Privacy policy

Last updated 3 September 2026

What we collect

  • Account data: name, email address, password hash, and the GitHub identity you connect.
  • Repository data you authorise: file contents, commit metadata and pull requests from connected repositories.
  • Usage data: pages viewed, searches, AI requests and audit events, used to run and improve the service.

How we use it

Repository data is used solely to generate and maintain your documentation. It is sent to AI model providers for processing under agreements that prohibit training on your data. We do not sell personal data.

Where it lives

Data is stored in encrypted PostgreSQL databases and object storage. Provider tokens are encrypted at rest. Backups are retained for 90 days.

Your choices

Disconnect a repository to stop processing it; its indexed content is deleted. Delete your workspace to remove all associated data within 30 days. Email privacy@docpilot.dev to exercise access or deletion rights.

Cookies

We use one strictly-necessary session cookie. There are no advertising or cross-site tracking cookies.