterprise review. It does not currently have a SOC 2 Type I or Type II report, certification, or audit attestation.
