Privacy & data flow
Exactly what stays local — and what doesn't.
No ambiguity: here is every category of data Cyentrix touches, and where it lives. The default is that sensitive data never leaves your network.
| Data | Where it lives | Notes |
|---|---|---|
| Scan targets you type | Cloud (as jobs) | The IPs/ranges you enter are stored as jobs so the node can pull them. |
| SSH / WinRM credentials | Node only | Stored and used locally for authenticated checks. Never transmitted to the cloud. |
| Raw scan traffic & evidence | Node only | Banners, packet-level output and raw tool results stay on the node. |
| Findings (sanitised) | Cloud | CVE, severity, host/port, remediation summary — synced so you can view and report. |
| PDF reports | Node (you choose to share) | Generated on the node; nothing leaves unless you export it. |
| Scan status & metadata | Cloud | Progress, timing and counts for tracking. |
| Account & billing | Cloud | Email, organisation, node registry, subscription and usage. |
Retention & control
You stay in control.
Delete a scan and its synced findings are removed from the console. Credentials and raw evidence are only ever on your node — remove the node and they're gone. We collect no analytics on your scan contents.