CritGuard

Privacy Policy

Last updated: August 4, 2026

CritGuard (“we”, “us”) is a GitHub App that reviews pull requests for production-impacting business-logic risks. This policy explains what we process when you install or use CritGuard.

Who this applies to

This policy applies to GitHub users and organizations that install CritGuard, and to people who open pull requests in repositories where CritGuard is installed or who use CritGuard feedback links.

Data we process

How we use data

Third-party services

CritGuard sends pull request diffs and related review context to an OpenAI-compatible LLM provider (for example OpenAI or Freemodel) to generate findings. We also use hosting infrastructure (application servers and databases) to run CritGuard. GitHub processes data according to GitHub’s own terms and privacy policy when you use GitHub.

What we do not do

Retention

We retain review records, feedback, and operational logs as long as needed to provide the service, enforce limits, debug issues, and meet legal obligations. You can uninstall the GitHub App at any time to stop new processing for your repositories.

Security

We use industry-standard measures appropriate to a small SaaS service, including secrets for webhook verification and signed feedback links. No method of transmission or storage is perfectly secure.

International transfers

Depending on where CritGuard and its LLM/hosting providers operate, data may be processed in countries other than your own. Those providers apply their own safeguards and terms.

Your choices

Children

CritGuard is intended for professional software development use and is not directed at children.

Changes

We may update this policy from time to time. The “Last updated” date at the top will change when we do. Continued use after updates means you accept the revised policy.

Contact

Privacy questions: Support or open an issue at github.com/hossein25/critguard/issues.