Privacy Policy

Effective 15 August 2026 · Cyber Edge Consulting (Pty) Ltd · Reg K2025262829

This policy explains what NetBuddy collects, why, and what you can do about it. It is written to comply with the Protection of Personal Information Act, 2013 (POPIA). Cyber Edge Consulting (Pty) Ltd is the responsible party for the information described here.

1. Information we collect

We collect only what the product needs to function:

  • Account details — your email address and, if you provide it, your full name and company. Used to authenticate you and to associate your data with your account.
  • Network data you create — sites, devices, scan results, alerts, generated configurations, packet-capture analyses, PoC assessments and speed-test results. This is produced by your own use of the product.
  • Integration credentials — API keys you choose to store for third-party systems such as Meraki or Palo Alto.
  • Technical logs — errors and diagnostic information needed to keep the service running and secure.

We do not sell your information, and we do not use it to build advertising or marketing profiles.

2. How your information is stored

Your data is held in a managed PostgreSQL database operated by Supabase, encrypted at rest and in transit (TLS). Every table enforces row-level security: queries are scoped to your authenticated user ID, so one account cannot read another account's records.

Integration credentials are stored against your account and are transmitted only to the vendor system they belong to.

We keep your information for as long as your account is active. When you delete your account, the associated records are deleted with it; backups age out on a rolling cycle.

3. AI processing

Features described as AI-assisted — the CCIE Agent, capture diagnosis, configuration review, PoC assessment and speed-test analysis — send the relevant context of your request to a third-party large language model provider for processing. Only the data needed to answer that specific request is sent. It is not used to train third-party models.

4. Sharing

We share information only with the operators who run the service on our behalf — our database and hosting providers, and the AI provider described above — and only to the extent needed to deliver the product. We may disclose information where the law requires it.

5. Your rights under POPIA

You have the right to:

  • Ask what personal information we hold about you, and request a copy of it.
  • Have inaccurate or incomplete information corrected.
  • Ask us to delete information we no longer have grounds to keep.
  • Object to processing, and withdraw consent where processing relies on it.
  • Lodge a complaint with the Information Regulator of South Africa if you believe your rights have been infringed.

Most of these you can exercise directly in the product from the Settings page. For anything else, contact us and we will respond within a reasonable period.

6. Security

We use encrypted transport, row-level database isolation, and scoped authentication tokens. No system is perfectly secure — if a breach affects your personal information, we will notify you and the Information Regulator as POPIA requires.

7. Changes to this policy

If we change this policy materially, we will update the effective date above and notify account holders.

8. Contact us

For any privacy question, request or complaint, email support@cyberedgec.co.

Cyber Edge Consulting (Pty) Ltd · Registration K2025262829 · cyberedgec.co