Privacy policy
Last updated October 6, 2026
Who is responsible
[YOUR LLC NAME], [REGISTERED ADDRESS], New Mexico, USA (“we”), runs Repocellar and decides how the personal data described here is used. For EU and UK data protection law we are the controller. Contact us about privacy at privacy@repocellar.com.
Legal review required: confirm whether an EU representative (GDPR Art. 27) and UK representative are required, and add their details here.
What we store about you
- Your email address, an optional display name, and your password, which our authentication provider (Supabase) stores only as a salted hash.
- For each GitHub account you connect: its numeric id, username, avatar URL, the permissions you granted, and an access token encrypted with AES-256-GCM.
- Extension sessions (“connected devices”): a name, the browser’s user agent, and a hash of the session token. We do not store the token itself.
- Your subscription status and the customer id Paddle assigns to you.
- A security log of sign-ins, connections, backups, archives, restores and deletions, with IP address and user agent.
What we store about your repositories
- Metadata: owner, name, GitHub id, URL, description, visibility, default branch, counts (files, commits, branches, tags), and commit and ref ids.
- The backups you create: ZIP files containing source code or a bare Git repository, kept in private storage. Source code may itself contain personal data (for example commit author names and emails); you control what you back up.
Why we use it (legal bases)
- To provide the service you signed up for (performance of a contract): your account, GitHub connection, backups, archives, restores and subscription.
- To keep Repocellar secure and prevent abuse (legitimate interests): the security log, rate limits and fraud checks.
- To understand which features are used (legitimate interests, and you can opt out): a short list of product events, described below.
- To meet legal obligations: tax records held by Paddle, and responding to lawful requests.
We do not sell your personal data, share it for cross-context behavioral advertising, or use it to train AI models.
Who processes it for us
- Supabase — authentication and the PostgreSQL database for account data and metadata.
- Cloudflare (R2) — private storage for backup files, encrypted at rest by the provider.
- Vercel — hosting for the website and API.
- Paddle — our reseller and Merchant of Record. Paddle receives your email, billing address and payment details directly and is an independent controller for that data. We never see card numbers.
- GitHub — when you connect your account, Repocellar acts on GitHub on your behalf. GitHub’s privacy statement applies to data GitHub holds.
Legal review required: list hosting regions per provider, confirm data processing agreements are signed, and name the transfer mechanism (e.g. EU Standard Contractual Clauses / UK IDTA, or the EU-U.S. Data Privacy Framework) for each.
International transfers
Repocellar is run from the United States, and our providers may process data in the United States and other countries. Where EU or UK data leaves those regions, we rely on safeguards recognized by law, such as Standard Contractual Clauses.
How long we keep it
- Backups are kept until you delete them or close your account. A billing event — cancellation, failed payment, refund — does not delete backups.
- When you close your account, sign-in stops immediately and backups and account data are permanently deleted after 7 days. Copies in provider backups expire on the provider’s schedule.
- The security log is kept for up to 12 months after account closure, then deleted.
Legal review required: confirm the 12-month security log retention period.
GitHub permissions
repo to read repositories for backup and to push restores; read:org to list organizations you can restore into; delete_repo, requested only when you first archive a repository. You can revoke these at any time in your GitHub settings.
Product analytics
We record a short list of product events (for example “backup completed”) with your account id and coarse details such as backup type and a size range. We do not record repository names or contents. There are no third-party analytics, tracking pixels or advertising scripts. You can opt out in Settings → Account.
Cookies
We use only cookies that are strictly necessary to sign you in and to protect the GitHub connection step. See the cookie notice for the list.
Your rights
Depending on where you live, you can ask us to:
- give you a copy of your personal data, or send it to another service;
- correct data that is wrong;
- delete your data (you can also close your account yourself in Settings);
- restrict or object to processing based on legitimate interests, including product analytics;
- tell you what categories of data we collect and share (California residents and residents of other U.S. states with privacy laws).
Email privacy@repocellar.com from your account email. We answer within 30 days (45 days where U.S. state law allows) and will not treat you differently for exercising your rights. If you are in the EU or UK, you can also complain to your local data protection authority.
Children
Repocellar is not intended for children under 13, and we do not knowingly collect their data. If you believe a child under 13 has created an account, contact us and we will delete it.
Security
The measures we use are described on our security page. No system is perfectly secure; if a breach affects your personal data, we will notify you and the relevant authorities as the law requires.
Changes
If we make material changes to this policy, we will tell you by email or in the dashboard before they take effect.
[YOUR LLC NAME] · [REGISTERED ADDRESS], New Mexico, USA