Vigia ยท Privacy

Privacy

Vigia is a web app that reads Microsoft Dynamics 365 Business Central from the user's phone. This page states exactly which data is read, where it goes, and what stays on the device.

Getting-started guide Installation, sign-in, settings
Write to Keystone A question about data handling
01
In short

Four points that sum up the rest

Your management data never passes through Keystone

The app queries Microsoft directly from the user's browser, with that user's own token.

Keystone keeps the bare minimum

Enough to check that your subscription is active: tenant identifier, subscriber address, plan. The exact list is in section 06.

Nothing is written to Business Central

The extension exposes read queries only, and the app issues read calls only.

No tracking

No analytics, no advertising cookie. Vigia does not read the device's contacts, location or files.

02
Roles

Who handles what

The data Vigia shows is your Business Central data. It stays under your responsibility and under the control of your Microsoft permissions.

Your company

It decides who installs the extension, which accounts use it and which Business Central permissions they hold. Those permissions determine what each user can see.

Keystone

Keystone publishes the app and the extension. Keystone holds no credentials to your environment: the app holds no secret, each user authenticates on their own Microsoft tenant. No data from your Business Central reaches Keystone. To check your subscription, Keystone does however keep a few identification details, listed in section 06.

Microsoft

Authentication and data are handled by Microsoft services, under the contractual commitments that already bind you to Microsoft for Business Central.

A review is still worth it

This document describes how the app works technically. It does not replace the assessment your data protection officer may want to carry out.

03
Data read

What the app asks Business Central for

Vigia reads management aggregates and detail lines: companies, customers, sales and purchase orders, invoices, aged balances, value entries, payment terms, dimensions, budgets, bank accounts. The full list of queries is on the help page.

Business data

Management data: amounts, dates, document numbers, dimension codes.

Which may contain personal data

The name of an individual customer, the name of a salesperson, a company name carrying a family name. Vigia adds nothing to what your ERP already holds.

Nothing else is collected

Vigia uses no analytics, no advertising cookie, no tracker. It does not read the device's contacts, location or files.

No writing

The extension only exposes read queries and the app only issues read calls. The account used holds the D365 READ permission set.

04
On the device

What the phone keeps

Four items are written to the browser's local storage. They are sent to nobody.

The Microsoft sign-in token

It avoids signing in again at every launch. Signing out deletes it.

A cache of the data read

The figures of the last load, to show the screen without waiting. Signing out clears it, so does changing environment.

Your settings

Thresholds, colour bands, targets by company, group name, logos, language.

Your cash entries

Forecast dates and outflow lines you enter yourself. They never go back to Business Central.

05
Keystone services

The two cases where a Keystone service is involved

Two services run by Keystone come into play. Neither one carries your management data.

The subscription check

On opening, the app asks vigia-saas.key-stone.workers.dev whether your subscription is active. That call carries your Microsoft tenant identifier, nothing else. The answer is kept in the browser for five minutes.

Demo mode

With no Microsoft sign-in, the app opens a demo. It goes through a relay hosted by Keystone, at cockpit-bc-api.key-stone.workers.dev. That relay queries a Microsoft demonstration environment, with fictitious data. It never sees a customer's data, and keeps none.

06
Hosting

Where the files live

Vigia keeps no management data. Its application files and its subscription records, however, are hosted somewhere.

The app

The application file is served by Cloudflare Workers. That service distributes code, not management data.

The subscription records

Hosted by Cloudflare, in a storage space reserved to Keystone. Per subscription: the subscription identifier, the plan name and identifier, the quantity, the status, your Microsoft Entra tenant identifier and the subscriber's email address. Nothing else. These records are replicated across Cloudflare's global network and deleted within thirty days of the subscription ending.

The key-stone.fr site

Hosted by Netlify.

Your management data

It stays with Microsoft, in your company's Business Central environment, and on the user's device. It never travels through Keystone.

07
Your rights

Who to contact

For data coming from your Business Central, the controller is your company: access, rectification or erasure requests are handled on your side, in the ERP. For the subscription records listed in section 06, Keystone acts as processor and answers within one month: write to contact@key-stone.fr. Same address for any question about the app itself, or about the data you send Keystone through the site contact form.

08
Publisher

Who publishes Vigia

Keystone

SASU with a share capital of 100 euros, Bordeaux trade register 908 427 644. Registered office: 14 cours Balguerie Stuttenberg, 33300 Bordeaux, France.

Contact

contact@key-stone.fr

Application

Vigia, a reporting app for Microsoft Dynamics 365 Business Central.

Updates

This page changes when the app's behaviour changes. The version date is at the end of the page.

Version of 3 September 2026

Vigia

A question about your data?

Keystone answers technical questions about what the app reads and how it connects to your environment.