| Account email and verification state | Login, email verification, workspace membership and account support. | While the account is active, then according to account deletion and backup policy. | Email delivery and infrastructure providers. |
| Device ID and proxy session ID | Session issuance, heartbeat, revoke, quota enforcement and abuse prevention. | Session-linked usage events follow the retention policy; session records are kept while needed for account operation unless deletion is requested and legally available. | Infrastructure providers only. |
| Traffic volume | Traffic limits, billing state, capacity planning and quota cutoff. | Usage events: 30 days by default. | Infrastructure providers; Robokassa when paid checkout is used. |
| Destination domain, port and policy/category result | Policy filtering, blocked-event analytics and abuse prevention. | Blocked events: 30 days by default. | Infrastructure providers; local versioned category feed. |
| Workspace audit events | Accountability for workspace, connector, private app and admin actions. | 180 days by default. | Infrastructure providers only. |
| Admin/audit IP address, where captured | Security, abuse triage and audit accountability. | Same as the related audit event. | Infrastructure providers only. |
| Raw gateway/API service logs | Operations, security triage and incident response. | Short-term deployment log rotation. | Infrastructure providers only. |
| Browser-proxy HTTPS page content | Not inspected on the browser-proxy path. | Not applicable. | Not applicable. |
| Private App request/response bodies | Relayed in transit on the Layer-7 alias path. | Not intentionally logged or retained by BusinessProxy. | Infrastructure providers involved in service transit. |