Effective: February 1, 2025Last Updated: January 27, 2025

Privacy Policy

Your privacy is fundamental to how we build TeamFloe

Privacy at a Glance

  • • We only collect data necessary to provide our service
  • • Your code and repository data remains yours
  • • We never sell your personal information
  • • Data is encrypted in transit and at rest
  • • You can request deletion at any time
  • • We comply with Canadian privacy law (PIPEDA)

1. Introduction

TeamFloe ("TeamFloe", "we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our engineering analytics platform (the "Service").

This policy complies with the Personal Information Protection and Electronic Documents Act (PIPEDA) and other applicable Canadian privacy laws. We are committed to the ten privacy principles established by PIPEDA.

By using TeamFloe, you consent to the data practices described in this policy. If you do not agree with this policy, please do not use our Service.

2. Information We Collect

2.1 Information You Provide Directly

  • Account Information: Name, email address, GitHub username
  • Organization Information: Company name, team structure, role
  • Payment Information: Processed securely through Stripe (we don't store card details)
  • Communications: Support tickets, feedback, email correspondence

2.2 Information from GitHub Integration

  • Repository Data: Code metadata, commit history, branch information
  • Pull Request Data: PR titles, descriptions, review comments, status
  • Contributor Data: GitHub usernames, commit authors, review activity
  • Issue Data: Issue metadata, labels, milestones (if accessible)
  • Organization Data: Team membership, repository permissions

Note: We analyze code metadata but do not store your actual source code.

2.3 Automatically Collected Information

  • Usage Data: Features used, pages visited, actions taken
  • Device Information: Browser type, operating system, screen resolution
  • Log Data: IP address, access times, referring pages
  • Cookies: Session cookies, preference cookies (see Cookie Policy)

2.4 AI-Generated Insights

We generate insights about your engineering practices using AI. These insights are derived from your data but are stored separately and can be deleted independently.

3. How We Use Your Information

3.1 Primary Purposes

  • Provide and maintain the TeamFloe service
  • Calculate DORA metrics and engineering analytics
  • Generate AI-powered insights and recommendations
  • Send weekly reports and notifications you've requested
  • Process payments and manage subscriptions
  • Provide customer support and respond to inquiries

3.2 Service Improvement

  • Analyze usage patterns to improve features
  • Debug issues and improve performance
  • Develop new features based on user needs
  • Create anonymized industry benchmarks

3.3 Legal and Safety

  • Comply with legal obligations
  • Enforce our Terms of Service
  • Protect against fraud and abuse
  • Protect rights, property, and safety

4. Legal Basis for Processing

We process your personal information based on:

  • Consent: You've given consent for specific purposes
  • Contract: Processing is necessary to fulfill our contract with you
  • Legitimate Interests: For business operations, provided your rights aren't overridden
  • Legal Obligations: When required by law

You may withdraw consent at any time by contacting us, though this may limit your ability to use certain features.

5. Information Sharing and Disclosure

We do not sell, trade, or rent your personal information.

5.1 Service Providers

We may share information with trusted third-party service providers:

  • Infrastructure: Vercel, AWS (hosting and computing)
  • Database: PostgreSQL hosting providers
  • Payment Processing: Stripe
  • Email Services: SendGrid
  • Analytics: PostHog, Mixpanel (if implemented)
  • Support: Intercom or similar (if implemented)

All service providers are bound by confidentiality agreements and can only use your data to provide services to us.

5.2 Aggregated Data

We may share anonymized, aggregated data (like industry benchmarks) that cannot identify you personally.

5.3 Legal Requirements

We may disclose information if required by:

  • Court order or legal process
  • Government or regulatory request
  • To protect our rights or property
  • To prevent illegal activities or harm

5.4 Business Transfers

In case of merger, acquisition, or sale of assets, your information may be transferred. We will notify you before any such transfer.

6. Data Storage and Security

6.1 Data Location

Your data is primarily stored in North America (Canada and United States). By using TeamFloe, you consent to the transfer and processing of your data in these locations.

6.2 Security Measures

We implement industry-standard security measures including:

  • Encryption in transit (TLS/SSL)
  • Encryption at rest for sensitive data
  • Access controls and authentication
  • Regular security audits and updates
  • Secure development practices
  • Incident response procedures

6.3 Data Breach Notification

In the event of a data breach that poses a real risk of significant harm, we will notify you and relevant authorities as required by PIPEDA, typically within 72 hours of discovery.

7. Data Retention

7.1 Active Accounts

We retain your data as long as your account is active or as needed to provide services.

7.2 After Account Termination

  • Account data: Retained for 60 days then deleted
  • Backup data: Purged within 90 days
  • Anonymized analytics: May be retained indefinitely
  • Legal records: Retained as required by law

7.3 Data Export

Paid accounts may request data export during the retention period. Export requests should be sent to privacy@teamfloe.com.

8. Your Privacy Rights

Under PIPEDA, you have the right to:

Access Your Information:

Request a copy of the personal information we hold about you

Correct Your Information:

Request corrections to inaccurate or incomplete information

Delete Your Information:

Request deletion of your personal information (with some exceptions)

Port Your Data:

Receive your data in a structured, machine-readable format

Withdraw Consent:

Withdraw consent for processing where consent is the legal basis

Object to Processing:

Object to certain types of processing like marketing

To exercise these rights, contact privacy@teamfloe.com. We will respond within 30 days. We may request identity verification for security.

9. International Users

9.1 GDPR (European Users)

If you're in the European Economic Area, you have additional rights under GDPR. We process EU data under legitimate interests and consent bases. You may contact our EU representative at privacy@teamfloe.com.

9.2 California Residents (CCPA)

California residents have additional rights under CCPA, including the right to opt-out of data sales (which we don't do) and non-discrimination for exercising privacy rights.

9.3 International Transfers

We use appropriate safeguards for international data transfers, including standard contractual clauses and adequacy decisions.

10. Children's Privacy

TeamFloe is not intended for users under 18 years of age. We do not knowingly collect personal information from children. If we discover we've collected information from a child under 18, we will delete it immediately.

If you believe we have information from a child under 18, please contact privacy@teamfloe.com immediately.

11. Cookies and Tracking

We use cookies and similar technologies for:

  • Essential Cookies: Required for site functionality
  • Analytics Cookies: Understanding usage patterns
  • Preference Cookies: Remembering your settings

For detailed information, see our Cookie Policy.

12. Third-Party Links

Our Service may contain links to third-party websites. We are not responsible for the privacy practices of these sites. We encourage you to review their privacy policies.

13. Changes to This Policy

We may update this Privacy Policy periodically. We will notify you of material changes via email or through the Service at least 30 days before they take effect.

Your continued use after changes constitutes acceptance of the updated policy.

14. Privacy Officer & Contact

Our Privacy Officer oversees compliance with this policy and privacy laws.

Privacy Officer Contact:

TeamFloe

Email: privacy@teamfloe.com

General inquiries: support@teamfloe.com

Website: https://teamfloe.com

For privacy complaints that cannot be resolved directly with us, you may contact the Privacy Commissioner of Canada at:

Office of the Privacy Commissioner of Canada

30 Victoria Street

Gatineau, Quebec K1A 1H3

Toll-free: 1-800-282-1376

Website: www.priv.gc.ca

Your Privacy Matters

We are committed to protecting your privacy and handling your data with care and respect. If you have any questions or concerns, please don't hesitate to contact us.

This Privacy Policy was last updated on January 27, 2025 and is effective as of February 1, 2025.