Privacy Policy
Last updated 2026-10-06
Dev Bench (developerbench.com) is operated by RedpointRack LLC (“we”). This policy covers two kinds of data: data about you, the person who signs in or writes to us, and data our sensors collect from your application on your behalf. We do not sell data, show ads, or run tracking or analytics scripts on this site.
Data about you
- Your GitHub account. When you sign in we receive your GitHub user id, username, name, avatar and primary verified email address. We do not keep your GitHub access token.
- Contact form. Your name, email, company and message, so we can reply. Your IP address is stored only as a keyed one-way hash, used to stop the form being flooded.
- Billing. Stripe collects and holds your card or bank details. We store your Stripe customer and subscription identifiers and your plan, never full card or account numbers.
- Cookies. Three, all first-party and none for tracking: a sign-in session cookie (30 days), a short-lived cookie that protects the GitHub sign-in (10 minutes), and your light/dark theme choice.
Data from your application
When you install a Dev Bench SDK, it reports what fails in your application: errors and stack traces, failed and slow requests (method, path, status, timing), the release and environment, and server log lines from around the failure. If you choose to identify users to the SDK (for example by email and account id), those identifiers are attached so an issue can say who was affected. The SDKs redact credentials and known sensitive patterns before anything leaves your application.
For this data you are the controller and we process it on your instructions: to detect, group and triage problems, and to write issues into the GitHub repository you choose. You are responsible for having a lawful basis to send it and for telling your own users. Do not configure the SDKs to send payment card numbers, health information or other special categories of data.
Triage uses an AI model (see Anthropic below). It receives the error report and related log lines for the problem being triaged. We do not use your data to train models, and our model provider does not train on it under its commercial terms.
Who processes data for us
| Service | What for | Where |
|---|---|---|
| Render | Hosting for the website, API, ingest service and triage workers | United States |
| Supabase | Database and object storage for account data, error reports and evidence | United States |
| Anthropic | AI model that triages error reports and drafts issue text | United States |
| GitHub | Sign-in, and writing issues to the repository you choose | United States |
| Stripe | Payments and billing (card and ACH); we never see full card or bank numbers | United States |
| Postmark | Sending email from the contact form | United States |
If you connect Slack, notifications go to the Slack webhook you provide.
How long we keep it
We keep account data and data from your application for as long as your account is open, so that regressions can be recognised and issues kept up to date. When your account is cancelled or closed, we delete your tenant's data within 30 days, except records we must keep for tax and accounting (invoices and payment records). Deleted data leaves our backups as they expire on their normal cycle. Issues already written to your GitHub repository are yours and stay there. A deletion request for one of your users is completed within the same 30 days.
Your choices and rights
- You can ask us for a copy of the data we hold about you, or to correct or delete it.
- If one of your users asks you to delete their data, we can delete everything we hold about that user (by email or account id) on your request.
- Depending on where you live (for example the EU, UK or California) you may have further rights; write to us and we will respond within the time the law requires.
Security
Traffic is encrypted in transit. Sessions are stored only as hashes, integration credentials are encrypted at rest, and each customer's data is isolated from every other's. No system is perfectly secure; if a breach affects your data we will tell you promptly.
Changes and contact
If we change this policy materially we will update the date above and, for customers, tell you by email first. Questions or requests: peter@redpointrack.com, or RedpointRack LLC, PO Box 20104, Cheyenne, WY 82003-7002. See also our Terms of Service.