NF / Legal / GitHub
ForgeVault CRA — Privacy policy
Data collected
To provide ForgeVault CRA (GitHub-native evidence for the EU Cyber Resilience Act.) we process the minimum operational data the feature requires — for example identifiers needed to scope your GitHub data, configuration you enter, and technical logs needed for reliability and support.
Purpose
Operate the product, provide support, and maintain reliability. No advertising use.
Sub-processors
[Placeholder — requires legal review.] list hosting, email delivery (e.g. Resend if enabled) and any analytics provider here with roles and locations.
Retention
Operational data is kept only as long as needed to provide the service. [Placeholder — requires legal review.] confirm concrete retention windows with counsel.
Deletion
Request deletion at any time via data deletion. Uninstalling the app revokes access; stored operational data is deleted on verified request.
Your rights
Depending on your jurisdiction you may have rights of access, rectification, erasure, restriction, portability and objection. [Placeholder — requires legal review.] confirm procedure and response times with counsel.
Contact
Privacy requests: support form, category Privacy, product ForgeVault CRA.
Last updated: 2026-08-20.