← Back to home

Privacy Policy

Last updated: February 2026

1. Information We Collect

When you sign up for CodeSpec, we collect your name, email address, and profile image from your GitHub account via OAuth. We also store the project specifications you create and any assets you upload.

2. How We Use Your Data

We use your information to:

  • Provide and improve the CodeSpec service
  • Authenticate your account and manage your session
  • Send important service-related notifications
  • Process payments and manage your subscription plan

3. Data Storage

Your project specs are stored in our PostgreSQL database. Uploaded assets (logos, fonts, images) are stored on Cloudflare R2 object storage. All data is encrypted in transit via TLS.

4. Third-Party Services

We use the following third-party services:

  • GitHub — for authentication
  • Cloudflare R2 — for asset storage
  • OpenRouter — for AI-powered spec generation
  • Stripe / RevenueCat — for payment processing

5. Your Rights

You can delete your account and all associated data at any time from the Settings page. You can also export your specs as YAML files. If you have questions about your data, contact us at hello@codespec.ai.

6. Cookies

We use essential cookies only — session tokens for authentication and temporary cookies for API key display. We do not use tracking cookies or third-party analytics.

7. Changes

We may update this policy from time to time. We will notify you of significant changes via email or an in-app notice.