1. Introduction

This Privacy Policy explains how LTFI Tech, LLC, a Massachusetts limited liability company and maker of the OpsPing service ("LTFI Tech," "OpsPing," "we," "us") collects, uses, stores, and shares information when you use the OpsPing on-call paging and alerting service, including the OpsPing mobile application and the website at ops-ping.com (collectively, the "Service"). This policy is effective as of August 2026.

2. Information We Collect

3. How We Use Information

We use the information above to: provide and operate the Service (including delivering alerts via push, email, and optional SMS/voice); manage accounts and authentication; maintain and improve the Service; communicate with you about the Service; and comply with legal obligations. We do not sell your personal information.

4. Subprocessors and Third-Party Sharing

We share personal data only with the following subprocessors, solely as needed to operate the Service:

We may also disclose information if required by law or to protect our rights and the safety of users. See the full subprocessor list for details.

5. Cookies and Analytics

Our website may use cookies for essential functionality (such as session management) and analytics. Analytics cookies are only loaded after you consent through our cookie banner; you may decline non-essential cookies without affecting core functionality. The mobile application does not use advertising cookies or trackers.

6. Data Retention and Deletion

7. Data Security

We host the Service on AWS and use industry-standard safeguards, including TLS 1.2+ encryption in transit, IAM-based access controls, and DynamoDB server-side encryption at rest using AWS-managed keys.

Current implementation: channel PII — specifically the on-call phone numbers and email addresses you provide — is currently stored without application-layer encryption in DynamoDB. DynamoDB's server-side encryption (AWS-managed keys) protects this data at rest at the infrastructure level, but the values are stored in plaintext at the application layer.

We disclose this so you can make an informed decision about the contact data you submit. We plan to add application-layer encryption for channel PII in a future release.

8. International Transfers

The Service is hosted in the United States. If you access the Service from outside the United States, your information will be transferred to and processed in the United States. For customers subject to EU/UK data protection law, transfers can be covered by Standard Contractual Clauses under a Data Processing Agreement — contact us for details.

9. Children's Privacy

The Service is not directed to, and may not be used by, anyone under the age of 18. We do not knowingly collect personal information from minors. If you believe a minor has provided us personal information, contact us and we will delete it.

10. Your Rights and Contact

Depending on your jurisdiction, you may have rights to access, correct, delete, or port your personal data, and to object to or restrict certain processing. To exercise any of these rights, or for questions about this policy, contact us at legal@ops-ping.com.

We may update this policy from time to time; material changes will be communicated through the Service or by email, and the updated policy will note a new effective date. Current effective date: August 2026.