Privacy and local data
Mongoose Drive Monitor has no accounts, advertising, usage analytics or automatic report uploads. It does not inspect file contents. Health collection queries Windows storage providers and supported read-only device telemetry. Explicit diagnostics have the separate consent and recovery boundaries described in guided diagnostics.
Stored on this computer
The default folder is %LOCALAPPDATA%\MongooseDriveMonitor:
| Data | Purpose | Retention |
|---|---|---|
settings.json | Preferences and optional update URL | Until changed or deleted |
history/*.json | Timestamped health and reliability counters | Configurable, 1–365 days; pruning during collection |
alert-baselines.json | Previous counters for change detection | Up to 90 days / 256 recently observed devices |
alert-events.json | Counter-change events | Up to 90 days / 200 events |
timeline.json | Drive observations, alerts, connections, counters and diagnostic outcomes | Configured history retention; at most 10,000 events / 1,024 recent devices |
alert-state.json | Acknowledgements and snoozes | Until deleted |
logs/application.log and .previous | Error details for troubleshooting | Current log rotates after about 1 MB; one prior log |
HelperResults | Diagnostic results and restoration checkpoints | Ordinary results removed; recovery checkpoints retained |
Demo/settings.json | Preferences for a default demo launch | Until changed or deleted |
Logs can include device identifiers and local paths from exceptions. Review them before sharing. Settings are not encrypted, so avoid putting private tokens in an update URL. The app rejects credentials embedded in a URL's user-info section.
Network and exports
No update server is enabled in this distribution. When you configure an HTTPS manifest URL, the update service requests that URL at startup if automatic checks are enabled, or on a manual check. Its operator receives the network information ordinarily associated with an HTTPS request. A manual download requests the URL specified in that manifest. Responses are bounded, use HTTPS, and downloads require a matching SHA-256 hash. Hashes check integrity; they do not substitute for publisher signatures.
Export creates only the file and format you select. Serial numbers, instance IDs, derived drive IDs, physical locations, recovery IDs and volume labels are hidden by default in structured reports. Text reports suppress serials and volume labels and remove recognized identifiers from diagnostic text. Device models, capacity and counters remain. This is targeted masking, not a guarantee of anonymous output. Reports may still contain local paths in error messages. You can opt in to including identifiers in settings.
To remove data, exit the app and delete the local data folder after completing any pending diagnostic restoration. Uninstalling the portable executable folder does not remove these records automatically.
Opt-in Windows startup uses the current-user Run registry entry for portable builds or the declared MSIX StartupTask. Native notification registration uses Windows app/COM registration, the mongoosedrivemonitor application-link protocol, and local notification-center storage. Notifications expire after two days. HTML reports are self-contained and make no network requests. Timeline recording stops when history is disabled; existing records remain readable.