Privacy Policy

Last Updated: May 2026

1. Information We Collect

We collect the following types of information:

  • Account Information: Name, email, GitHub username
  • GitHub Data: Repository data, code patterns, and metadata
  • Usage Data: Features used, analysis performed, credits consumed
  • Technical Data: IP address, browser type, device information

2. How We Use Your Information

We use your information to:

  • Provide and improve the RepoFuse service
  • Authenticate users and secure accounts
  • Analyze repositories and generate insights
  • Send service updates and support communications
  • Improve platform performance and features
  • Comply with legal obligations

3. Data Security

We implement industry-standard security measures including encryption, secure authentication, and access controls to protect your data. However, no system is 100% secure.

4. GitHub Data Privacy

RepoFuse only accesses repositories and data authorized through GitHub OAuth. We store the OAuth access token needed to perform requested operations, repository metadata, analyzed file paths, and generated blueprints. We do not return OAuth tokens, passwords, or other authentication secrets to AI assistants.

5. Third-Party Services

RepoFuse uses GitHub for repository access, Clerk for authentication and OAuth, Stripe for payments, Neon for database hosting, Vercel for application hosting and AI gateway services, and configured AI model providers such as Anthropic or OpenAI to generate analyses and scaffolds. Requests sent to AI providers include the repository names, file paths, blueprint details, and prompts needed to complete the requested task. Each provider processes data under its own privacy terms.

6. Your Rights

You have the right to:

  • Access your personal data
  • Request data deletion
  • Opt-out of communications
  • Revoke GitHub authorization at any time
  • Revoke an AI assistant's RepoFuse OAuth connection at any time

7. MCP and AI Assistants

When you connect Claude, ChatGPT, Cursor, or another MCP client, RepoFuse receives OAuth identity and tool requests from that client. Tool responses may contain repository names and URLs, file paths, technology choices, and generated blueprint or scaffold content. RepoFuse applies the same account permissions, plan limits, credits, and rate limits used by the website. RepoFuse does not receive or store the surrounding assistant conversation unless it is included in a tool argument.

8. Data Retention and Deletion

Account, repository metadata, analyses, blueprints, billing records, and usage records are retained while your account is active and as needed for security, billing, legal, and fraud-prevention obligations. Repository source content used during an analysis is processed to answer the request and is not stored as complete source files. You may request account deletion at privacy@repofuse.com. We delete or de-identify eligible data within 30 days, except records that must be retained by law or for legitimate billing and security purposes.

9. Cookies and Tracking

RepoFuse uses cookies and similar technologies to maintain sessions, remember preferences, and analyze usage patterns. You can control cookie settings in your browser.

10. Children's Privacy

RepoFuse is not intended for users under 13. We do not knowingly collect data from children.

11. Changes to This Policy

We may update this Privacy Policy periodically. We will notify you of significant changes by email or through the platform.

12. Contact Us

For privacy concerns, contact: privacy@repofuse.com