
Mars “Send to Mars” Splunk add-on (TA-mars-alerts)
Effective date: 28 May 2026 · Last updated: 28 May 2026
This Privacy Policy explains how Mars Security (“Mars”, “we”, “us”, or “our”) collects, uses, and protects information in connection with the Mars “Send to Mars” Splunk add-on (the “Splunk App”). For the in-product Mars platform itself (app.marssec.ai), a separate, customer-facing privacy notice applies and is provided to each customer under contract.
If you have any questions about this policy, contact us at mars-support@marssec.ai.
Mars Security operates the Mars threat-hunting and detection engineering platform, and the Mars Splunk App that integrates with it. The data controller for the purposes of this policy is Mars Security. You can reach our privacy contact at mars-support@marssec.ai.
This policy applies to the Mars 'Send to Mars' Splunk add-on, covering the information the add-on forwards to Mars and how Mars handles it. It does not cover the authenticated Mars platform at app.marssec.ai, which is governed by your organization's contract with Mars and its associated customer-facing privacy notice. It also does not cover Splunk itself, which is operated by you and governed by your agreement with Splunk.
The Splunk App is a custom alert action that runs inside your Splunk environment. The App itself is outbound-only: it does not connect back to, authenticate against, or query Splunk — it only sends data outward to Mars. Through the App, Mars receives data only when a saved search you have explicitly configured with the “Send to Mars” action triggers. On each such trigger, Mars receives:
Scope of the Splunk App. The App does not run searches, does not read any data other than what a triggered, configured saved search forwards, and does not receive anything back from Mars. You control which saved searches forward data and what those searches return.
We use the information above strictly to:
We do not use your data for advertising, profiling unrelated to security investigations, building external products, or training general-purpose AI models. We do not sell your data.
Where the EU/UK General Data Protection Regulation applies, our lawful bases are: (a) performance of a contract with your organization, (b) our legitimate interests in operating and securing the service, and (c) compliance with legal obligations.
We share information only with trusted subprocessors. A full list is available on our sub-processors page. Categories include:
We do not share your data with third parties for their own marketing or advertising purposes.
Mars applies industry-standard safeguards including TLS in transit, encryption at rest, tenant-scoped handling of the webhook token, least-privilege access controls, audit logging, and regular security review of code and dependencies. The add-on delivers to Mars over HTTPS with a bearer token.
You can request deletion at any time by emailing mars-support@marssec.ai.
To exercise any of these rights, contact mars-support@marssec.ai.
Mars and its subprocessors operate in multiple regions. Your data may be processed in jurisdictions other than the one you live in. Where required, we rely on appropriate safeguards (such as the EU Standard Contractual Clauses) for cross-border transfers.
Mars is a B2B security product and is not intended for individuals under 16. We do not knowingly collect personal data from children.
We may update this policy from time to time. Material changes will be reflected by updating the effective date above and, where appropriate, by notice through the Mars platform. Continued use of the Splunk App after an update constitutes acceptance of the revised policy.
Questions, requests, or complaints can be sent to mars-support@marssec.ai.
This policy and any disputes relating to it are governed by the laws of the State of Israel, without regard to its conflict-of-laws principles. Nothing in this policy limits any non-waivable rights you may have under applicable local law.