1. Data Collection & Usage
- Account Data: We collect your email address and authentication credentials to facilitate login and project management.
- User Code: Source code uploaded to the platform is collected strictly for the purpose of AI analysis. We do not use your code to train our internal models.
2. Security Architecture
- Zero-Knowledge Storage: Code is encrypted at rest using a unique key derived from your User ID and a server-side secret. This key is generated on-the-fly and never stored, rendering the data inaccessible to unauthorized parties or database leaks.
- Decryption: Data is decrypted only momentarily when you request access or initiate an analysis.
3. Third-Party AI Processing
- Service Providers: To provide analysis, code is transmitted securely to third-party AI providers (OpenAI, Anthropic, Google, or DeepSeek).
- Data Privacy: We configure our integrations to ensure these providers do not use your data for model training. Data is processed solely for the immediate analysis session.
4. Data Retention & Deletion
- Project Lifecycle: Your data remains stored securely until you choose to remove it.
- Right to Delete: You have full control to delete projects and files via your dashboard. Upon deletion, data is permanently erased from our infrastructure.