Legal
Privacy
Plain-English privacy policy is being drafted before public launch. The short version, which reflects how the product is actually built:
- Annotations contain only what's needed to reproduce an issue: locator, element fingerprint, page context, and a pruned DOM snapshot. Form values and common PII patterns are masked before anything is stored.
- Console and network capture is bounded and masked by default; each project controls which URL parameters are kept.
- Screenshots are optional and off unless a project turns them on. When capture fails, the annotation degrades gracefully — it never blocks on collecting more data.
- Reporters never need an account. Identity is a name/email you type yourself, or a session you're already signed in with.
- You can self-host the entire stack — app, database, storage — so annotations never leave infrastructure you control.
Questions about data handling? [email protected]