DRAFT — pending legal review. This document is a placeholder and is not yet legally binding.

Privacy Policy

Last updated: July 4, 2026

1. What we collect

Account data (your GitHub-provided email and display name), the organizations and memberships you belong to, and the session metadata and replay segments you choose to sync. We also process payment metadata via our payment processor; we do not store full card details.

2. How we use it

To operate the service: authenticate you, sync and replay your sessions, enforce plan entitlements, and provide support. We do not sell your data.

3. Who can see your sessions

A synced session is visible to members of the organization you sync it to, according to the per-session access level you choose (off, metadata only, or full replay) and its visibility (organization or restricted). Restricted sessions are visible only to you.

4. Your rights (GDPR / CCPA)

You can export your data and delete your account at any time from account settings. Deletion removes your profile, memberships, and the sessions you own. Some records may be retained where required by law.

5. Data location and retention

Data is stored with our managed database provider. Replay retention windows are a visibility control, not a deletion schedule; account deletion is a real erasure of your personal data.

6. Contact

Privacy questions or requests: privacy@org2.example (placeholder — update before launch).