Last updated: July 2025
Information We Collect
StackPilot collects and processes information necessary to provide our AI-powered incident response service effectively. This includes:
Account and Profile Information
- Basic account details (name, email, company information)
- Team membership and role assignments
- Billing and subscription information
- Authentication data and security preferences
Integration and Technical Data
- Connected service tokens and authentication credentials
- Repository metadata, commit information, and code change patterns
- Error logs, stack traces, and performance metrics from integrated monitoring tools
- Incident data, alert information, and resolution workflows
- Usage analytics and feature interaction data
Source Code and Repository Data
- Code Content: Source code files, functions, classes, and implementation details from connected repositories
- Code Structure: File organization, dependencies, import patterns, and architectural relationships
- Code History: Commit diffs, change patterns, author information, and modification timestamps
- Code Quality Metrics: Complexity analysis, code coverage data, and quality assessment indicators
- Deployment Artifacts: Build configurations, deployment scripts, and environment-specific code variations
- Code Annotations: Comments, documentation, and developer-added metadata within source files
Communication and Collaboration Data
- Slack messages and channel interactions during incident response
- Comments, annotations, and investigation notes
- Playbook content and team-generated runbooks
- User feedback and improvement suggestions
How We Use Your Information
We process your information to deliver and improve our incident response platform:
Core Service Delivery
- Incident Analysis: Analyzing logs, code changes, and error patterns to identify root causes
- Code Analysis: Examining source code structure, patterns, and implementation details to understand system behavior
- AI Enhancement: Training our machine learning models on code patterns, incident correlations, and resolution strategies
- Automated Response: Generating log queries, investigation steps, and code fixes based on code analysis
- Code Fix Generation: Creating proposed code changes, patches, and pull requests based on identified issues
- Team Collaboration: Facilitating communication and knowledge sharing during incidents
Platform Improvement
- Analyzing usage patterns to enhance product features and user experience
- Developing new AI capabilities based on aggregated incident patterns and code analysis
- Training AI models on code repositories to improve fix generation and pattern recognition
- Creating anonymized code pattern databases for enhanced incident prediction
- Improving integration reliability and expanding tool compatibility
- Conducting security assessments and system optimization
Business Operations
- Processing payments and managing subscriptions
- Providing customer support and technical assistance
- Sending important service updates and security notifications
- Conducting research and development for new features
Source Code Access and Analysis
To provide effective AI-powered incident response, StackPilot requires comprehensive access to your source code repositories and related development artifacts:
Code Access Authorization
By connecting your repositories to StackPilot, you explicitly authorize us to:
- Read and Analyze Source Code: Access all source code files, including but not limited to application code, configuration files, scripts, and documentation
- Process Code Structure: Analyze code architecture, dependencies, design patterns, and implementation approaches
- Track Code Changes: Monitor commits, pull requests, merges, and all code modification activities
- Analyze Code Quality: Assess code complexity, performance characteristics, security patterns, and maintainability metrics
- Extract Code Patterns: Identify coding conventions, error patterns, and architectural decisions for AI training purposes
AI Model Training with Code Data
Your source code contributes to improving StackPilot's AI capabilities through:
- Pattern Recognition Training: Teaching our AI to recognize common coding patterns, anti-patterns, and potential issue areas
- Fix Generation Models: Training AI to generate appropriate code fixes based on similar issues in our anonymized dataset
- Technology Stack Learning: Helping our AI understand different frameworks, languages, and architectural approaches
- Incident Correlation: Connecting code changes with incident outcomes to improve predictive capabilities
- Best Practices Development: Aggregating successful code resolution patterns across our customer base
Code Data Processing and Anonymization
We process your code data with the following safeguards:
- Anonymization for Training: Code patterns used for AI training are stripped of identifying information, company names, and proprietary business logic
- Aggregated Learning: Individual code implementations are aggregated with patterns from other customers to create generalized learning models
- Secure Processing: All code analysis occurs in secure, encrypted environments with access limited to authorized AI training processes
- Contextual Analysis: Code is analyzed in context with incident data to improve correlation accuracy and fix suggestions
Code-Based Service Features
Access to your source code enables advanced StackPilot features including:
- Automated root cause analysis connecting errors to specific code changes
- AI-generated code fixes and pull request creation
- Proactive identification of potential issues based on code patterns
- Customized investigation workflows based on your technology stack
- Code quality insights and improvement recommendations
- Deployment risk assessment based on code change analysis
Information Sharing and Disclosure
We maintain strict controls over your data while enabling necessary sharing for service delivery:
Within Your Organization
- Team members with appropriate access levels can view incident data and analysis
- Workspace administrators can access team-wide analytics and configuration data
- Billing contacts receive subscription and payment information
Service Providers and Partners
- Cloud infrastructure providers for secure data storage and processing
- AI and machine learning service providers for analysis capabilities
- Payment processors for billing and subscription management
- Security and monitoring services for platform protection
Legal and Compliance
- When required by law, court order, or government regulation
- To protect our rights, property, or safety, or that of our users
- In connection with business transfers, mergers, or acquisitions
- With your explicit consent for specific purposes
Data Security and Retention
We implement comprehensive security measures to protect your information:
Technical Safeguards
- End-to-end encryption for data transmission and storage
- Multi-factor authentication and role-based access controls
- Regular security audits and penetration testing
- Automated threat detection and incident response procedures
Data Retention
- Incident Data: Retained for the duration of your subscription plus 90 days for transition purposes
- Source Code Data: Code analysis results retained during subscription period; anonymized code patterns may be retained indefinitely for AI model improvement
- Account Information: Maintained while your account is active and for legitimate business purposes thereafter
- Analytics Data: Aggregated and anonymized data may be retained indefinitely for product improvement
- AI Training Data: Anonymized code patterns, incident correlations, and resolution strategies may be retained permanently to enhance our AI models
- Legal Requirements: Some data may be retained longer to comply with applicable laws
Your Rights and Choices
You have several rights regarding your personal information:
Access and Control
- Data Access: Request copies of your personal information and incident data
- Data Correction: Update or correct inaccurate information in your account
- Data Deletion: Request deletion of your personal information (subject to legal and operational requirements)
- Data Portability: Export your data in machine-readable formats
Privacy Settings
- Configure data retention periods within legal and operational limits
- Control integration data sharing and analysis scope
- Manage communication preferences and notification settings
- Adjust AI learning settings and model training participation
International Data Transfers
StackPilot operates globally and may transfer data across borders to provide our services effectively. We ensure adequate protection through:
- Standard contractual clauses approved by relevant data protection authorities
- Adequacy decisions for countries with equivalent privacy protections
- Additional safeguards and security measures for sensitive data
- Compliance with applicable data localization requirements
Changes to This Policy
We may update this privacy policy to reflect changes in our practices, legal requirements, or service offerings. We will notify you of material changes through:
- Email notifications to your registered email address
- In-app notifications when you next access the service
- Updates posted on our website and legal pages
- For significant changes, we may require explicit consent
Contact Information
If you have questions about this privacy policy or our data practices, please contact us:
We will respond to privacy-related inquiries within 30 days and work with you to resolve any concerns about our data handling practices.