Privacy Policy
What We Collect
When you scan a repository, we collect: repository metadata (name, owner, description, languages, file count), scan results (scores, recommendations, complexity tier), and your account information (email, name, GitHub username) if you create an account.
What We Never Store
We never store your source code. Repository contents are cloned into ephemeral containers for analysis and deleted immediately after scoring. We never retain file contents, commit history, or any code artifacts beyond what is needed for the scan.
GitHub App Permissions
Our GitHub App requests read-only access to repository contents and metadata, scoped to the repositories you explicitly authorize. We use short-lived installation tokens and never write to your repository. The app never opens issues, pull requests, or modifies any repository settings.
Data Sharing
We do not sell your data. Public repository scores may appear on the leaderboard by default; you can opt out in your dashboard settings. Private repository scores are never displayed publicly. We use Stripe for payment processing and Clerk for authentication -- both handle their respective data per their own privacy policies.
Data Retention
Scan results are retained for the lifetime of your account. You may request deletion of your account and all associated data by contacting us at jim@woodstocksoftware.com.
Contact
For privacy-related questions or data deletion requests, contact us at jim@woodstocksoftware.com.