Sign inGet Control

Privacy Policy

Last updated July 2026

Draft — pending legal counsel review. This document has not yet been reviewed by a lawyer and should not be relied on as final until it has.

This Privacy Policy describes how Talon Labs ("Talon", "we") handles personal data in connection with talonlabs.dev, Talon Cloud, and the self-hosted Talon Studio software. It does not describe how the Talon Studio software itself handles your organization's security data — that is covered by the separate Data Handling Statement, since a self-hosted deployment never sends that data to us at all.

1. What we collect

Depending on how you interact with us, we may collect:

  • Account and contact data — name, work email, and organization, when you sign up for Talon Cloud, request a demo, join our waitlist, or contact us.
  • Billing data — handled by our payment processor (Stripe); we do not store full card numbers ourselves.
  • Product usage data (Talon Cloud only) — operational telemetry needed to run the service (uptime, error rates, resource usage per tenant). We do not access the contents of your detections, SIEM credentials, or security data as part of routine operation.
  • Website analytics — standard web server logs and, if enabled, privacy- respecting page-view analytics for talonlabs.dev.

Self-hosted Talon Studio does not transmit your organization's usage data, detections, or SIEM credentials to Talon Labs. The only outbound network calls a self-hosted instance makes by default are to pull public detection content updates (SigmaHQ, Atomic Red Team, etc.) and, if configured, to your own LLM provider for AI features — never to Talon Labs' servers.

2. How we use it

  • To provide, operate, and support Talon Cloud.
  • To respond to support requests and sales inquiries.
  • To send product and security updates relevant to your account (you can opt out of non-essential communications).
  • To detect and prevent abuse of our services.

3. Sharing

We do not sell personal data. We share it only with service providers who help us operate (e.g., cloud infrastructure, payment processing, email delivery), each bound by contractual confidentiality obligations, or where required by law.

4. Data residency (Talon Cloud)

Talon Cloud tenants are provisioned in a specific AWS region selected at signup. See the Data Handling Statement for the current region list and isolation model.

5. Retention

We retain account and billing data for as long as your account is active and as required for legitimate business or legal purposes afterward. Talon Cloud tenant data is deleted per the retention terms in your order form upon account closure.

6. Your rights

Depending on your jurisdiction, you may have rights to access, correct, or delete personal data we hold about you. Contact us to exercise these rights.

7. Contact

Privacy questions or requests: privacy@talonlabs.dev.