Privacy Policy
Last updated: 25 July 2026
This Privacy Policy explains how Volpe SAS ("Argonix", "we") collects and processes personal data when you use our websites and the Argonix Services. We are EU-based and host the Cloud Service in the European Union. If you self-host Argonix (Community or Enterprise), your operational data stays in your own infrastructure.
1. Who is responsible for your data
The data controller is Volpe SAS, [registered address]. For privacy questions or to exercise your rights, contact hello@argonix.io. [If applicable: our Data Protection Officer can be reached at the same address.]
2. What data we collect
- Account data — name, work email, organization, authentication data.
- Billing data — plan, and payment details handled by our payment processor (we do not store full card numbers).
- Usage & product telemetry — logs, feature usage and diagnostics needed to operate and secure the Cloud Service.
- Support communications — messages you send us.
- Website analytics — see the Cookies section below.
3. Cookies & website analytics
On our website we use Plausible, a privacy-friendly, cookieless analytics tool that collects only aggregated, anonymous traffic statistics — it is always on and does not track you across sites.
Only with your consent (via the cookie banner) do we additionally enable Google Analytics and Microsoft Clarity to better understand product usage. You can accept or decline these at any time; your choice is stored locally in your browser and you can change it by clearing site data or using the banner again. Essential storage needed to run the site and remember your consent is always used.
4. Customer & infrastructure data processed by the Service
When you connect systems to Argos, we process the data those connectors return (metrics, logs, configuration, findings, cost data, etc.) to provide the Service on your instructions. For this, we act as your processor and offer a Data Processing Agreement (DPA) on request. If you self-host (Community/Enterprise), this operational data is processed entirely within your infrastructure and is not sent to us.
5. AI processing
If you use the hosted AI option, prompts and the context Argos needs may be sent to the LLM provider you select, under that provider's terms. If you bring your own key or run a local model, AI processing happens under your own control. We do not use your data to train foundation models.
6. Legal bases (GDPR)
We process personal data to: perform our contract with you (providing the Services); comply with legal obligations; pursue legitimate interests (securing and improving the Services, basic anonymous analytics); and on the basis of your consent (optional analytics cookies), which you may withdraw at any time.
7. Sharing & sub-processors
We share data only with service providers acting on our behalf, including: Google Cloud Platform (hosting), Stripe (payment processing), Google Workspace (email/support), the analytics tools listed above, and — only if you enable hosted AI — Google Cloud Platform (Vertex AI / Gemini). A current list of sub-processors is available on request. We do not sell your personal data.
8. International transfers
The Cloud Service is hosted in the EU by default. Where a provider processes data outside the EEA, we rely on appropriate safeguards such as EU Standard Contractual Clauses.
9. Data retention
We keep personal data only as long as needed for the purposes above or as required by law. Account data is retained for the life of your account; operational logs and telemetry are retained per your plan's retention settings; billing records are kept as required by accounting rules.
10. Your rights
Subject to the GDPR, you have the right to access, rectify, erase, restrict or object to processing, and to data portability. Where processing is based on consent, you may withdraw it at any time. You may also lodge a complaint with your local supervisory authority. To exercise your rights, contact hello@argonix.io.
11. Security
We apply technical and organizational measures including encryption in transit and at rest, role-based access control, audit logging, and least-privilege access. In the event of a personal-data breach, we notify affected customers and authorities as required (within 72 hours under the GDPR where applicable).
12. Children
The Services are intended for organizations and professionals and are not directed to children. We do not knowingly collect data from anyone under 16.
13. Changes to this policy
We may update this Policy from time to time. Material changes will be communicated (e.g. by email or in-product), and the "last updated" date above will change.
Privacy questions? Contact hello@argonix.io — Volpe SAS, [registered address]. See also our Terms of Service.