Privacy Policy
1. Information we process
Account information
We process your email address and internal account identifiers to create your account, authenticate you, restore sessions and manage your plan.
Repository and engineering content
When you ask LoveCode to work on a project, the service may process repository files, source code, selected code, diffs, task prompts, task history, branch names, pull request state, CI results, build output, command output and related engineering context. This content is processed to perform the engineering task you requested.
Connected-provider information
LoveCode may process repository names, owners, visibility, branches, connected-provider scopes and resource identifiers. OAuth tokens or advanced personal access tokens are intended to be stored server-side in encrypted secret storage and are not returned to the mobile app as plaintext.
Usage and diagnostics
We may process product usage, credit or resource metering, task events, command/test/build results, runtime incidents and operational logs to provide the service, enforce plan limits, prevent abuse, recover tasks and diagnose failures. Secret-redaction controls are applied before sensitive operational data is persisted or surfaced.
2. Why we process data
- Provide account authentication and account management.
- Perform AI-assisted software engineering tasks you request.
- Connect to source-control, remote workspace, deployment and other providers you authorize.
- Persist task state so work can continue across reconnects and app restarts.
- Show truthful engineering evidence such as diffs, tests, builds and CI status.
- Protect the service, prevent abuse and diagnose reliability issues.
3. AI and third-party processors
To perform requested work, relevant engineering context may be sent to production providers enabled for LoveCode, such as an AI model provider, GitHub or GitLab, a remote workspace provider, cloud/database providers or monitoring providers. The exact production provider list can change as integrations are enabled or removed. LoveCode does not intentionally send unrelated repository content to a provider when it is not needed for the requested feature.
4. Advertising and tracking
LoveCode does not sell personal data, does not contain an advertising SDK in the current release design and is not intended to perform cross-app advertising tracking.
5. Device permissions
The current iPhone release does not intentionally request camera, microphone, location, Photos, Contacts or Bluetooth permissions. Future features that require protected device permissions will require an updated privacy review before release.
6. Data retention
Account, project, task and diagnostic data may be retained while needed to provide the service, maintain task history, protect security, meet operational requirements or comply with applicable law. Backup systems can retain deleted data for a limited backup-expiration period. LoveCode does not claim immediate physical erasure from immutable backups where the production infrastructure cannot guarantee it.
7. Account deletion
You can initiate account deletion directly inside LoveCode from Account → Delete account. The action requires explicit confirmation and is designed to remove the account and account-owned project, task, session, connection and related service data that is not legally required to be retained. Previously issued account access tokens are invalidated after deletion.
8. Security
LoveCode uses tenant isolation, scoped approvals for dangerous operations, encrypted server-side secret storage, redaction controls and production configuration gates designed to prevent mock or local-only infrastructure from being presented as production.
9. Your choices
You can disconnect supported providers, stop using a repository, sign out, and delete your LoveCode account. You remain responsible for permissions and data retained independently by third-party services you connected to LoveCode.
10. Changes
We may update this policy when LoveCode features, providers or data practices change. The date at the top of this page identifies the current published version.
11. Support
For privacy or account help, use the LoveCode Support page and the account-management controls available in the app. Never include API keys, access tokens, passwords or other secrets in a support report.