Privacy Policy
This Privacy Policy explains how SubScope ("SubScope"), operated by Vyoogam Private Limited ("we," "us," or "our"), collects, uses, stores, and shares information when you visit subscope.work, join our waitlist, create or use a workspace, or otherwise interact with our services (collectively, the "Service").
By using the Service, you agree to this Privacy Policy. If you do not agree, please do not use the Service.
1. Who we are
SubScope is a credential-governance and API spend visibility product operated by Vyoogam Private Limited at subscope.work. For privacy questions, contact us at hello@vyoogam.com.
2. Information we collect
Account & workspace information. When you request access, sign up, or are invited to a workspace, we may collect your name, email address, workspace subdomain, role, and related account metadata.
Credentials & integration data you connect. To provide the Service, you may store API keys, tokens, or references to secrets held in your own vaults. We treat these as sensitive. Where SubScope stores secrets, they are encrypted at rest. Where you use bring-your-own-vault integrations, SubScope may store a reference rather than the secret itself.
Usage & telemetry from connected providers. The Service may fetch and store quota, spend, usage, and health metadata from vendors you connect (for example AI, security, and cloud providers), solely to display and govern that information inside your workspace.
Optional local telemetry (SDK). If you opt into SubScope’s local telemetry / attribution tooling, we may receive aggregate usage counters and bounded identifiers you configure. We do not intend to collect prompts, source code, file paths, or other content from that channel.
Website & operational logs. We may collect IP address, browser/user-agent, pages visited, referrer, and diagnostic logs needed to operate, secure, and debug the Service. Waitlist submissions include the email (and optional workspace preference) you provide.
3. How we use information
- Provide, operate, secure, and improve the Service
- Create and administer workspaces, accounts, roles, and access controls
- Fetch and display vendor usage/spend/quota data you authorize
- Detect abuse, fraud, leaks, or security incidents
- Communicate about access, product updates, and support
- Comply with law and enforce our Terms of Service
We do not sell your personal information.
4. How we share information
We may share information only as needed to run the Service, including:
- Infrastructure providers that host or process data on our behalf under contractual obligations
- Vendors you connect, when the Service calls their APIs using credentials you supply
- Workspace members with appropriate roles inside your tenant
- Legal / safety, when required by law or to protect SubScope, our users, or the public
- Business transfers, if we are involved in a merger, acquisition, or asset sale, subject to appropriate safeguards
5. Tenant isolation & security
SubScope is designed around per-workspace isolation. Workspaces use dedicated database schemas and encrypted storage for secrets. You remain responsible for safeguarding your login credentials, admin keys, CMEK/BYOK material, and vault credentials.
No method of transmission or storage is perfectly secure. We work to protect information with industry-standard controls, but we cannot guarantee absolute security.
6. Data retention
We retain account, workspace, and operational data for as long as your workspace remains active and as needed to provide the Service, resolve disputes, enforce agreements, and meet legal requirements. You may request deletion of account or waitlist data by contacting hello@vyoogam.com, subject to legitimate retention needs (for example security logs or legal holds).
7. Cookies & similar technologies
We use cookies and similar technologies that are necessary for authentication, session continuity, security, and basic product function. We do not use third-party advertising cookies on the marketing site for behavioral ads.
8. International transfers
The Service may be hosted or processed in jurisdictions other than where you live. Where we transfer personal information internationally, we take steps designed to protect it in accordance with this Policy.
9. Your choices
- Update or correct account profile information inside your workspace where available
- Revoke or rotate API credentials and disconnect integrations
- Request access, correction, or deletion of personal information we hold about you
- Opt out of non-essential product emails by following unsubscribe instructions or contacting us
10. Children
The Service is not directed to children under 16, and we do not knowingly collect personal information from them. If you believe a child has provided us information, contact us and we will take appropriate steps to delete it.
11. Changes
We may update this Privacy Policy from time to time. We will post the updated version on this page and revise the “Last updated” date. Continued use of the Service after changes become effective constitutes acceptance of the updated Policy.
12. Contact
Questions about privacy: hello@vyoogam.com