We use cookies to ensure you get the best user experience on our website.Find Out More
Built with privacy by design. Protecting developer and end-user data at every layer.
Logical tenant scoping • Self-Hosted option available for private networks
We apply cryptographic protection to ensure your application telemetry, screenshots, and crash data remain secure during transmission and while stored.
All communication between client applications, web browsers, and Shakebug API endpoints is encrypted using standard HTTPS/TLS protocols.
Shakebug stores data in a database encrypted at rest to safeguard stored bug reports, crash logs, and telemetry.
Bug or crash occurs in your app. Telemetry is gathered locally.
Sensitive headers excluded & screen elements blurred if needed.
Encrypted transmission over HTTPS / TLS to Shakebug gateway.
Payload verified and scoped to your Project & Account ID.
Stored in AES-256 encrypted production database.
Ensure sensitive customer inputs and private credentials are kept safe with built-in developer and user privacy controls.
Shakebug enables end-users and testers to redact sensitive information before submitting a bug report.
Prevent internal tokens and credentials from being unintentionally captured in network diagnostic logs.
Authorization, Cookie, or Token)Configure privacy and header exclusion options across platforms:
Initialize Shakebug with privacy controls in iOS:
// Initialize Shakebug with privacy & network filtering
let config = ShakebugConfig()
config.redactedHeaderKeys = ["Authorization", "Cookie", "X-Api-Key"]
// Screen blur and annotation are available to users prior to submission
Shakebug.shared.start(withKey: "YOUR_APP_KEY", config: config)
Configure Android SDK privacy and header exclusions:
// Initialize Shakebug Android SDK with header exclusions
val config = ShakebugConfig.Builder()
.addRedactedHeaders(listOf("Authorization", "Cookie", "Bearer"))
.build()
Shakebug.init(applicationContext, "YOUR_APP_KEY", config)
Flutter SDK privacy and telemetry configuration:
import 'package:shakebug/shakebug.dart';
// Wrap your app with ShakebugSDK; users can blur & redact sensitive screen areas
ShakebugSDK(
androidAppKey: 'YOUR_ANDROID_APP_KEY',
iosAppKey: 'YOUR_IOS_APP_KEY',
allowToReportBugByShakingMobiles: true,
allowCrashReport: true,
child: const MyApp(),
);
React Native privacy configuration:
import { Shakebug } from 'shakebug-react-native';
Shakebug.start("YOUR_APP_KEY", {
redactHeaders: ['Authorization', 'Cookie'],
enableScreenBlur: true
});
Web JavaScript SDK privacy options:
import { Shakebug } from '@shakebug/web';
Shakebug.init({
apiKey: 'YOUR_APP_KEY',
redactedHeaders: ['Authorization', 'Cookie'],
maskSensitiveFields: true
});
Maintain full governance over your telemetry lifecycle with transparent retention windows by subscription tier and on-demand deletion mechanisms.
Shakebug manages telemetry retention based on your active subscription plan:
Manage and delete data whenever needed to comply with user requests or internal retention policies:
| Plan Tier | Data Retention | Hosting Infrastructure | Data Deletion Controls | Export Options |
|---|---|---|---|---|
| Basic (Free) | 10 Days | Managed Cloud | Dashboard UI Controls | CSV / PDF |
| Standard | 90 Days | Managed Cloud | Dashboard UI Controls | CSV / PDF / Integrations |
| Premium | 180 Days | Managed Cloud | Dashboard UI Controls | CSV / PDF / Integrations |
| Enterprise | Custom (Up to 365+ Days) | Cloud or Self-Hosted On-Premise | Dashboard + Support Assistance | Bulk Export & Custom Integrations |
Built with logical multi-tenant data boundaries, GDPR alignment, and a clear roadmap for security certifications.
In our cloud environment, customer records share a secure multi-tenant database partitioned by logical access boundaries.
Shakebug is actively aligning its engineering and organizational processes with the SOC 2 Trust Services Criteria.
Need a signed Data Processing Addendum for GDPR or CCPA compliance? Shakebug provides a standardized DPA with Standard Contractual Clauses (SCCs). Our team reviews and executes DPAs with customers upon request.
Yes. All data transmitted between user devices, browsers, and Shakebug endpoints is encrypted in transit over HTTPS using standard TLS (TLS 1.2 and TLS 1.3). Telemetry and user records stored in Shakebug's production database and cloud storage are encrypted at rest using AES-256.
Shakebug provides developer-level and user-level privacy controls. In-app reporting allows users to blur sensitive visual areas (such as passwords, payment details, or personal information) on screenshots before submitting. Developers can also filter out sensitive HTTP request headers (like Authorization tokens and session cookies) from network logs.
In Shakebug's managed cloud service, customer data is stored in a multi-tenant database where every record is logically isolated and strictly scoped to your Organization and Project ID. For enterprises requiring complete physical infrastructure and database isolation, Shakebug provides a dedicated Self-Hosted / On-Premise deployment option that runs entirely inside your own private network.
Data retention follows your subscription tier: Basic (Free) retains telemetry for 10 days; Standard retains telemetry for 90 days; Premium retains telemetry for 180 days. For Enterprise customers, retention windows can be customized, or data can be kept indefinitely when self-hosted on your own infrastructure.
Customers can delete bug reports, crashes, or projects directly from their Shakebug dashboard. Account holders can also permanently delete their entire account via Profile > Danger Zone > Delete My Account. For end-user data subject deletion requests, customers or end-users can email support@shakebug.com and our team will process the erasure.
Shakebug provides a standard Data Processing Addendum (DPA) incorporating Standard Contractual Clauses (SCCs) to support GDPR and CCPA obligations. If your legal team requires an executed DPA, simply email support@shakebug.com with your organization details. Our team will review, countersign, and return the executed agreement.
Shakebug is actively working toward SOC 2 alignment as part of our continuous security roadmap. We follow established security best practices including regular code reviews, automated dependency and vulnerability scans, and strict internal role-based access control.
Get started with our free plan or talk to our team for custom enterprise requirements.
No credit card required • Encrypted in Transit & at Rest