Skip to content

Privacy Policy

Version 4 · Last updated August 25, 2026

Effective date: 25 August 2026 · Version 4

This Privacy Policy explains how Athleon Labs Inc. ("Athleon Labs", "we", "us"), a corporation incorporated in Manitoba, Canada, handles personal information in connection with DiffGuardian — the desktop application, the website at diffguardian.ai, and the account and subscription service.

The short version

DiffGuardian is a desktop application that reviews code on your machine.

  • We do not receive, store or process your source code. There is no endpoint on our servers that accepts code, diffs or repository contents.
  • When you use your own AI provider key, your code goes directly from your machine to that provider, under your agreement with them.
  • When you use an on-device model, your code does not leave your machine at all.
  • What we do hold is an account record, a subscription record, a registration record for each device you install on, your acceptance of these policies, and — only if you opt in — anonymous product analytics.

What we collect

Account information. When you create an account we receive your email address, and your name and profile image if your sign-in provider supplies them. Sign-in is handled by Clerk; we do not receive or store your password.

Subscription information. If you subscribe, our payment processor Stripe processes your payment. We store a customer identifier, a subscription identifier, your plan tier, subscription status and current period end. We never receive or store your full payment card details.

Legal acceptances. When you accept our policies we record which document and version you accepted, the time, and the IP address and browser/application user agent of the request. We keep this because it is the evidence that an agreement was formed.

Device registration. Each installation of the desktop app creates a security key so we can recognise it on your account. We store the public half of that key together with your operating system and app version. The private half is generated on your machine, kept in your system keychain, and is never sent to us. We use this to keep your account secure and to withdraw access from an individual installation without affecting your other devices. We do not record your IP address for this.

Support, feedback and survey responses. If you submit a rating, an NPS response or feedback, we store your score and any free-text comment you write. Please do not include confidential information in free-text comments.

Diagnostics and usage (opt-in). The application can send anonymous product-usage analytics (PostHog) and error diagnostics (Sentry). These are engineered not to carry your code: error reports are scrubbed of token-shaped strings, URLs are reduced to their origin, home-directory paths are redacted, and crash memory dumps are never transmitted. See the Security & Data Handling page for specifics.

Website visitors. The marketing site collects limited analytics such as pages viewed, approximate region, device and browser type, and IP address.

What we do not collect

We do not collect your source code, diffs, commit contents, repository names, file paths, prompts or AI output. We do not sell personal information, and we do not use your code to train models — we have no access to it.

How we use information

  • To provide and operate the Service, including authentication and entitlement.
  • To process payments, manage subscriptions and prevent payment fraud.
  • To provide support and respond to you.
  • To keep the Service secure, detect abuse and debug faults.
  • To understand aggregate usage and improve the product.
  • To meet legal, tax and accounting obligations.

Our legal bases, where applicable law requires one, are performance of our contract with you, our legitimate interests in operating and securing the Service, your consent (for optional analytics), and compliance with legal obligations.

Who we share it with

We share personal information only with service providers who process it on our behalf, and only as needed to run the Service:

  • Clerk — authentication and identity.
  • Stripe — payments and subscription billing.
  • Vercel — application hosting.
  • Neon — the database holding account records.
  • Sentry — error diagnostics.
  • PostHog — product analytics (only if you opt in).
  • Resend — transactional email.
  • Cloudflare — content delivery and application downloads.

Model providers you configure yourself are not our processors: you send data to them directly, under your own agreement with them.

We may also disclose information where required by law, to enforce our terms, to protect rights and safety, or in connection with a merger, acquisition or sale of assets — in which case we will give notice before your information becomes subject to a different policy.

International transfers

We are based in Canada and our providers operate in Canada, the United States and the European Union. Where personal information is transferred across borders, we rely on the provider's contractual safeguards, including standard contractual clauses where applicable.

Retention

We keep account records while your account is active and for a reasonable period afterwards. Legal acceptance records and billing records are kept as long as needed for legal, tax and accounting purposes; the IP address and user agent recorded alongside a legal acceptance are erased after 12 months, while the record of what you accepted is kept. Free-text comments in ratings and NPS responses are erased after 12 months, while the score is kept. Device registration records are kept until you delete your account or the device is deregistered. Diagnostic data is kept on a rolling short-term basis. Deleting your account removes your account record, your device registrations and associated feedback responses.

Your rights and choices

Depending on where you live, you may have the right to access, correct, delete, or export your personal information, to object to or restrict certain processing, and to withdraw consent.

  • Delete your account from within the application at any time. This deletes your account record from our systems.
  • Turn analytics off in Settings. Optional analytics are consent-based and can be withdrawn at any time.
  • Contact us at support@diffguardian.ai to exercise any other right. We will respond within the time required by applicable law.

If you are in Canada and are not satisfied with our response, you may complain to the Office of the Privacy Commissioner of Canada. If you are in the EEA or UK, you may complain to your local supervisory authority.

Children

DiffGuardian is not directed to children and is not intended for use by anyone under the age of majority in their jurisdiction without the consent of a parent or guardian. We do not knowingly collect personal information from children.

Security

We describe our technical and organisational measures in Security & Data Handling. No system is perfectly secure, but the strongest protection here is architectural: the data most sensitive to you — your code — is never sent to us in the first place.

Changes

We may update this policy. Material changes will be published with a new version number and effective date, and we will seek your acceptance where required.

Contact

Athleon Labs Inc., Manitoba, Canada — support@diffguardian.ai