Privacy Policy
This policy explains the personal data that Repro It processes when you use reproit.com, the Repro It SDKs, CLI, or managed Cloud.
What we collect
- Account data: email address, identity-provider records, organization membership, project and service membership, sessions, and security audit records.
- Service data: project and service configuration, Repro workflow metadata, usage, limits, and non-reversible credential verifiers.
- Captured failure data: supported operation inputs and outputs, dependency results, required state, environment facts, failure details, and exact subject bytes needed to reproduce a failure. This data can contain personal data from your application.
- Operational data: bounded service logs, request metadata, security events, and diagnostics needed to operate and protect the service.
How we use data
We use data to authenticate users, receive eligible captures, verify failures on isolated managed replay hosts, show verified Repros, run authorized debug and check operations, enforce limits, provide support, and protect the service.
Storage and access boundaries
- Durable object storage contains encrypted verified Repros. It does not contain plaintext captured World.
- The Cloud database stores account, organization, project, service, workflow, authorization, quota, and audit metadata. Tenant scope is enforced for customer records.
- An isolated managed replay host can decrypt one authorized Repro for one bounded operation. The operation cleans up its workspace and credentials.
- The serving Cloud process does not execute your application.
- Repro It does not store your source repository. An authorized developer operation can use standard Git from the developer environment.
Website and authentication
The public website uses Cloudflare Web Analytics for page performance metrics. Its beacon uses no cookies or browser storage. The website gets its display fonts from Google Fonts. Google receives the network data needed to deliver those font files. The managed Cloud uses cookies or similar storage that is necessary for authentication and security. Repro It uses WorkOS AuthKit for hosted sign-in, including supported Magic Auth, social login, and Enterprise SSO methods. Repro It does not store your password.
Service providers
We use a small set of service providers for hosting, storage, database, and authentication. Each provider receives the data needed for its role. See the current sub-processor list. The Data Processing Agreement applies when Repro It processes personal data for a customer.
Retention and deletion
We retain data for the configured plan or contract period and as needed for security, legal, and operational duties. An authorized user can remove a Repro. You can request export or deletion of account and customer data by emailing agho@reproit.com. We can retain limited records when the law requires it or when they are needed to resolve disputes and enforce agreements.
Your rights
Depending on where you live, you can have rights to access, correct, export, restrict, object to, or delete personal data. Send a request to agho@reproit.com. We can ask you to verify your identity and authority before we act on a request.
Changes
We will notify account holders before a material change takes effect.