Skip to content

Arcjet privacy

Arcjet is designed to process data primarily within your environment to minimize latency and reduce the amount of sensitive information sent to our systems. However, we do process some data remotely through our real-time Cloud API to enhance analysis and reporting.

Our privacy policy details the legal basis for data processing. This page provides additional technical details.

The Arcjet SDK uses a sandboxed WebAssembly module within your environment to analyze request details. Additionally, our real-time Cloud API processes some data for the following purposes:

  • Provide real-time analysis and decisions.
  • Enhance background analysis and reporting.
  • Display request details in your dashboard.

Arcjet processes the following request data remotely:

All other request data, including the request body, is processed entirely within your environment.

Arcjet retains data for 30 days to provide historical analysis, and retains aggregated data for longer to give you insights into your application’s traffic patterns.

Our API operates in multiple regions across various platforms to help provide low-latency responses. While we aim to process requests in the same region as your application, this is not guaranteed due to redundancy and failover mechanisms.

If you require data processing in a specific region, we offer a paid add-on. For more information, email support@arcjet.com.