Skip to content

Security and privacy

Runtrace collects software metadata, not developer files.

Runtrace collects the package, version, device, and finding metadata needed for vulnerability management. It does not upload source code, file contents, secret values, shell history, screenshots, or clipboard contents.

Data boundary

Collect what the security workflow needs.

The agent reports structured metadata. These categories remain on the Mac.

Collected metadata

Data used to identify and remediate exposure.

Collected fields support inventory, exact-version advisory matching, fleet prioritization, remediation workflow, billing, or audit history.

01

Device and organization metadata

Identify the enrolled developer device and keep tenant-scoped fleet state current.

  • Organization slug, device ID, device name, agent version, and check-in/upload timestamps.
  • Admin-maintained owner, team, and business criticality labels.
  • Enrollment token usage metadata, device bearer-token authentication state, and last-seen timestamps.
02

Developer inventory metadata

Identify installed developer software so the hosted service can check exact package versions and return device results.

  • Package, tool, or binary name, version, ecosystem/kind, source path or filename, and last-observed timestamp.
  • Per-item identity method and confidence, install scope, package-manager origin, parent package, executable path, file SHA-256, and signing identifiers where available.
  • Per-item central vulnerability coverage status, checked source/time, package identity, advisory count, and bounded explanation.
03

Findings and vulnerability metadata

Prioritize remediation by vulnerability, affected package, affected devices, and fix availability.

  • Finding category, title, severity, confidence, affected path or package, evidence summaries, and remediation text.
  • Advisory identifiers, aliases, CVSS score/vector, installed version, fixed version, CISA KEV status, FIRST EPSS score/percentile, and authoritative malicious-package evidence when available.
  • Workflow status, admin notes, actor, and timestamps for fixed, accepted-risk, and false-positive decisions.
04

Remote scan, remediation, and report metadata

Audit remote scans and allowlisted package updates, then produce weekly security reports without arbitrary remote execution.

  • Remote scan profile, selected custom roots, configured scan caps, reason, requester, status, timestamps, result, and error summary.
  • Structured remediation action type, package and target version, affected device and vulnerability, approval reason, lifecycle timestamps, exit status, verification result, and bounded error summary.
  • Active scanner policy pack ID/name, scheduled home-relative workspace roots, upload-path preference, EndpointSecurity flag, and sensitive path rule patterns.
05

Billing and session metadata

Gate Business and Enterprise features and keep the account auditable.

  • Plan, billing status, seat limit, active device count, current period, Revolut customer/subscription identifiers, and webhook event IDs.
  • Business workspace request contact metadata: company name, requester name, work email, seat estimate, notes, status, and admin follow-up note.
  • OIDC subject, email, roles, allowed organization claims, session expiry, and CSRF-protected admin form metadata.

Product controls

Bounded access and auditable actions.

Documentation

Information for security and privacy review.

Security review

Review the data boundary before deploying the agent.

Request a demoView pricing