Legal

Privacy Policy

This English version is provided for convenience. If it differs from the Japanese version, the Japanese version prevails. SHANNON LIMITED LIABILITY COMPANY (“we”) handles personal information collected through Webhook Admin (the “Service”), a webhook delivery service, as follows.

1. Information we collect

  • Account information: email address, name (if you set one), organization name, display language and theme. If you sign in with Google, GitHub or your organization’s single sign-on, the account identifier and email address; if you register a passkey, its public key
  • Usage information: sign-in times, when API keys were created and last used, API request logs (time, method, path, result, key prefix), dashboard audit logs, message counts
  • Message content: payloads sent through the API, endpoint URLs, and the first 1,024 bytes of endpoint responses
  • Alert destinations: Slack, Teams and webhook URLs, Chatwork tokens and email addresses you register
  • Payment information: card details are held by our payment processor (Stripe), not by us. We keep the customer ID and plan needed for billing
  • Inquiries: what you enter in the contact form
  • Technical information: IP addresses (used to rate-limit sign-in emails)

2. How we use it

  • Providing the Service, authentication, charging and billing
  • Counting messages, enforcing limits, and notifying you (approaching limits, expiring API keys, failing endpoints)
  • Detecting and handling incidents, and preventing abuse
  • Responding to inquiries
  • Improving the Service. We never use payloads to train machine learning models

3. Payloads

Payloads you send are used only to deliver them to endpoints and to show delivery logs. Payloads and delivery logs are deleted month by month once the month is past your plan’s retention period (Free 7 days, Starter 30 days, Pro and Business 90 days). API request logs are deleted after 30 days.

4. Sharing and processors

We do not share personal information with third parties except as required by law. We may use service providers, including ones outside Japan, to run the Service, and require appropriate security measures from them by contract.

5. Security

All traffic is encrypted. API keys and sign-in sessions are stored as hashes, so we cannot know the original values. Endpoint signing secrets and alert destinations are stored encrypted. Delivery logs are stored separately for each project environment.

6. Access, correction and deletion

You can ask us to disclose, correct or delete your personal information. Contact us; we respond within a reasonable time after verifying your identity.

7. Cookies and external resources

The Service uses cookies to keep you signed in. We use no advertising cookies and no third-party tracking. Page views are counted with Cloudflare Web Analytics, which uses no cookies. This site uses Google Fonts (Google LLC) to display text, which loads font data from Google’s servers when you view a page.

8. Changes

We may revise this policy when laws or the Service change. The revised policy applies from when it is posted on this page.

9. Contact

Company
SHANNON LIMITED LIABILITY COMPANY
Address
2-17-8 Ikebukuro, Toshima-ku, Tokyo 171-0014, Japan
Email
contact@shannon.co.jp

Effective: