Privacy Policy
Axiom Layer processes customer data to provide IT asset discovery, license tracking, contract analysis, and spend visibility.
We collect account details, integration metadata, imported asset data, and usage information needed to operate the service.
Customer integrations are read-only unless explicitly stated otherwise. Sensitive connection credentials are encrypted before storage.
We use customer data only to deliver and improve the product, provide support, secure the platform, and satisfy legal obligations.
Customers can request deletion of their organization data by contacting support. Backups and audit logs are retained only as long as operationally required.
Browser extension
Organizations that deploy the AxiomLayer Discovery browser extension to managed devices (via their MDM provider) enable it to collect domain-level web-app usage: the hostnames employees' browsers actively use and the active/idle time spent on each domain. It never collects page content, full URLs, page titles, keystrokes, or screenshots.
The extension also detects login-form submissions. Each login event transmits the domain, bare page path, submission method, whether a password field was present, whether an email field was present, and the event timestamp. It never transmits credentials, other field values, query strings, URL fragments, or page content.
To distinguish genuine zero usage from a collection interruption, the extension reports a closed set of operational events: host permission withheld or revoked, sync alarm recreation, a browser restart with a previously focused domain, a frozen tab, and browser idle or locked state. Each event contains only its event type, timestamp, and, where applicable, a bare hostname. Platform events contain no free-text detail, full URL, page title, or page content.
The extension reports a configured device identifier so usage can be attributed to a specific device. In managed enterprise deployments, its configuration (API endpoint, organization key, device ID) is provisioned by the organization's MDM policy. Where no MDM policy is present — for example, manually installed or trusted-tester builds — these values are entered by the person setting up the extension.
Data collected by the extension is sent to AxiomLayer to build the organization's SaaS usage inventory, consistent with the data use described above.