Legal
Privacy Policy
Effective 1 January 2026
1. Data we never collect
PingCastle audits run entirely inside your network. Domain names, user accounts, group memberships, GPO contents and risk findings stay on the machine that ran the scan. No audit output is transmitted to us unless you deliberately attach a report to a support request.
2. Information you give us
If you download the tool, request a quote or send feedback, we store the email address and message you provide. We use it only to reply and to send release notes you asked for. You can ask for deletion at any time.
3. Cookies
We set one strictly necessary cookie to remember your consent choice, and — only if you accept — anonymous analytics cookies that count page views and download clicks. Declining keeps the site fully functional.
4. Retention
Support correspondence is kept for 24 months. Analytics data is aggregated after 14 months. Licence records are kept as long as legally required for accounting.
5. Your rights
Under GDPR you may request access, correction, portability or erasure of your personal data, and object to processing. Write to privacy@pingcastle.example and we will answer within 30 days.
6. Changes
Material changes to this policy are announced on this page with a new effective date. Continued use of the site after that date constitutes acceptance.