AuditHQ

Privacy Policy

Last updated: August 19, 2026

AuditHQ (“we”) respects your privacy. This policy explains what we collect and how we use it.

Data we collect

GitHub and your source code

Connecting GitHub is optional and available on paid plans. You install our GitHub App and choose which repositories it may read. We request read-only access to contents and metadata. We do not write to your repositories.

Access is dedicated to your AuditHQ account. We do not use one customer’s GitHub grant to read another customer’s code. We do not share repository contents across accounts. We do not use your source code to train models. We do not store a personal access token; we store the GitHub App installation id and mint a short-lived token only while an audit of that project is running. Private file bodies are not written into the shared lookup cache used for public repositories.

You can disconnect GitHub in Settings, or revoke the app in GitHub. After that we cannot read the private repositories from that grant. Audit reports already saved remain in your account until you delete the project or request account deletion.

How we use data

We use data to provide audits, store history, improve reliability, prevent abuse, and communicate service updates. We do not sell personal data.

Storage & processors

Data may be stored via our production infrastructure, including Vercel hosting, Firebase (Firestore, Storage, Auth), and Amazon S3 as needed. Processors act under contracts and only as required to run AuditHQ.

Retention

Free accounts keep limited audit history. You may request deletion of your account by emailing support@audithq.app.

Your rights

Depending on your location, you may request access, correction, export, or deletion of personal data.

Your Privacy Choices

We do not sell personal data. If you want to opt out of any sale or sharing of personal information as defined under CCPA/CPRA, or to exercise related privacy choices, email support@audithq.app. We also process Global Privacy Control (GPC) signals when your browser sends Sec-GPC: 1.

Contact

support@audithq.app