Privacy Policy
Last updated: December 2024
Introduction
ContextKeeper ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service at contextkeeper.dev and our VS Code extension.
Information We Collect
Information You Provide
- AI Conversation Data: The conversations you save with AI assistants, including code snippets, project details, and development context
- Account Information: Email address, username, and billing information (for Pro subscribers)
- Usage Preferences: Settings, filters, and customization preferences
Information We Automatically Collect
- Usage Analytics: How you interact with our service, feature usage patterns, and performance metrics
- Technical Information: IP address, browser type, device information, and operating system
- Session Data: Login times, session duration, and activity logs
How We Use Your Information
- Service Provision: Store, organize, and search your AI conversations
- AI-Powered Insights: Analyze your development patterns and provide productivity insights
- Account Management: Manage your subscription, billing, and customer support
- Service Improvement: Improve features, fix bugs, and enhance user experience
- Security: Detect and prevent fraud, abuse, and security threats
- Communication: Send important updates, support responses, and marketing (with your consent)
Data Storage and Security
Where Your Data is Stored
- Your conversation data is stored securely using Supabase (PostgreSQL) with encryption at rest
- Data centers are located in the United States with SOC 2 compliance
- Backups are encrypted and stored in multiple geographic locations
Security Measures
- End-to-end encryption for data in transit using TLS 1.3
- Database encryption at rest using AES-256
- Regular security audits and vulnerability assessments
- Access controls and authentication for all system components
- Regular automated backups with encryption
Data Sharing and Disclosure
We do not sell, trade, or share your personal data with third parties for marketing purposes.
We may share information only in these limited circumstances:
- Service Providers: Trusted third-party services (Stripe for payments, Supabase for data storage) under strict data processing agreements
- Legal Requirements: When required by law, court order, or to protect our rights and safety
- Business Transfers: In case of merger, acquisition, or asset sale (users will be notified)
- With Your Consent: Any other sharing will require your explicit consent
Your Rights and Choices
Data Access and Control
- Access: View all your stored conversation data through your dashboard
- Export: Download all your data in JSON format anytime
- Delete: Remove individual conversations or delete your entire account
- Correction: Edit or update your conversation data and account information
Privacy Controls
- Analytics Opt-out: Disable usage analytics in your account settings
- Marketing Communications: Unsubscribe from promotional emails
- Data Retention: Set custom retention periods for your conversations
Cookies and Tracking
We use minimal cookies and tracking:
- Essential Cookies: For authentication, session management, and core functionality
- Analytics Cookies: Google Analytics to understand usage patterns (can be disabled)
- No Advertising Cookies: We don't use cookies for advertising or cross-site tracking
Data Retention
- Active Accounts: Conversation data stored indefinitely while your account is active
- Deleted Conversations: Permanently deleted within 30 days
- Closed Accounts: Data deleted within 90 days, with 30-day grace period for reactivation
- Billing Records: Retained for 7 years for tax and legal compliance
- Analytics Data: Aggregated, anonymized analytics retained for 2 years
Children's Privacy
ContextKeeper is not intended for users under 13 years of age. We do not knowingly collect personal information from children under 13. If we discover we have collected information from a child under 13, we will delete it immediately.
International Users
ContextKeeper is operated from the United States. If you are located outside the US, your information will be transferred to and processed in the US. By using our service, you consent to this transfer and processing.
GDPR Compliance (EU Users)
If you are in the European Union, you have additional rights under GDPR:
- Right to rectification of inaccurate data
- Right to erasure ("right to be forgotten")
- Right to restrict processing
- Right to data portability
- Right to object to processing
- Right to lodge a complaint with supervisory authority
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by:
- Posting the updated policy on this page
- Sending an email notification to registered users
- Displaying a notice in the application
Continued use of ContextKeeper after changes take effect constitutes acceptance of the new policy.
Governing Law
This Privacy Policy and your use of ContextKeeper are governed by the laws of the State of Texas, United States, without regard to conflict of law principles. Any disputes arising from this Privacy Policy or your use of our service will be subject to the exclusive jurisdiction of the courts located in Texas.
Contact Us
If you have questions about this Privacy Policy or your data, contact us:
Email: privacy@contextkeeper.dev
Third-Party Services
ContextKeeper integrates with these third-party services:
- Supabase: Database and authentication services - Privacy Policy
- Stripe: Payment processing - Privacy Policy
- Google Analytics: Usage analytics - Privacy Policy
- Resend: Email delivery - Privacy Policy