A security product owes you this page
Netra asks to see your home network. That is a lot to ask. This page says what we collect, what we do not, where it lives, and what happens when something goes wrong.
What Netra collects
Device metadata from scans you run: names, types, manufacturers, hardware identifiers, when a device was first and last seen, and the results of the checks you choose to run. Household data: member accounts, roles, permission grants, guest shares, and the audit trail of changes to those.
What Netra does not collect
- The contents of your network traffic. Netra does not inspect what your devices are sending.
- Video, audio or images from any camera. Netra sees that a camera exists and whether it is online.
- Your Wi-Fi password. Netra never asks for it and cannot use it.
- Contacts, photos, messages or location, beyond the coarse network permission the operating system requires for scanning.
Where it lives
Free-tier scans stay on the device that ran them. Once you are on Premium, household data syncs through our cloud so that permissions work across members and from outside the house. Data is encrypted in transit and at rest, and household data is stored in India.
How permissions are enforced
Permission checks run on the server, not in the app. A modified client cannot grant itself access it was not given. Every grant, revocation and role change is written to the audit trail with an actor and a timestamp, and Standard members can see the entries that concern them.
What we cannot do
Netra cannot block a device, pause the internet or enforce anything at the network level without a Home Hub, which does not exist yet. Anyone claiming otherwise about a phone-only product is describing something else. We put this on the pricing page too, because it is the single most consequential limitation in the product.
Reporting a vulnerability
Write to security@netraapp.com with enough detail to reproduce. We acknowledge within two working days and will tell you our assessment and timeline. We will not pursue legal action against good-faith research that does not access other people’s data or degrade the service. We do not run a paid bounty yet; we will say so plainly rather than imply one.
Deleting your data
Delete your household from the app and the data goes with it, including the audit trail, within thirty days across backups. You can export the timeline first. Deleting an account removes the members you created; it does not delete their own personal accounts.
Security questions
No. Netra identifies devices and checks their configuration. It does not inspect the contents of traffic, and it is not a packet capture tool.
No. We do not sell data, and we do not share it with advertisers. Third-party processors are limited to infrastructure and are listed in the privacy policy.
Access to production data is restricted, logged, and used only to investigate a problem you have reported. It is not browsable.
Sign out of that device from any other session. Permissions are enforced server-side, so revoking the session removes access immediately.
Not yet, and we will not imply otherwise. We map cameras against NCCS/ITSAR for our users; that is a feature, not a certification of Netra itself.