- We collect hardware health data in order to monitor your PC.
- Your data is encrypted in transit and stored in the European Union.
- We do not access your personal files or documents.
- We do not sell your data to third parties.
Privacy Policy
We believe in transparency. This policy explains how TagPulse collects, uses, and protects your data.
Summary
The short version of this policy
How We Use Your Data
Everything we do is to help you maintain a healthy PC
- Monitor your hardware health and provide real-time alerts
- Detect anomalies and potential failures before they cause problems
- Display performance trends and insights in your dashboard
- Identify resource-heavy applications affecting system performance
- Detect unwanted software running on your device
- Improve our AI and machine learning models for better predictions
- Enhance our anomaly detection and health alert systems
Smart Insights & AI Analysis
Intelligent monitoring that learns your system
TagPulse uses advanced AI and machine learning to provide intelligent insights:
- Predictive alerts: Our AI analyzes patterns to warn you about potential issues before they become problems
- Performance recommendations: Smart suggestions to optimize your system based on usage patterns
- Security detection: Identification of malicious and unwanted software — including cryptominers that use your CPU or GPU in the background, and ransomware behaviour
- Health scoring: Overall system health assessment based on multiple factors
All AI analysis is performed to help you maintain a healthy, secure, and optimized computer. No personal content or private information is ever analyzed.
Malware detection stays on your PC. Cryptominer and ransomware detection runs entirely on your own computer. We never send your files, your filenames, or the contents of your folders. If a process is assessed as harmful, only the identity of that process leaves your machine — the same way an antivirus reports a detection. This is not a promise about intent: the software has no code path that uploads file or folder names.
Data Storage & Security
Your data is protected with industry-standard encryption
Your data is transmitted securely using encrypted connections (TLS/SSL):
- All data in transit is encrypted
- Cloud data is stored in secure, access-controlled environments
- We use trusted cloud infrastructure providers with strong security certifications
- Access to data is restricted to authorized personnel only
Local Data Storage
TagPulse stores monitoring data locally on your computer in an encrypted database. Your full monitoring history — sensor readings, process samples and system events — is held there for the period configured in your settings, and only a summary of it is transmitted to us.
- Remains on your computer and under your control
- Can be deleted at any time by uninstalling the software
- Enables offline access to your recent health data
The following identifiers are recorded on your device and are not transmitted as part of routine monitoring: the MAC address of your network adapter, your motherboard serial number, and your CPU identifier.
Your Rights
You're in control of your data
Under the GDPR, you have the following rights regarding your personal data:
- Right of Access: Request a copy of the personal data we hold about you
- Right to Rectification: Request correction of inaccurate or incomplete data
- Right to Erasure ("Right to be Forgotten"): Request deletion of your personal data, subject to legal retention requirements
- Right to Restriction: Request that we limit how we process your data
- Right to Data Portability: Receive your data in a structured, machine-readable format
- Right to Object: Object to processing based on legitimate interest
- Right to Withdraw Consent: Where processing is based on consent, withdraw it at any time without affecting prior processing
- Right to Lodge a Complaint: File a complaint with your local Data Protection Authority (DPA). In Greece, this is the Hellenic Data Protection Authority (hdpa.gr)
To exercise any of these rights, contact us at [email protected]. We will respond within 30 days as required by GDPR.
Information We Collect
System health data to keep your PC running smoothly
TagPulse monitors the health of your computer, and to do so it records information about how your machine is running. The following is transmitted to us from every installation:
- Hardware readings. CPU, GPU, memory, disk and temperature measurements, fan speeds and battery condition, used to detect faults before they cause a failure.
- Running programs. Which programs are running and the resources they consume. Routine monitoring transmits the program name only. Where a specific problem is identified, that report may additionally include the program's location on disk in order to identify it precisely.
- Startup programs. The applications that start with Windows, used to help you improve boot times.
- Windows events. Errors and warnings recorded by Windows, used to relate a fault to its cause.
- Disk health. SMART data reported by your drives, used to anticipate drive failure.
- Network information. Connection quality, the model of your network adapter, and the local network address assigned to your device (for example 192.168.1.5). This is the address used within your own home or office network.
- Computer name. The device name as reported by Windows.
- Name and company. The values you enter during setup, where you choose to provide them. These fields are optional and are stored exactly as you type them. They exist so that a fleet administrator can distinguish between machines.
- Device serial number. As reported by your BIOS or manufacturer, used to identify the specific device.
- Approximate region. City and country, derived from your IP address. Used for regional grouping and to establish temperature baselines appropriate to your climate.
- Technical identifiers. A device identifier, your Windows Product ID, and your Windows and TagPulse version numbers.
- Installed software. The programs installed on your device and recent changes to them, used to identify software that causes instability.
Remote-support connection identifiers
Some devices have remote-support software installed — the kind that lets an administrator or technician connect to a computer with the user's permission. Where such software is present, TagPulse reads the connection identifier it assigns to your device.
Devices are normally added to a fleet some time after they have been set up, so the identifier is read during installation rather than at that later point. Its only use is to fill in the connection shortcut shown on the fleet dashboard.
TagPulse does not read the passwords used by that software, and does not initiate or accept connections. Your remote-support software continues to request your permission in the normal way.
Diagnostic information after an unexpected stop
If the TagPulse background service stops unexpectedly, it may transmit a snapshot of its own memory together with its recent log files, so that the fault can be diagnosed.
This snapshot relates to the TagPulse process only. It contains the information the software was holding at that moment, including sensor readings, its own records relating to your device, and text taken from Windows event messages, which may include file paths. It does not contain the contents of your documents, your browsing activity, or information belonging to any other application, as TagPulse does not have access to those. Because it is a memory snapshot rather than a routine report, it may also contain the identifiers described under Local Data Storage above.
Information we do not collect
We do not collect your files or documents, your browsing history, your passwords, your email or messages, your keystrokes, or images of your screen. TagPulse does not read the contents of anything you write, open or visit.
For Business Users (Fleet Management)
Enterprise-grade monitoring for organizations
When your organization uses TagPulse Fleet Management, system health data is securely transmitted to our cloud infrastructure. Authorized administrators can view:
- Hardware health status across all enrolled devices
- Alerts about potential issues before they cause downtime
- System performance trends and analytics
- Regional distribution of devices for fleet overview
- Resource usage patterns to identify optimization opportunities
- A shortcut to start a remote-support session, where a supported remote-support tool is installed on the device (see Information We Collect above)
Administrators only have access to devices enrolled under their organization. Data is segregated between different organizations and cannot be accessed by unauthorized parties.
Where TagPulse is used by an employer, that organisation is responsible for informing its staff and for compliance with local employment law.
For business customers, our processing on your behalf is governed by our Data Processing Agreement, which sets out our obligations under Article 28 GDPR, the technical and organisational measures we apply, and the full list of sub-processors.
Data Retention
How long we keep your information
- Local data: Retained on your device until you uninstall TagPulse or manually clear it. Default retention is 30 days for detailed metrics, configurable in settings
- Cloud data (Fleet): Retained while your subscription is active, and afterwards for as long as it remains necessary for the purposes described in this policy — in particular maintaining and improving our hardware-failure detection and prediction models. Long-run history is what allows those models to tell normal ageing apart from an early warning sign, so we do not set a fixed short deletion window. You can request erasure of your data at any time (see Your Rights) and we will act on it; we also review retention periods at least annually and remove what is no longer needed
- Account data: Retained for the duration of your account. Deleted within 30 days of account deletion request
- Payment records: Retained for 7 years as required by tax and accounting regulations (processed by Paddle)
- Aggregated analytics: May be retained indefinitely in anonymized, non-identifiable form to improve our services
- Newsletter data: Retained until you unsubscribe. Unsubscribe link is included in every email
Anonymized & Aggregated Data
Non-identifiable data used to improve our models and benchmarks
TagPulse may anonymize and aggregate hardware telemetry data collected from your device in a form that cannot identify you or your device. This anonymized data may be retained indefinitely and used to improve our AI and machine learning models, develop benchmarks, analyze hardware failure trends, and enhance our anomaly detection systems. Because anonymised data can no longer be linked to you or your device, it falls outside the scope of GDPR access and erasure rights.
Legal Basis for Processing
Why we are permitted to use your data (GDPR Article 6)
Under the General Data Protection Regulation (GDPR), we process your data based on the following legal grounds:
- Legitimate Interest (Art. 6(1)(f)): Hardware monitoring, anomaly detection, and performance analysis — this is the core service you install TagPulse to provide
- Legitimate Interest (Art. 6(1)(f)) — security: Detecting malicious and unwanted software on your device, including cryptominers and ransomware. Processing strictly necessary to ensure network and information security is expressly recognised as a legitimate interest in Recital 49 GDPR. Detection runs locally on your PC; only the identity of a process assessed as harmful is transmitted. We have carried out and documented a balancing assessment for this processing, and you may object to it at any time under Art. 21
- Contract Performance (Art. 6(1)(b)): Processing necessary to deliver Fleet Management services to paying subscribers
- Consent (Art. 6(1)(a)): Newsletter subscriptions and optional analytics — you can withdraw consent at any time
- Legal Obligation (Art. 6(1)(c)): Where required to comply with applicable laws (e.g., tax records for paid subscriptions)
Cookies & Tracking
How we use cookies on our website
Our website (tagpulse.ai) uses the following cookies and tracking technologies:
- Essential sign-in storage (always active): When you log in to the Fleet dashboard or the forum, your session is stored on your own device (in browser local storage, not a cookie) so that you stay signed in. It is strictly necessary for those features to work, is never used for tracking or advertising, and is cleared when you sign out.
- Google Analytics (only with your consent): Helps us understand how visitors interact with our website — pages visited, time on site, referral source. No cookies are set and no data is sent until you accept.
- Google Ads conversion measurement (only with your consent): Lets us see whether a visit that came from one of our ads led to a download, so we can measure our advertising. No cookies are set and no data is sent until you accept.
- Microsoft Clarity (only with your consent): Records anonymised interaction data (clicks, scrolling, general navigation patterns) so we can see where the site confuses people. It is not loaded at all unless you accept.
- Google reCAPTCHA (security — runs without consent, on two pages only): Our contact and password-reset forms use reCAPTCHA to stop automated abuse. It sets a cookie and sends interaction signals to Google. Because those forms are unusable if we cannot filter bots, this runs under our legitimate interest in security (Art. 6(1)(f), Recital 49) rather than consent — it is never used for analytics or advertising, and it loads on no other page.
Your choice, and how to change it. On your first visit we ask before setting anything. Until you accept, the analytics and advertising services above are held in a denied state — they set no cookies and receive no identifying data. Choosing Accept essential only is offered as plainly and in as few clicks as accepting everything, and it stores nothing on your device beyond the record of that choice. You can change your mind at any time using the Cookie Settings link in the footer of every page.
Desktop application. The TagPulse desktop application does not use cookies. It communicates with our servers using encrypted API calls with authentication tokens.
Third-Party Services
Trusted partners we work with
- Cloud Infrastructure: We use secure cloud providers to store and process data
- Analytics & advertising measurement: Google Analytics, Google Ads conversion measurement and Microsoft Clarity run on our website only after you accept them — see Cookies & Tracking above
- Payment Processing: Paddle.com acts as our Merchant of Record for all paid subscriptions. When you purchase a Fleet subscription, Paddle processes your payment and handles billing. Paddle's privacy policy applies to payment data: paddle.com/legal/privacy
- Threat intelligence (Team Cymru, United States): When a process on your device is flagged as potentially malicious, TagPulse checks its SHA-256 hash — a one-way fingerprint of the file, from which the file cannot be reconstructed — against the Team Cymru Malware Hash Registry. This is the same class of reputation lookup antivirus products perform. The lookup is made over DNS, so your network provider can see that a lookup occurred. No file content, filename, path, or personal data is sent — only the hash of a file already suspected of being malware, and only for files that were flagged
- Email services: If you sign up for notifications, your email is stored securely
No data sales. We do not sell your data to third parties.
Data Controller
Who is responsible for your data
TagPulse is operated by AFOI KALOFORIDI OE ("we", "us", "our"), a company established in Greece, European Union. As the data controller, we determine how and why your personal data is processed.
AFOI KALOFORIDI OE
Chr. Smirnis 67
151 21 Athens
Greece
Company registration (Γ.Ε.ΜΗ.): 069222103000
VAT number (Α.Φ.Μ.): 999267630
For any privacy-related inquiries:
- Email: [email protected]
- Website: https://tagpulse.ai/contact
Additional Information
Other important details
Children's Privacy
TagPulse is not directed at children under 13 years of age. We do not knowingly collect personal information from children.
International Data Transfers
Your monitoring data stays in the European Union. Our database and application servers are hosted by Hetzner Online GmbH in Nuremberg, Germany. We run our own database there — your hardware telemetry, fleet data, and account records are stored and processed inside the EU.
A limited number of services we rely on are based outside the EEA, and only the data described below reaches them:
- Team Cymru (US) — the SHA-256 hash of a file already flagged as potentially malicious. No file, filename, or personal data (see Third-Party Services)
- IP-geolocation providers — your device's public IP address, in order to return an approximate city/country. Used for regional grouping and to set climate-appropriate temperature baselines
- Cloudflare — operates our DNS, network tunnel and download distribution; it handles connection metadata such as your IP address in transit
- Paddle — payment and billing data, under its own safeguards described in its privacy policy
- Google and Microsoft — only for the website analytics and advertising measurement described above, and only if you accept them
Where those transfers involve personal data leaving the EEA, we rely on the European Commission's Standard Contractual Clauses (SCCs) and, where the recipient is certified, the EU-U.S. Data Privacy Framework.
Changes to This Policy
We may update this Privacy Policy from time to time. For material changes, we will notify you via email (if you have an account) or through a prominent notice on our website at least 14 days before the changes take effect. We will never reduce your privacy protections without your explicit consent.
Questions About Privacy?
If you have questions about this Privacy Policy or our data practices, please contact us.
Contact Us