Privacy Policy
Last updated: July 27, 2026
The short version
We collect only what we need to run the service. We use privacy-first analytics with no tracking cookies. We don't sell your data.
Who we are
Mentiontone is operated by Philipp Defner, 10115 Berlin, Germany. This is the data controller for the purposes of the GDPR.
What we collect
- Account data: your email address and name. Sign-in is by magic link, so a password is optional.
- Monitoring configuration: the terms, brands, and competitors you track, plus your alert and notification preferences.
- Public mentions: posts and comments that are already publicly available on Reddit, Hacker News, Bluesky, X, Mastodon, Lobsters, and Nostr and that match the terms you monitor. We do not collect private or restricted content.
- Usage data: server logs, performance metrics, and error reports used to keep the service running.
- Connected integrations: if you connect Slack, Discord, or a webhook, we store the access token or URL needed to deliver notifications, along with the workspace or channel you chose to send them to.
Notification integrations
Connecting Slack is optional and is used for one purpose: delivering the mentions you already monitor to a channel you pick, and letting you triage them from there.
Mentiontone requests only the Slack permissions that requires — posting messages, listing channels so you can choose one, joining the public channel you select, and adding reaction emoji that reflect a mention's status. We do not read your Slack messages, and we do not use anything from your workspace to train models or for any purpose other than delivering your notifications.
What leaves Mentiontone and reaches Slack is the mention itself: the public post's text, author handle, source platform, link, and sentiment. Slack stores it under your workspace's own retention rules. From Slack we store the workspace id and name, the channel you selected, and the bot access token.
Disconnecting Slack in your notification settings, or removing the app from your Slack workspace, deletes that token and stops all delivery. The same applies to Discord and to outgoing webhooks, where the configured URL is what we store.
How we use it
To provide the monitoring feed, run sentiment analysis, send the alerts you configure, respond to support requests, and improve the product. We do not use your data for advertising and we do not sell it.
Third parties
We share data only with the processors needed to run the service:
- Hetzner — hosts the application and databases on servers in Germany.
- Stripe — processes subscription payments. Card details are handled by Stripe and are never stored by us.
- Postmark — delivers sign-in codes and alert emails.
- Plausible — privacy-first, cookie-free analytics.
- OpenRouter — runs the language models that score the sentiment of collected mentions.
- Scout APM — performance and error monitoring.
- Slack and Discord — receive the notifications you configure, only if you connect them.
Your data is stored on Hetzner servers in Germany. Some processors listed above operate from the United States under GDPR-compliant terms.
Cookies
We use a session cookie to keep you signed in and to remember dashboard preferences. We do not use advertising or third-party tracking cookies. Our analytics script sets no cookies.
Retention
Account and monitoring data are kept while your account is active. When you delete your account, your data is removed within 30 days. Logs are kept for up to 90 days.
Your rights
Under the GDPR you can access, correct, export, or delete your data, and object to processing. To exercise any of these, email hello@mentiontone.com.
Changes
We may update this policy from time to time. Significant changes will be announced by email or in the app.
Contact
Questions about this policy: hello@mentiontone.com. For anything else, see Support.