Spctre (operated by Ciwrl Technologies LLC d/b/a Spctre) is a control plane for policy enforcement. To author, simulate, and verify policy decisions, we process the minimum necessary operational metadata:
Workspace & Organization Data
We collect profile data including your email, name, organization name, and workspace configurations required to manage administrative access, SAML/SCIM settings, and API authentication.
Policy Rules & Bundles
When you author and compile policy rules, we store the policy source code, environment scopes, change histories, pull requests, reviewer credentials, and cryptographic bundle hashes.
Agent Operational Traces
For each evaluated decision, we record the agent's identity, target connector (e.g., Stripe, GitHub), requested action (e.g., refund.create), system environment, policy decision outcome, and execution latency. Configured evidence integrations also retain the submitted source event with its mapping version alongside the canonical governance record.