Privacy Policy for Safe Pull Request

Last updated: Jun 05, 2025

What Information We Collect

Safe Pull Request collects minimal data necessary for license validation and functionality:

1. GitHub Information

We collect:

  • Your GitHub username
    • Purpose: To validate your license key (if applicable) and prevent sharing of license keys
    • When: When you enter your GitHub username along with your license key
    • Storage: Stored with your license key in our database
  • Repositories' owner's name
    • Purpose: To determine if a repository is owned by an organization
    • When: When viewing GitHub repository pages
    • Storage: Not stored, only checked in real-time
  • Repositories' default branch name
    • Purpose: To know which branch to open PRs against
    • When: When modifying GitHub compare links (which are used to open PRs)
    • Storage: Not stored, only checked in real-time

2. Payment Information

Payment information is handled securely through Stripe, including:

  • Email address
  • Payment amount and status
  • GitHub username (if provided during checkout)
  • Note: We do not store method of payment info such as your credit card number.

3. Extension Usage Data

We collect:

  • Timestamps of recent popup interactions
    • Purpose: To manage notification frequency
    • Storage: Stored locally in your browser only
    • Duration: Cleared when extension is uninstalled

4. Website Analytics

We use cookieless website analytics, so the data we collect from the website is anonymous.

We collect:

  • Page view counts and navigation patterns
  • Button clicks for key actions such as "Install Extension" and "Buy License"
  • Marketing campaign sources. i.e. How many visits to the website were from each marketing campaign, using UTM links.

How We Use Your Information

We use your information solely for:

  • Validating your license key (if applicable)
  • Determining if repositories are organization-owned (to enforce license tiers)
  • Preventing license key sharing between users
  • Managing notification frequency (i.e. so we don't prompt you to enter your license key every single time you visit github.com)
  • Responding to customer support requests
  • Analyzing anonymous website traffic

Data Storage and Security

  • Data stored in our database:
    • License keys
    • GitHub usernames associated with license keys
    • Payment date, amount, currency, and payer's email address
  • Data stored locally in your browser:
    • License key
    • Popup interaction timestamps
  • We do not store or process:
    • Your repository contents
    • Your GitHub access tokens
    • Your browsing history
    • Repository owner information (only checked in real-time)

Data Sharing

We do not share your data with any third parties except:

  • Stripe - For processing payments
  • GitHub API:
    • To check if a repository owner is an organization
    • To fetch the name of your repo's default branch
  • Google Analytics - For anonymous, cookieless, website traffic analysis

Your Rights

You can:

  • View your stored license information in the extension popup
  • Remove local data by uninstalling the extension
  • Request deletion of your server-side data by contacting us

Contact

For privacy-related questions or data deletion requests, please create an issue at: https://github.com/weineran/safepullrequest-feedback/issues

Changes to This Policy

We will notify users of any material changes to this privacy policy through the extension or our website.