DPDevPulse
FeaturesPricingFAQ
Log inGet started

© 2026 DevPulse — Track your code. Level up your skills.

A Vireo product
PrivacyTermsDelete accountContactGitHub

Product analytics

May we count which parts of DevPulse you use? Anonymous product events only — no session recording, no repository contents, no reading of what you type. You can change this any time in settings.

Privacy Policy

Last updated July 10, 2026

1. Overview

Vireo DevPulse (“DevPulse”, “we”, “us”) analyzes GitHub activity, quiz results, and profile settings to help developers understand and share their skill profile. This policy explains what data we collect, how we store it, and your rights under the GDPR and similar laws.

2. Data We Collect

  • Account data: Email address, display name, avatar (from GitHub OAuth).
  • GitHub data: Public repository metadata, languages, contribution patterns, pull requests, and issues — fetched via the GitHub API using your OAuth token.
  • Quiz data: Your quiz answers, scores, proficiency levels, and session history.
  • Usage analytics: Anonymous usage events via PostHog (page views, feature interactions, conversion events). No tracking cookies.
  • Crash reports (web only): Error reports via Sentry, including stack traces and browser information. The Android app sends none — it has no crash reporting SDK.
  • Billing data: Subscription status and provider identifiers (Stripe or Google Play). We do not store full card numbers.
  • Launch-note email address: If you ask for the launch note on our website, we store the address you enter, the project you asked about, your language, and where the request came from (the campaign parameters in the link you used). We send one confirmation email first; unconfirmed addresses are deleted after three days. Confirmed addresses are kept with our email provider, Resend (EU region), until you unsubscribe, which you can do from any email we send. Lawful basis: consent, withdrawable at any time.
  • Portfolio data: Bio, theme selections, visibility settings, and public portfolio content.

3. Data Storage

Your data is stored in the following locations:

  • Appwrite (self-hosted): Primary database and authentication for all user data.
  • Cloudflare: Pages (web hosting), Workers (API), KV (caching), R2 (file storage).
  • PostHog: Anonymous analytics events (EU region).
  • Sentry: Error reports and crash data (EU region).
  • Resend: Transactional email and the launch-note list (EU region).
  • Stripe: Billing records and payment identifiers.
  • Google Play: Android billing records and purchase tokens.

4. GitHub Token Handling

GitHub OAuth tokens are stored encrypted in Appwrite Auth identities and are never exposed to the browser or mobile client. Tokens are only used server-side by the Cloudflare Worker to fetch your repository data via the GitHub API. You can revoke GitHub access at any time from your GitHub settings or by deleting your DevPulse account.

5. Cookie Usage

DevPulse uses minimal cookies: an Appwrite session cookie for authentication and a PostHog cookie for anonymous analytics. We do not use third-party tracking cookies, advertising cookies, or social media tracking pixels. No cookies are set for users who are not logged in (except for the optional analytics cookie, which can be disabled).

6. Your Rights (GDPR Articles 15, 17, 20)

  • Access (Art. 15): You can request a copy of all your data at any time from your account settings.
  • Erasure (Art. 17): Delete your account from settings. This triggers a cascade delete of all your data, including GitHub data, quiz results, portfolios, and billing records.
  • Export (Art. 20): Export your portfolio data as JSON from the portfolio editor.
  • Rectification (Art. 16): Update your profile, bio, and job preferences from settings.
  • Objection (Art. 21): Disable analytics from settings.

To exercise any of these rights, contact support@aver-web.se or use the in-app account deletion feature. If you no longer have the app installed, request deletion here instead — that page lists exactly what is removed and what is not.

7. Data Retention

GitHub data is cached for 7 days and refreshed on each sync. Quiz results and skill profiles are retained for the lifetime of your account. Account deletion removes your data within 30 days, except the transaction record Stripe and Google Play must keep under bokföringslagen (1999:1078) 7 kap. 2 §. Analytics data is retained according to PostHog’s data retention policy (default 1 year). Crash reports in Sentry are retained for 90 days. Launch-note addresses: unconfirmed, three days; confirmed, until you unsubscribe.

8. Data Sharing

We do not sell your data. We share data only with our service providers (Appwrite, Cloudflare, PostHog, Sentry, Stripe, Google Play, Resend) for the purpose of providing the service. These providers process data under their own GDPR-compliant agreements. Recruiter searches are opt-in and only display your public portfolio content.

9. Billing

Billing data is processed by Stripe on web and Google Play on Android. DevPulse stores subscription status, provider identifiers, and billing event history for access control and auditability. We do not store full card numbers — Stripe and Google Play handle all payment processing securely.

10. Contact

For access, correction, export, deletion, or any privacy-related requests, contact support@aver-web.se.