Privacy Policy

Status: Final

Last updated: 2026-05-04

At Hoshebartar Technologies, we respect your privacy. This Privacy Policy explains how CostGuard collects, uses, stores, shares, and protects personal information when you visit our website, contact us, sign in to CostGuard, connect Microsoft Azure subscriptions, use reports and notifications, or interact with our support and Marketplace flows.

This Privacy Policy is intended to explain CostGuard's privacy practices in clear language. It does not replace any separate written agreement, Data Processing Addendum, Marketplace terms, or enterprise contract that may apply.

1. Who this policy applies to

This policy applies to: visitors to CostGuard public pages; people who contact Hoshebartar Technologies; users who sign in to CostGuard; workspace owners, administrators, members, and report recipients; customers who connect Azure subscriptions; customers who purchase or activate CostGuard through Microsoft Marketplace; and people who receive CostGuard reports, alerts, invitations, or support communications.

2. Information we collect

2.1 Account and identity information

We may collect name, email address, organization or company name, job title or role if provided, Microsoft Entra ID identifiers required for sign-in, tenant ID, user or object ID, and authentication or session metadata.

2.2 Workspace and team information

We may collect workspace name, workspace membership, user roles, invitations, preferences, language and notification settings, report recipients, and audit log information connected to workspace actions.

2.3 Azure connection and cost information

When a customer authorizes CostGuard to connect to Azure, CostGuard may collect Azure subscription and cost-management information needed to provide the service. This includes Azure tenant ID, Azure subscription ID, Azure subscription display name, cloud connection status, permission and consent status, sync status, Azure cost records, daily cost summaries, service cost summaries, cost trends, resource group, service, meter, region, or billing metadata when available from Azure cost data, import run metadata, and connection health metadata. CostGuard is designed to collect cost and subscription information required to provide cloud cost visibility, forecasting, recommendations, reports, and alerts. CostGuard should not require access to customer source code, application secrets, customer production data, or business application databases to provide core Azure cost visibility.

2.4 Reports, recommendations, forecasts, and alerts

We may collect weekly report history, report delivery status, recommendation status and feedback, forecast scenarios and results, budget and alert settings, notification preferences, notification delivery metadata, and in-app notification state.

2.5 Support and communications

We may collect support messages, email content sent to support, contact form information, troubleshooting details provided by the customer, attachments if users provide them voluntarily, and internal support notes.

2.6 Marketplace, licensing, and billing information

When CostGuard is purchased or activated through Microsoft Marketplace, CostGuard may receive subscription, plan, quantity, status, purchaser, tenant, and entitlement information from Microsoft Marketplace or related Microsoft services. This includes Marketplace subscription ID, offer and plan identifiers, subscription status, quantity and seat information, activation and lifecycle events, license and entitlement state, and billing contact information if provided by Microsoft or the customer. CostGuard does not need to store full payment card numbers for Microsoft Marketplace purchases. Marketplace billing is handled through Microsoft according to Microsoft Marketplace processes.

2.7 Website, device, and usage information

We may collect IP address, browser type, device information, pages visited, referring page, log data, error and performance logs, cookie preferences, and analytics data only when enabled by consent.

2.8 Cookies and similar technologies

Required cookies support sign-in, security, session protection, language routing, consent choices, and core functionality. Optional cookies, such as analytics or marketing cookies, are used only according to the user's cookie preferences. For details, see our Cookie Policy. Cookie Policy

2.9 Information we do not intentionally collect

We do not intentionally collect: government-issued identification numbers unless required for a specific legal or billing process; payment card numbers for Marketplace purchases; customer source code; customer application secrets; customer production application data unrelated to Azure cost management; or sensitive personal information unless the customer voluntarily provides it through support or another communication channel.

3. How we use information

We use information to: provide and operate CostGuard; authenticate users and protect sessions; provision workspaces; connect authorized Azure subscriptions; import and analyze Azure cost data; generate dashboards, summaries, forecasts, recommendations, reports, and alerts; send service notifications, report emails, and support communications; manage plans, licenses, Marketplace activation, and entitlement state; monitor service health and troubleshoot errors; improve product performance, onboarding, documentation, and user experience; protect against fraud, abuse, unauthorized access, and security incidents; and comply with legal, contractual, accounting, and regulatory obligations.

Depending on where you are located and how you interact with CostGuard, we may process personal information based on one or more recognized legal bases, including consent, contract performance, legitimate business interests, legal obligations, security, fraud prevention, and service delivery. We rely on consent for optional cookies, marketing, and optional communications; contract or service delivery for account, workspace, Azure connection, reports, and support; legal obligation for required records; and legitimate interest for security, fraud prevention, service improvement, and troubleshooting where permitted by law.

5. How we share information

We do not sell personal information. We may share information with: Microsoft Azure and Microsoft Marketplace when required for sign-in, subscription activation, Azure connection, billing, or entitlement workflows; cloud hosting providers; email and notification providers; support and operational service providers; analytics providers only if enabled and configured; professional advisors, auditors, or legal counsel; authorities when legally required; and in the event of a merger, acquisition, financing, restructuring, or sale of assets involving Hoshebartar Technologies. Service providers are expected to process information only as needed to provide services to CostGuard and according to appropriate contractual, security, and confidentiality obligations.

6. Data storage and processing locations

CostGuard may process and store information in Canada, the United States, and other locations where Hoshebartar Technologies, Microsoft, cloud providers, or service providers operate. Where information is transferred outside a user's province, state, or country, privacy laws may differ. CostGuard uses reasonable contractual, technical, and organizational safeguards designed to protect information.

7. Security measures

CostGuard uses encryption in transit, encryption at rest where supported by platform services, access controls, least-privilege principles, Microsoft Entra ID authentication where applicable, Azure Key Vault or secure secret storage where applicable, audit logs for important workspace and administrative actions where implemented, monitoring and logging, secure development practices, restricted administrative access, and incident response processes. No method of transmission or storage is completely secure. CostGuard works to protect information using reasonable safeguards, but cannot guarantee absolute security.

8. Data retention

We retain personal information only as long as needed for the purposes described in this policy, including service delivery, security, troubleshooting, reporting, legal compliance, accounting, dispute resolution, and legitimate business operations. Account and workspace data are retained while the workspace is active. Azure cost summaries are retained according to customer plan, workspace settings, or legal and operational requirements. Support messages are retained as needed to resolve issues and maintain support history. Audit logs are retained according to plan, security, and compliance requirements. Marketplace and license records are retained as needed for billing, entitlement, compliance, and audit purposes. Backups may retain information for a limited period before deletion according to backup schedules.

9. User choices and privacy rights

Depending on your location, you may have rights to access, correct, update, export, delete, restrict, or object to certain processing of your personal information, and to withdraw consent where processing is based on consent. You may change cookie preferences, update account or workspace information where supported, contact support for access, correction, deletion, or privacy questions, opt out of non-essential communications, and manage report or notification recipients where authorized. Contact us at [email protected]. Some requests may be limited by security, identity verification, legal obligations, contractual obligations, billing records, fraud prevention, backups, or the need to provide the service.

10. Workspace administrators and customer responsibility

Workspace owners and administrators are responsible for managing users, report recipients, Azure connections, notification settings, and access permissions inside their workspace. Customers are responsible for ensuring they have authority to connect Azure subscriptions, invite users, configure report recipients, and share cost information with members or external recipients.

11. Microsoft Azure and third-party services

CostGuard integrates with Microsoft Azure, Microsoft Entra ID, and Microsoft Marketplace where applicable. Customer use of Microsoft services remains subject to Microsoft's own terms and privacy statements. Customers should review Microsoft permissions and consent screens before authorizing access.

12. Automated recommendations, forecasts, and AI features

CostGuard may generate cost forecasts, recommendations, alerts, or AI-assisted explanations based on Azure cost data, customer configuration, and product analytics where enabled. These outputs are intended to support decision-making and may not be perfect or complete. Customers should review recommendations before making changes to cloud resources, budgets, billing settings, or infrastructure.

13. Children's privacy

CostGuard is a business SaaS product and is not intended for children. We do not knowingly collect personal information from children.

14. Changes to this Privacy Policy

We may update this Privacy Policy from time to time. Updated versions will be posted on this page with a new last updated date. If changes are material, we may provide additional notice where appropriate.

15. Contact us

Hoshebartar Technologies

Privacy contact: [email protected]

Contact page: /en/contact

Hoshebartar Technologies. Privacy contact: [email protected]. Business address: Available upon request.