Privacy Policy
Last updated: October 6, 2026
This policy covers honest-ci.dev and the data you give us. Wenchao Gou, the developer of honest-ci (“we”, “us”), is responsible for it. Contact: support@honest-ci.dev.
- honest-ci, the software, runs in your CI and sends us nothing.
- This website sets no cookies of its own and doesn’t track you.
- We keep what you send through our form, what you write to us, and what Paddle tells us about your purchase. We use it to answer you, issue your license and decide what to build, and we never sell it.
honest-ci, the software
honest-ci runs on your CI runners. It sends us no code, no usage data and no telemetry, and its license check works offline. If you configure an AI model, honest-ci sends that model’s provider the pull request’s diff and related text, under your own account; that provider’s privacy terms apply.
What we collect, and why
The form on the pricing page
Your email, your team’s size, which coding agents open your pull requests, which features you’d pay for, and anything you add. We use it to tell you when payments open and, at most once, to ask about your answers. The legal basis is your consent, which you give with the box on the form and can withdraw at any time. It is stored in a database hosted by Cloudflare.
Email you send us
Your address and what you write, used to answer you, on the basis of our legitimate interest in supporting the people who use honest-ci, or of our contract when you are a customer. Mail to support@honest-ci.dev is kept in a mailbox hosted by Proton.
Purchases
Paddle, our reseller and Merchant of Record, runs checkout. It collects your payment details, billing address and tax information as a separate controller, under its own privacy policy, and we never see your card. Paddle tells us your name, email, billing address, what you bought and when. We also ask for your GitHub organization’s name, to issue the license key. We use this to perform our contract with you or, when you buy for an organization, on the basis of our legitimate interest in serving that customer. We also keep the records tax and accounting law require.
A license key holds your organization’s GitHub name and numeric id, your plan, the number of people it covers, its dates and a license number. It holds nothing about any person.
Visits
Cloudflare Web Analytics counts page views without cookies and without identifying you. Like any web host, Cloudflare also processes visitors’ IP addresses to deliver this site and protect it from attacks. This rests on our legitimate interest in running a working, secure website.
Who processes it for us
- Cloudflare: hosting, the form’s database and analytics.
- Proton: the support mailbox.
Paddle isn’t one of them: as our reseller, it handles purchase data as a separate controller, under its own privacy policy. We don’t sell personal data or share it for advertising.
Where it is
We are based in China and read this data from there. Cloudflare stores and processes it for us in several countries, including the United States, under a data processing agreement that protects data sent out of the EU and the UK, for example with the European Commission’s standard contractual clauses. Proton keeps our mailbox in Switzerland, Germany and Norway, under a data processing agreement; the EU and the UK recognize Switzerland as protecting personal data adequately. Email us for a copy of these safeguards. Paddle handles purchase data under its own privacy policy.
If you are in mainland China
What you give us is stored outside mainland China, and we read it in mainland China. These companies store it:
- Cloudflare, Inc., privacyquestions@cloudflare.com: hosts this site, keeps the form’s answers and counts visits, on its network outside mainland China; the form’s answers are kept in the Asia-Pacific region. It handles your answers, including your email address, and your IP address.
- Proton AG, legal@proton.me: hosts the mailbox we read your email in and write to you from, in Switzerland, Germany and Norway. It handles your email address and messages.
- Paddle (Paddle.com Market Limited and its affiliates), privacy@paddle.com: sells honest-ci and runs checkout, under its own privacy policy. It handles your name, email, billing address, payment and tax details, and what you bought, in the UK, Ireland, the US, Canada and other countries, as its privacy policy describes.
How long we keep each kind of data is under How long we keep it. To exercise your rights with any of them, email us at support@honest-ci.dev, or contact them directly.
The form asks for your agreement with a box. If you write to us, or buy for an organization, after reading this section, you agree to your data being stored and read as described here. If you buy for yourself, we handle your data to perform our contract with you.
How long we keep it
- The form: until you ask us to delete it, and at most 24 months after you last sent it.
- Email: as long as we need it to help you, and at most 3 years.
- Purchase and license records: as long as tax and accounting law requires.
Your rights
You can ask to see, correct, export or delete your data, object to how we use it, or withdraw your consent. Email support@honest-ci.dev and we’ll answer within one month. You can also complain to the data protection authority where you live.
Children
honest-ci is for software teams. It isn’t directed at children, and we don’t knowingly collect their data.
Changes
We’ll post any change here with a new date, and if it matters to you and we have your email, we’ll write to you.