Privacy Policy
Last updated: August 2026
Data controller
Easy Patch (operator name and address to be completed before public launch). Contact: [email protected].
Data we collect
- GitHub profile (name, email, id)
- Commit messages you submit for generation
- Generated patch notes and Share Studio drafts
- Billing metadata via Stripe (we never store card numbers)
- Usage logs (IP, timestamps) for security and rate limiting
Legal basis (GDPR)
- Contract — providing the service you signed up for
- Legitimate interest — fraud prevention and abuse limits
- Consent — optional analytics cookies where applicable
Retention
- Account and patch note history — until you delete your account
- Billing records — as required by tax law (typically 6–10 years)
- Server logs — up to 30 days
Subprocessors
| Provider | Purpose | Location |
|---|---|---|
| Vercel | Hosting | EU / US |
| Supabase | Database | EU / US |
| Stripe | Payments | EU / US |
| Google (Gemini) | AI generation | US |
| Resend | Transactional email | US |
| Plausible | Analytics (optional) | EU |
International transfers
Some processors are outside the EEA. We rely on Standard Contractual Clauses or equivalent safeguards where required.
Your rights
Request access, correction, deletion, or portability at [email protected]. You may lodge a complaint with your local data protection authority.
Cookies
See our Cookie Policy for details on analytics and essential cookies.
Customize before launch
Add data controller identity and confirm retention periods with professional advice.