Skip to main content

Privacy Policy

Last updated: September 2026

1. Introduction

Sentry is an AI data health tool operated by Sovarium Limited ("Sovarium", "we", "us", "our"), a company registered in England and Wales. This Privacy Policy explains what information we collect when you use Sentry, how we use it, and — the part most customers care about — exactly how much of your warehouse data ever leaves your infrastructure.

By using Sentry you agree to the collection and use of information in accordance with this policy. If you do not agree with it, please do not use the service.

2. Information we collect

2.1 Account information

  • Name and email address of each user in your organisation
  • Organisation name, timezone and scan schedule
  • Billing details, held by our payment processor (Stripe); we never see your card number
  • Warehouse credentials, encrypted at rest with AES-256-GCM under a key unique to the environment they were entered in

2.2 Monitoring configuration and results

  • Which tables you have selected to monitor, and each one's priority tier and sensitivity setting
  • Per-table baselines: load cadence, row-count history, null rates, value distributions and observed formats
  • Findings, including the diagnosis, the queries that produced it, and the sample values cited as evidence
  • Your triage actions — resolved, muted, marked expected — which feed back into the baseline

2.3 Usage data

  • Feature usage and audit events (who changed what, and when)
  • Device information, browser type and IP address

We use a single functional cookie, sentry_currency, to remember the currency resolved for your location so the price you are shown and the price you are charged agree. It holds one of three values and identifies no one.

3. How Sentry treats your warehouse

3.1 Read-only, always

Sentry diagnoses; it never writes. It connects using read-only credentials that you create and control, it issues only read queries, and it never attempts to fix anything it finds. This is a deliberate trust guarantee, not a default we might relax: the remedy for a finding is always a human decision.

3.2 What the AI agents see

Each check agent is given the narrowest view that lets it do its job:

  • Aggregates and metadata, not tables. Row counts, null shares, distribution statistics, distinct-key counts, column names and data types.
  • A small number of sample offending values where a finding is meaningless without them — for example the malformed values behind a Format finding. These are what appear as the finding's evidence in the dashboard and are retained under your plan's history window.
  • Never a bulk copy of your data. Sentry does not replicate, export or warehouse your rows. Queries run in your warehouse; only the aggregates, the samples described above and the agent's written diagnosis are stored.

3.3 Retention

  • Findings and scan history: retained for your plan's window — 14 days on Starter, 30 days on Pro, one year on Scale and Ultra — then deleted automatically.
  • Baselines: retained for as long as the table is monitored, because they are what the agents learn from. Removing a table removes its baseline.
  • Account data: retained for 90 days after an account is closed, then deleted.
  • Audit logs: retained for 5 years for security and compliance.

4. How we use information

  • Service provision: running nightly scans, producing findings, sending the morning digest
  • Baseline learning: improving the accuracy of the checks on your own tables, using your own history and your own feedback
  • Communication: service updates, security notices and support
  • Security: detecting and preventing abuse
  • Compliance: meeting legal obligations and enforcing our Terms & Conditions

We do not use your data, your schema or your findings to train third-party models, and we do not sell data to anyone.

5. Information sharing

We share information only in these limited circumstances:

  • Infrastructure providers: the platforms that host and route the service.
  • LLM providers: the model providers behind the check agents, which receive the aggregates, metadata and sample values described in section 3.2 — never a bulk extract.
  • Payment processing: Stripe, for subscriptions and invoices.
  • Email delivery: our email provider, to deliver the digest and account email.
  • Legal requirements: where required by law, court order or regulation.
  • Business transfers: in a merger, acquisition or sale of assets.

6. Your rights (UK GDPR / GDPR)

You have the right to request access to, rectification of, erasure of, restriction of processing of, and portability of your personal data, and to object to certain processing.

To exercise any of these rights, email sentry@sovarium.com.

7. International transfers

Your data may be processed in countries outside your own. Where we transfer personal data internationally we rely on appropriate safeguards, including Standard Contractual Clauses.

8. Cookies

  • Essential: authentication and session management in the app.
  • Functional: sentry_currency, described in section 2.3.

The marketing site sets no advertising or cross-site tracking cookies.

9. Security

  • TLS for all data in transit
  • AES-256-GCM encryption at rest for warehouse credentials
  • Separate encryption keys per environment, so a staging system can never decrypt production credentials
  • Read-only warehouse access, enforced by the credentials you issue
  • Role-based access control and audited administrative actions

No method of transmission or storage is completely secure, and we cannot guarantee absolute security.

10. Children's privacy

Sentry is a business tool and is not directed to anyone under 18. We do not knowingly collect personal information from children.

11. Changes to this policy

We may update this policy to reflect changes in our practices or the law, and will notify you of material changes by email or in the app. Continued use after a change takes effect constitutes acceptance.

12. Contact

  • Email: sentry@sovarium.com
  • Company: Sovarium Limited, 167-169 Great Portland Street, 5th Floor, London W1W 5PF, United Kingdom