Privacy

Limited data for controlled browser access

BusinessProxy does not sell browsing data or use it for advertising. We process limited technical data to operate managed-browser proxy sessions, enforce limits and policy, prevent abuse, diagnose incidents, support paid checkout when used, and comply with valid legal obligations.

Boundary

Service boundary

BusinessProxy is a controlled browser access service. The browser-proxy path is not a device-wide VPN and does not inspect HTTPS page content. It uses domain, port, policy and category metadata to route, limit and filter traffic.

Private App Access

Layer-7 alias path

Private App Access uses a Layer-7 alias/reverse-proxy path. That path relays full HTTP requests and responses, including method, path, headers and bodies, between the browser and your connector. Request and response bodies pass through in transit and are not intentionally logged or retained by BusinessProxy.

Data classes

What is processed

Data typeWhy it is processedRetentionShared with
Account email and verification stateLogin, email verification, workspace membership and account support.While the account is active, then according to account deletion and backup policy.Email delivery and infrastructure providers.
Device ID and proxy session IDSession issuance, heartbeat, revoke, quota enforcement and abuse prevention.Session-linked usage events follow the retention policy; session records are kept while needed for account operation unless deletion is requested and legally available.Infrastructure providers only.
Traffic volumeTraffic limits, billing state, capacity planning and quota cutoff.Usage events: 30 days by default.Infrastructure providers; Robokassa when paid checkout is used.
Destination domain, port and policy/category resultPolicy filtering, blocked-event analytics and abuse prevention.Blocked events: 30 days by default.Infrastructure providers; local versioned category feed.
Workspace audit eventsAccountability for workspace, connector, private app and admin actions.180 days by default.Infrastructure providers only.
Admin/audit IP address, where capturedSecurity, abuse triage and audit accountability.Same as the related audit event.Infrastructure providers only.
Raw gateway/API service logsOperations, security triage and incident response.Short-term deployment log rotation.Infrastructure providers only.
Browser-proxy HTTPS page contentNot inspected on the browser-proxy path.Not applicable.Not applicable.
Private App request/response bodiesRelayed in transit on the Layer-7 alias path.Not intentionally logged or retained by BusinessProxy.Infrastructure providers involved in service transit.

Do you sell browsing data?

No. BusinessProxy does not sell browsing data or use it for advertising.

Do you inspect HTTPS content?

Not on the browser-proxy path. Filtering there is based on domain, port, policy and category metadata. Private App Access is different: the alias path is Layer 7 and relays full HTTP requests and responses in transit.

How do I request deletion?

Contact support@business-proxy.com from the email associated with your account. We verify the request before changing account or workspace data.

Questions about privacy or data requests? Contact support Log retention →