Privacy Policy
Last updated: June 8, 2026
Your trust matters. This policy describes how we handle your data when you use Mergelint.
1. Overview
This Privacy Policy explains what information Mergelint collects, how we use it, and the choices you have. It applies to the website, the dashboard, and the GitHub App.
2. Information We Collect
Account information: your name, email address, and the organization you belong to, along with authentication details when you sign in with GitHub.
GitHub installation data: the repositories you authorize, installation identifiers, and metadata about pull requests and pushes needed to trigger and post reviews.
Repository content: the code, diffs, and file contents we read in order to generate a review. We also derive and store vector embeddings and a code index to provide repository-aware context.
Usage data: logs, request metadata, and diagnostic information used to operate, secure, and improve the Service.
3. How We Use Information
We use the information we collect to authenticate you, generate and post code reviews, maintain the codebase index, enforce rate and usage limits, provide support, and improve the reliability and quality of the Service.
We do not sell your personal information.
4. Third-Party Services
We rely on GitHub for source access and identity, and on AI model providers to generate embeddings and review comments. Repository content may be transmitted to these providers only as needed to produce a review, subject to their respective terms and security practices.
5. Data Retention
We retain account and configuration data for as long as your account is active. Derived data such as the code index is retained to serve reviews and is removed or refreshed when repositories are uninstalled or re-indexed. You can request deletion of your data at any time by contacting us (see the Contact section below).
6. Security
We use industry-standard measures to protect data in transit and at rest, scope repository access to what you authorize, and isolate tenant data. No method of transmission or storage is completely secure, so we cannot guarantee absolute security.
7. Your Rights
Depending on your jurisdiction, you may have the right to access, correct, export, or delete your personal information. You can exercise these rights, or uninstall the GitHub App to stop further processing, at any time.
8. Cookies
We use a small number of essential cookies to keep you signed in and to operate the dashboard. We do not use cookies for third-party advertising.
9. Changes to This Policy
We may update this policy from time to time. When we make material changes, we will update the “Last updated” date above and, where appropriate, provide additional notice.
10. Contact
For privacy questions or data requests, contact us at info@makama.dev.