Privacy policy

PayloadTap stores the HTTP method, headers, query parameters, request body, content type, and receipt time sent to an endpoint so its private inspection link can display them.

Captured requests are retained for up to 7 days and may be deleted sooner when an endpoint reaches its free limit or its holder deletes it. Do not send passwords, payment card data, or other sensitive personal data to a temporary test endpoint.

Anonymous product analytics

To understand basic product usage, PayloadTap records page views, endpoint creation, successful webhook receipt, and inspection-page opens. These events contain the event type, time, and a random endpoint identifier where relevant. When present, UTM campaign labels are stored with a maximum of 100 characters each. Analytics events are deleted after 90 days and are removed sooner when the associated endpoint is deleted.

Product analytics does not use tracking cookies and does not store visitor IP addresses, user-agent strings, full referrer URLs, webhook payloads, or request headers. Hosting infrastructure may process connection data to deliver and protect the service.

Contact support@payloadtap.online for privacy questions.