Privacy Policy

Last Updated: October 10, 2025

SecVibe ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use the SecVibe VS Code extension and related services (the "Service").

Please read this Privacy Policy carefully. By using the Service, you agree to the collection and use of information in accordance with this policy.

CRITICAL NOTICE: Your Responsibility for Sensitive Information

SecVibe does NOT currently filter, redact, or remove personally identifiable information (PII), secrets, credentials, API keys, passwords, tokens, or other sensitive data from any content you submit. You are solely responsible for ensuring that you DO NOT include any such sensitive information in your code, prompts, or other content submitted to SecVibe. Any sensitive information you include may be collected, stored, and processed by our systems.

1. Information We Collect

1.1 Information You Provide to Us

When you use SecVibe, we collect information that you voluntarily provide, including:

  • Account Information: Email address, username, and authentication credentials
  • Code and Prompts: Source code, code snippets, prompts, and other content you submit for analysis
  • Communications: Messages, feedback, and support requests you send to us

1.2 Information Automatically Collected

When you use the Service, we automatically collect certain information, including:

  • Usage Data: Features used, actions taken, time spent, frequency of use
  • Technical Data: IP address, browser type, operating system, device information, VS Code version
  • Performance Data: Error logs, crash reports, and diagnostic information
  • Analysis Results: Security findings, recommendations, and insights generated by SecVibe

1.3 Cookies and Similar Technologies

We may use cookies, web beacons, and similar tracking technologies to collect information about your interactions with the Service.

2. How We Use Your Information

Product Improvement and Development

We use the data we collect to improve, develop, and enhance SecVibe's capabilities and performance.

We use the information we collect for the following purposes:

PurposeDescription
Product ImprovementTrain and refine our security analysis models, algorithms, and detection capabilities
Service DeliveryProvide, maintain, and improve the functionality of the Service
Research & DevelopmentDevelop new features, tools, and security capabilities
AnalyticsUnderstand usage patterns, trends, and optimize user experience
CommunicationSend updates, security alerts, and respond to inquiries
SecurityDetect, prevent, and address technical issues, fraud, and security threats
Legal ComplianceComply with legal obligations and enforce our policies

3. Data Storage and Retention

3.1 Data Storage

We store your data on secure servers. The data you submit through SecVibe, including code samples, prompts, and analysis results, is stored and may be retained indefinitely to support ongoing product improvement and development.

3.2 Data Retention

We retain your information for as long as necessary to:

  • Provide you with the Service
  • Comply with legal obligations
  • Resolve disputes and enforce agreements
  • Improve and develop our products and services

We may retain anonymized or aggregated data indefinitely for research, analytics, and product development purposes.

4. How We Share Your Information

We may share your information in the following circumstances:

4.1 Service Providers

We may share your information with third-party service providers who perform services on our behalf, such as:

  • Cloud hosting and infrastructure providers
  • Analytics and monitoring services
  • Customer support platforms
  • Payment processors (if applicable)

4.2 Business Transfers

If SecVibe is involved in a merger, acquisition, financing, reorganization, bankruptcy, or sale of assets, your information may be transferred as part of that transaction.

4.3 Legal Requirements

We may disclose your information if required to do so by law or in response to valid requests by public authorities (e.g., court orders, subpoenas).

4.4 Protection of Rights

We may disclose your information when necessary to:

  • Protect the rights, property, or safety of SecVibe, our users, or others
  • Detect, prevent, or address fraud, security, or technical issues
  • Enforce our Terms and Conditions

4.5 With Your Consent

We may share your information for any other purpose with your explicit consent.

5. Data Security

We implement reasonable administrative, technical, and physical security measures to protect your information from unauthorized access, disclosure, alteration, and destruction. However, no method of transmission over the Internet or electronic storage is 100% secure.

Security Limitation

While we strive to protect your information, we cannot guarantee absolute security. You acknowledge that you transmit information to us at your own risk and that you are responsible for not submitting any PII, secrets, or sensitive information through the Service.

6. Your Rights and Choices

Depending on your location, you may have certain rights regarding your personal information:

6.1 Access and Correction

You may request access to or correction of your personal information by contacting us at privacy@secvibe.dev.

6.2 Data Deletion

You may request deletion of your account and associated personal information. However, please note that:

  • We may retain certain information as required by law or for legitimate business purposes
  • Anonymized or aggregated data derived from your use may be retained indefinitely
  • Deletion requests may take up to 30 days to process

6.3 Opt-Out of Communications

You may opt out of receiving promotional emails by following the unsubscribe instructions in those emails. Note that you cannot opt out of service-related communications.

6.4 Do Not Track

Our Service does not currently respond to "Do Not Track" signals from web browsers.

7. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. These countries may have data protection laws that are different from the laws of your country.

By using the Service, you consent to the transfer of your information to countries outside of your country of residence, which may have different data protection rules.

8. Children's Privacy

SecVibe is not intended for use by individuals under the age of 18. We do not knowingly collect personal information from children under 18. If we become aware that we have collected personal information from a child under 18, we will take steps to delete such information.

9. Third-Party Links and Services

The Service may contain links to third-party websites, applications, or services that are not operated by us. We have no control over and assume no responsibility for the content, privacy policies, or practices of any third-party services.

10. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by:

  • Posting the new Privacy Policy on this page
  • Updating the "Last Updated" date
  • Sending you an email notification (if you have provided an email address)

Your continued use of the Service after any changes to this Privacy Policy constitutes your acceptance of the revised policy.

11. California Privacy Rights

If you are a California resident, you may have additional rights under the California Consumer Privacy Act (CCPA), including:

  • The right to know what personal information we collect, use, and disclose
  • The right to request deletion of your personal information
  • The right to opt out of the sale of your personal information (Note: We do not sell personal information)
  • The right to non-discrimination for exercising your privacy rights

To exercise these rights, please contact us at privacy@secvibe.dev.

12. European Privacy Rights (GDPR)

If you are located in the European Economic Area (EEA), you have certain rights under the General Data Protection Regulation (GDPR), including:

  • Right of access to your personal data
  • Right to rectification of inaccurate data
  • Right to erasure ("right to be forgotten")
  • Right to restriction of processing
  • Right to data portability
  • Right to object to processing
  • Right to withdraw consent

To exercise these rights, please contact us at privacy@secvibe.dev.

13. Legal Basis for Processing (EEA Users)

If you are located in the EEA, our legal basis for collecting and using your personal information depends on the data concerned and the context in which we collect it:

  • Contract: Processing is necessary to perform our contract with you
  • Consent: You have given us explicit consent to process your data
  • Legitimate Interests: Processing is in our legitimate interests (e.g., improving our services) and does not override your rights
  • Legal Obligation: Processing is necessary to comply with the law

14. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Email: privacy@secvibe.dev

Website: https://secvibe.dev

Data Protection Officer: dpo@secvibe.dev

IMPORTANT REMINDER

SecVibe does NOT filter PII, secrets, credentials, or sensitive information. You are fully responsible for ensuring that you do not submit any such sensitive data through the Service. We are not liable for any exposure or misuse of sensitive information that you choose to submit.