codqual
Docs
ES
English Español
Iniciar sesión Comenzar
Privacy Policy
Last updated August 2026 · La versión en español (Aviso de Privacidad) se encuentra al final de esta página

Who we are, and the two roles we play

codqual is a code-review service operated by [OPERATOR LEGAL NAME], [REGISTERED ADDRESS] ("codqual", "we"). Contact for anything in this policy: hello@codqual.com.

We play two roles. For your account, organization, and billing data we are the data controller. For the contents of repositories your organization enrolls, we act as a processor on your organization's behalf: your organization decides which repositories we analyze, and we analyze them only to provide the service.

What we collect

  • Account data — your email address, a password hash (bcrypt; we never store the password itself), your language preference, and — if you sign in with GitHub, GitLab, Google, or Forgejo — your identity on that provider (user id, username, email).
  • Session data — when you sign in we record the session's IP address and browser user-agent, used for security and abuse prevention.
  • Connection tokens — GitHub access tokens needed to operate the GitHub App, stored encrypted (AES-256-GCM).
  • API keys — stored hashed. The plaintext key is held server-side only between creation and the first time you retrieve it, then removed.
  • Billing data — your organization's billing email, invoices and payment records, and any payment-proof images you upload for a bank-transfer payment (stored in our object store). Payment-proof images are financial information and are used only to verify your payment.
  • Feedback — feedback you record on findings (agree/dismiss and any notes), used to improve review quality.

Repository data: what we read, and what we keep

The GitHub App can only read repositories your organization has explicitly granted it — installing the app enrolls nothing automatically. A PR review reads the pull request's diff; a scan fetches a snapshot of the whole repository.

We do not keep a copy of your repository. Repository contents are processed transiently: analyzed in memory and temporary storage that is deleted when the run finishes. What we store afterwards are the results: findings and review verdicts (file and line references, explanations, and short quoted evidence excerpts where a finding needs them), health scores, and a per-repository memory that is derived from those stored results — never from raw code.

AI processing: which model providers see your code

To run analysis, excerpts of your code (up to roughly 12 KB per file, plus the diff under review) are sent to large-language-model providers. Which providers, depends on your plan:

  • Paid plans — analysis runs on commercial APIs: Anthropic (Claude models, US) and OpenRouter (US), which routes requests to the model host configured for each analysis stage (currently DeepSeek models; other commercial models such as OpenAI GPT-5 may be configured). These providers process your code under their commercial API terms.
  • Free plan — analysis runs entirely on free-tier open-source models via OpenRouter (currently NVIDIA Nemotron). Free-tier model hosts may log prompts and may use them to improve their models under their own terms. If that is not acceptable for a repository, use a paid plan or do not enroll that repository on the free plan.

We do not train our own models on your code, and we do not sell your code or your account data to anyone. More detail on what is sent and kept is in the security documentation.

Service providers (subprocessors)

ProviderPurposeLocation
AnthropicLLM analysis (paid plans)United States
OpenRouter (and the downstream model hosts it routes to)LLM analysis routing (all plans; sole provider on the free plan)United States
GitHubSource hosting, GitHub App, repository accessUnited States
BrevoTransactional email (invitations, password resets, alerts)European Union (France)

We update this table when a provider is added or replaced; material changes are reflected in the "last updated" date above. Transfers of EU/EEA personal data to US providers rely on the EU-US Data Privacy Framework where the provider is certified, and on Standard Contractual Clauses otherwise.

How long we keep things

DataRetention
Repository contents during analysisDuration of the run only; deleted when it finishes
Findings, reviews, scores, repo memoryWhile your organization's account is active, or until deletion is requested
LLM call audit logs90 days
SessionsRemoved within 7 days of expiry
Sign-in links and OAuth handshake stateRemoved within 1 day of expiry
Invoices and payment-proof imagesFor the period required by tax and accounting law

Your rights

You can ask us to access, correct, export, restrict, or delete your personal data, or object to a use of it, by emailing hello@codqual.com from your account email. We verify identity and respond within one month. Deleting your account removes your account data and personal identifiers; it is currently handled by us on request rather than by an in-product button. If you are in the EU/EEA you may also complain to your supervisory authority; if you are in a US state with a privacy law that applies to you, the same channel serves those requests.

Personal data that appears inside a customer repository we process on that customer's instructions — please direct requests about it to the organization that owns the repository, and we will assist them.

Cookies

We use only functional cookies, all httpOnly and secure: session and rid (keeping you signed in), oauth_state (sign-in integrity), and short-lived cookies for invitations and connecting GitHub. No advertising or analytics cookies, no tracking — which is why there is no cookie banner. Your browser's local storage holds only UI preferences (selected repository, language).

Security

Data is encrypted in transit (TLS). GitHub tokens and webhook secrets are encrypted at rest at the application level (AES-256-GCM); passwords are hashed with bcrypt; session tokens, reset tokens, and API keys are stored hashed. Access is role-based, and API keys are structurally read-only — they can never trigger analysis or change data beyond recording feedback.

Children

codqual is a professional tool and is not directed to children under 16; we do not knowingly collect their data.

Changes

When this policy changes materially we update this page and its date, and notify organization billing contacts by email for significant changes. Continued use after a change means the updated policy applies.


Aviso de Privacidad (español)

Responsable: [NOMBRE O RAZÓN SOCIAL DEL RESPONSABLE], con domicilio en [DOMICILIO EN MÉXICO] ("codqual"). Contacto: hello@codqual.com. Este aviso se emite en cumplimiento de la Ley Federal de Protección de Datos Personales en Posesión de los Particulares (2025). Para titulares en México, esta versión en español rige respecto de la información de privacidad.

Datos personales tratados

Datos de identificación y contacto (correo electrónico, identidad en GitHub/ GitLab/Google/Forgejo); datos de sesión (dirección IP y navegador); datos de facturación, incluyendo datos patrimoniales o financieros (comprobantes de pago por transferencia bancaria que usted sube), los cuales requieren su consentimiento expreso y se usan únicamente para verificar su pago; y el contenido de los repositorios que su organización inscribe, el cual se procesa de forma transitoria para generar los resultados del análisis y no se conserva.

Finalidades

Finalidades necesarias: prestar el servicio de revisión y análisis de código, administrar su cuenta y organización, facturación y verificación de pagos, envío de correos transaccionales, y seguridad del servicio. No realizamos tratamiento con fines de mercadotecnia o publicidad; si en el futuro existieran finalidades no necesarias, se solicitará su consentimiento por separado.

Transferencias y remisiones

Para prestar el servicio, remitimos extractos de código a proveedores de modelos de inteligencia artificial en Estados Unidos: Anthropic y OpenRouter (que enruta a los proveedores de modelos configurados, incluidos modelos de código abierto en el plan gratuito, cuyos proveedores pueden registrar y usar los mensajes conforme a sus propios términos). También usamos GitHub (EE.UU., acceso a repositorios) y Brevo (Francia, correo transaccional). No vendemos sus datos personales ni su código.

Derechos ARCO y revocación

Usted puede ejercer sus derechos de Acceso, Rectificación, Cancelación y Oposición, así como revocar su consentimiento o limitar el uso o divulgación de sus datos, enviando una solicitud desde el correo de su cuenta a hello@codqual.com, indicando el derecho que desea ejercer. Verificaremos su identidad y responderemos dentro de los plazos que marca la ley. La autoridad competente en materia de protección de datos es la Secretaría Anticorrupción y de Buen Gobierno.

Cambios al aviso

Cualquier cambio a este aviso se publicará en esta página, actualizando la fecha al inicio; los cambios significativos se notificarán además por correo electrónico al contacto de facturación de su organización.


Note on this draft

This page describes what the product actually does today, verified against the codebase. It is not legal advice, and the bracketed operator name and addresses must be filled in and the whole page reviewed by a lawyer before it is relied on as a binding notice.