Privacy policy
Last updated 3 September 2026
What we collect
- Account data: name, email address, password hash, and the GitHub identity you connect.
- Repository data you authorise: file contents, commit metadata and pull requests from connected repositories.
- Usage data: pages viewed, searches, AI requests and audit events, used to run and improve the service.
How we use it
Repository data is used solely to generate and maintain your documentation. It is sent to AI model providers for processing under agreements that prohibit training on your data. We do not sell personal data.
Where it lives
Data is stored in encrypted PostgreSQL databases and object storage. Provider tokens are encrypted at rest. Backups are retained for 90 days.
Your choices
Disconnect a repository to stop processing it; its indexed content is deleted. Delete your workspace to remove all associated data within 30 days. Email privacy@docpilot.dev to exercise access or deletion rights.
Cookies
We use one strictly-necessary session cookie. There are no advertising or cross-site tracking cookies.