Privacy policy
Last updated: August 13, 2026.
Argos is a visual testing platform. Your test suite captures the screenshots and uploads them to Argos, which stores them, compares them across builds, and lets your team review the visual changes. Argos does not connect to your applications to produce those screenshots. This policy explains what personal information we handle when you visit argos-ci.com, use Argos, or otherwise do business with us.
1. Who we are
Argos is operated by Smooth Code SAS, a company incorporated under the laws of France, registered with the Paris Trade and Companies Register under number 830 511 788, with its registered office at 30 Boulevard de Sébastopol, 75004 Paris, France.
For the processing described in this policy where we act as a controller, Smooth Code SAS is the data controller. You can reach us at contact@argos-ci.com.
2. The two roles we play
It matters which of the following applies, because it determines who decides what happens to the data.
We are a controller for the personal information we handle to run our own business: visitors to our website, people who create an Argos account, people who contact us, and people who work at our customers and prospects.
We are a processor for the content our customers send into Argos. Screenshots, builds, test metadata, and other content uploaded by a customer are processed on that customer's instructions. If a screenshot of a customer's application contains personal information, the customer decides that, not us. Where you are an end user of an application tested with Argos, the relevant privacy policy is that of the customer operating that application, not this one.
Our customers decide what their screenshots contain. We ask them not to send special categories of personal data, payment card data, or government identifiers into the Service unless separately agreed in writing.
3. Information we handle
Account information. Name, email address, profile picture, and the identity provider you signed in with. Argos accounts are created through GitHub, GitLab, or Google, or through your organization's single sign-on. We receive the profile information those providers make available for the scopes you approve. We never receive your password.
Organization and team information. Team names, member lists, roles and permissions, invitations, and email domains you configure for automatic joining.
Project and repository information. The repositories, projects, branches, pull requests, and builds you connect to Argos, and the metadata we need to attach a build to a commit.
Customer Data. Screenshots, images, videos, diffs, test names and metadata, review decisions, and comments submitted to the Service. We handle this as a processor, as described above.
Billing information. Company name, billing address, VAT number, plan, usage counters, and invoice history. Card numbers are collected and stored by our payment provider, not by us.
Support and business communications. The content of the messages you send us, and the contact details you use to send them.
Technical information. IP address, browser and operating system, pages viewed, timestamps, referring URL, and application error reports. We use this to operate the Service, investigate incidents, and prevent abuse.
4. Why we handle it, and on what legal basis
- To provide the Service — creating and administering your account, running builds and comparisons, sending build results and review notifications, and providing support. Legal basis: performance of our contract with you.
- To bill you — subscriptions, usage, overage, invoices, and dunning. Legal basis: performance of our contract, and compliance with our accounting obligations.
- To keep the Service secure and reliable — authentication, rate limiting, abuse and fraud prevention, error monitoring, and incident investigation. Legal basis: our legitimate interest in protecting the Service and its users.
- To improve the Service — understanding which features are used, and aggregated or anonymized analysis of usage. Legal basis: our legitimate interest in improving our product.
- To communicate with you — service, security, and billing notices, and responses to your questions. Legal basis: performance of our contract and our legitimate interest in maintaining our business relationship.
- To send marketing — occasional emails about Argos to business contacts. Legal basis: your consent where it is required, otherwise our legitimate interest in promoting our product to professional contacts. You can unsubscribe from any marketing email using the link it contains.
- To meet our legal obligations — keeping accounting records and responding to lawful requests from authorities. Legal basis: compliance with a legal obligation.
5. We do not sell your information
We do not sell or rent personal information, and we do not share it with third parties for their own advertising purposes.
6. Cookies and analytics
We use cookies that are strictly necessary to operate the Service: keeping you signed in and protecting the sign-in flow against request forgery.
We do not use advertising cookies, and we do not use cookies to track you across other websites.
Our website analytics is Plausible, which is hosted in the European Union, sets no cookies, and does not build a profile of individual visitors or follow them across sites.
7. Service providers and subprocessors
We rely on the following providers to operate Argos. Each of them is bound by a written agreement, processes personal information only on our instructions, and is subject to confidentiality and security obligations consistent with our own.
- Amazon Web Services — hosting, database, and object storage, including the screenshots you upload. United States and European Union.
- ImageKit — delivery and on-the-fly transformation of screenshots and other images served from files.argos-ci.com.
- Cloudflare — DNS, content delivery, and caching. Global edge network.
- Redis — queues, caching, and rate limiting supporting the processing of builds.
- Vercel — hosting of the argos-ci.com website. United States.
- Stripe — payment processing, subscriptions, and invoicing. United States and European Union.
- Resend — delivery of transactional and notification email. United States.
- Sentry — application error and performance monitoring. United States.
- Bright Data — reverse proxy providing a stable IP range, so that customers who restrict inbound traffic can allow-list connections coming from Argos.
- Plausible Analytics — website analytics. European Union.
We also use standard business tools, including Google Workspace, Slack, and Linear, which may hold the contact details and the content of the messages you exchange with us.
The authoritative and always-current list is published in our trust center, which prevails over the summary above. We tell customers before a new subprocessor starts processing their data, and they can object, as set out in our Data Processing Agreement. Subscribe to those notifications at contact@argos-ci.com.
Integrations you connect. Argos also exchanges data with GitHub, GitLab, Google, Slack, Discord, and Microsoft Teams when you choose to connect them, so that we can read repository metadata, post build statuses, and deliver notifications where your team works. Those providers act on their own behalf under their own terms and privacy policies, and the connection exists because you established it.
Other disclosures. We may also disclose personal information to our professional advisers, to an acquirer in the context of a merger, reorganization, or sale of our business, or to authorities where we are legally required to do so or where it is necessary to protect our rights, our users, or the Service.
8. Where your information is processed
We are established in France. Our infrastructure runs on Amazon Web Services: your data is stored in the United States and replicated to the European Union. Some of our other providers are established in the United States.
Where personal information is transferred outside the European Economic Area, we rely on a transfer mechanism recognized under Chapter V of the GDPR, such as the European Commission's standard contractual clauses, together with the additional safeguards required by the circumstances of the transfer.
You can request more information about the transfer mechanism applicable to a given provider at contact@argos-ci.com.
9. How long we keep it
- Account and organization information — for as long as your account is active, then deleted within a reasonable period after the account is closed.
- Customer Data — available for retrieval for thirty (30) days after termination of the account or subscription, then deleted, subject to backup expiry.
- Billing and accounting records — ten (10) years, as required by French commercial and tax law.
- Support communications — for as long as needed to handle the request and to keep a record of our business relationship.
- Technical logs and error reports — for a limited period, no longer than necessary for security, debugging, and abuse prevention.
Copies held in backups are removed as those backups expire in accordance with our standard retention processes.
10. How we protect it
We encrypt data in transit and at rest, restrict access to production systems to the people who need it, require strong authentication for that access, keep audit trails, monitor for errors and anomalies, and review our dependencies for known vulnerabilities.
Argos is SOC 2 Type II compliant. Our security page describes our controls in more detail, and our source code is open, so you can audit much of this yourself.
No system is perfectly secure, but if a personal data breach affects your information we will notify you and, where required, the competent supervisory authority, without undue delay.
You can report a security issue to us at security@argos-ci.com.
11. Your rights
If you are in the European Economic Area or the United Kingdom, you have the right to access the personal information we hold about you, to have it corrected or erased, to restrict or object to its processing, to receive it in a portable format, and to withdraw consent where our processing is based on consent.
To exercise any of these rights, write to contact@argos-ci.com. We will respond within one month, and we may ask you for information needed to confirm your identity.
If the personal information concerns content a customer uploaded to Argos, we will forward your request to that customer, who decides how it is handled.
You also have the right to lodge a complaint with a supervisory authority. Ours is the Commission Nationale de l'Informatique et des Libertés (CNIL), 3 Place de Fontenoy, TSA 80715, 75334 Paris Cedex 07, France, cnil.fr.
12. Children
Argos is a professional development tool. It is not directed at children, and we do not knowingly collect personal information from anyone under 16.
13. Changes to this policy
We may update this policy as our product and our providers change. We will post the updated version on this page and change the date above. Where a change materially affects how we handle personal information, we will give notice through the Service or by email before it takes effect.
14. Contact
For any question about this policy or about how we handle personal information:
Smooth Code SAS
30 Boulevard de Sébastopol
75004 Paris
France
Email: contact@argos-ci.com
See also our terms of service.