Overview
You want to know which information CloudFix stores, and for how long it is stored in CloudFix systems.
Information
CloudFix does not hold client data indefinitely. Retention is tied to the length of your subscription: active data is kept for as long as your subscription is active, and once a subscription/contract ends, the associated data is deleted within 30 days as part of CloudFix's standard offboarding process — you do not need to submit a separate deletion request to have it removed. The table below breaks this down by data type.
| Data Type | Retention Period |
|---|---|
| Active account data | Duration of the subscription |
| AWS Cost & Usage Report (CUR) data | Analyzed in-memory via Athena; not stored long-term |
| Fix execution history | Duration of the subscription, plus 30 days |
| Audit logs | Retained for 1 year |
| Data after contract termination / account deletion | Purged within 30 days of contract termination as part of standard offboarding — no request needed to initiate it (see Cancelling CloudFix Subscription) |
CloudFix collects the following data about the environment:
- Account information, including sub-accounts.
- A list of currently deployed AWS resources.
-
Usage metrics needed by Finders:
- Metrics from CloudWatch
- AWS Cost and Usage Reports
- Logs from CloudTrail.
CloudFix does not read the contents of your stored data (secrets, database records, queue messages, snapshot contents, etc.). Analysis relies on resource metadata and cost/usage data; a small number of finders require narrow, targeted reads — for example, CloudWatch Logs Insights results for Lambda right-sizing — enabled only when that finder is active for your subscription.
Security & compliance resources
For CloudFix's current certifications, security architecture, data-handling and sub-processor commitments, see the CloudFix Trust Center:
Priyanka Bhotika
Comments