Privacy Policy
Version 1.0 — Effective: February 15, 2025
At DevLogg, we take your privacy seriously. This policy explains how we collect, use, and protect your data when you use our platform to create your developer portfolio.
What We Access
When you connect your GitHub account, we request read-only access to:
- Profile Information: Your name, bio, avatar, and public profile data
- Email Address: Read-only access to your email for account identification
- Public Repositories: Repository names, descriptions, languages, topics, commit statistics, and contribution data from your public repositories
- No Write Access: DevLogg never modifies, deletes, or makes any changes to your repositories. We only read data to build your portfolio.
From GitHub:
- Profile information (name, bio, avatar)
- Email address
- Repository data (names, descriptions, languages, topics)
- Contribution statistics
- Commit history counts
From LeetCode (if connected):
- Problem solving statistics
- Ranking and contest participation
- Skill ratings
From Other Platforms:
- Stack Overflow reputation and badges
- Dev.to articles and engagement
- Public profile information from connected platforms
Automatically Collected:
- IP address (hashed for privacy) and approximate geographic location
- Browser type and device information
- Pages visited and referral source
- Usage patterns and feature interactions (via analytics)
Essential Cookies
We use essential cookies that are necessary for the Service to function. These include authentication session cookies (managed by Supabase) and theme preference cookies. These cannot be disabled.
Analytics
We use PostHog for product analytics to understand how users interact with the Service. PostHog collects anonymized usage data such as page views, feature usage, and session duration. Analytics cookies are only activated after you provide consent via our cookie consent banner. You can withdraw consent at any time.
Visitor Tracking
For Pro users who enable analytics, we track visits to their public portfolio pages. Visitor data is privacy-safe: we use a one-way hash of visitor identifiers (IP + user agent) so individual visitors cannot be identified. We collect approximate location (country/region) from request headers.
- Portfolio Generation: To automatically create and update your developer portfolio with your coding activity and achievements
- Analytics: To provide insights about your portfolio visitors and engagement (if you enable analytics features)
- Service Improvement: To improve our platform and develop new features
- Account Management: To maintain your account and provide customer support
- Communication: To send important service updates, security alerts, and changes to our terms or policies
If you subscribe to DevLogg Pro, payment processing is handled by our third-party payment provider, Dodo Payments. We collect:
- Your email address and name (for billing)
- Subscription status and billing cycle
- Payment transaction identifiers
We do not store your full credit card number, CVV, or other sensitive payment details. All payment data is processed and stored securely by Dodo Payments in accordance with PCI-DSS standards.
- Encrypted Storage: All access tokens and sensitive data are encrypted in our database
- Secure Connections: We use HTTPS for all data transmission
- Limited Access: Your GitHub tokens are never exposed to the frontend and are only used by our secure backend services
- No Modifications: We never write to or modify your repositories or any connected platform data
Your Rights
You have the right to:
- Access your data at any time through your settings
- Disconnect any platform integration at any time
- Delete your account and all associated data
- Export your portfolio data
- Request information about what data we store
- Withdraw consent for non-essential cookies at any time
- Object to data processing for marketing purposes
Data Retention
We retain your data as long as your account is active. When you delete your account:
- All personal data is immediately deleted
- All access tokens are revoked
- Your portfolio becomes inaccessible
- Cached data is purged within 30 days
- Payment records are retained as required by law for accounting purposes
Third-Party Services
We use the following third-party services:
- Supabase: For authentication and database hosting
- Vercel: For application hosting
- GitHub API: For fetching your repository data
- PostHog: For product analytics (with your consent)
- Dodo Payments: For payment processing (Pro subscribers)
Each of these services has their own privacy policies which we encourage you to review.
Changes to This Policy
We may update this privacy policy from time to time. When we make significant changes, we will update the version number and effective date at the top of this page, and notify you through a notice within the Service. We encourage you to review this policy periodically.
Contact Us
If you have any questions about this privacy policy or your data, please contact us:
Questions?
We're committed to transparency. If you have any concerns about your privacy, please reach out.
Go to Home