Privacy Policy

Last updated July 26, 2026 · Codespective (codespective.com)

Who we are

Codespective (“we”, “us”) provides software that helps you understand your product and codebase — including GitHub repository analysis, product specifications, architecture views, and LaunchGuard readiness scoring. This policy describes how we handle information for the MVP at codespective.com.

Account & authentication

You may create an account with email/password or sign in with GitHub via our authentication provider (Supabase Auth). We store account identifiers such as user id, email, and profile display name.

GitHub connection

If you connect GitHub, we receive an OAuth access token with the scopes you approve (typically read:user and repo). That token is encrypted at rest on our servers and is used only to list repositories, import source for analysis, and refresh project readiness. We do not store the token in browser localStorage. You may disconnect GitHub at any time in Settings, which deletes the stored token.

Project & analysis data

When you import a repository or generate a Build Pack, we may store project metadata, readiness summaries, and analysis graphs associated with your account so you can switch projects and refresh scores. Analysis may include excerpts of repository files necessary to build the perspective (subject to ingest limits).

AI processing

Optional AI enrichment may send project context to configured model providers (for example OpenAI or Google). You may supply your own API keys in the browser for some features; those keys are used to call providers on your behalf and are not intended for long-term server storage. Do not paste secrets into prompts that you do not want processed by those providers.

Cookies & local storage

We use cookies for authenticated sessions (Supabase). Some preferences may use browser localStorage on your device. Clearing site data removes local preferences.

Data retention & deletion

You may request deletion of your account data by contacting us. Disconnecting GitHub removes stored OAuth tokens. We retain project data while your account is active unless you delete projects or request erasure.

Sharing

We use infrastructure providers (hosting, database, auth) as processors. We do not sell your personal data. Shared public links you create may expose project documentation you choose to share.

Children

Codespective is not directed at children under 16.

Changes

We may update this policy as the product evolves. Material changes will be reflected by updating the date above.

Contact

Privacy questions: [email protected]. Also see our Support page.