Gitex operates the Gitex website and service at https://gitex.dev (the “Service”). This Privacy Policy explains what information we collect, how we use it, and your choices.
By using the Service, you agree to this Privacy Policy.
1. Who we are
| Operator | Gitex |
| Website | https://gitex.dev |
| cardona.adrian.1029@gmail.com | |
| Phone | (310) 489-6795 |
2. What Gitex does
Gitex helps software teams onboard to GitHub repositories. You provide a GitHub repository reference; we fetch repository metadata and source files, index them, and let you ask AI-powered questions about the codebase. Answers include citations to files and line ranges when possible.
3. Information we collect
3.1 Account information
When you create an account, we use Clerk for authentication. Clerk may collect and process:
- Name
- Email address
- Authentication identifiers (e.g., Clerk user ID)
- Sign-in method and session data
We receive your Clerk user ID to associate your account with your subscription, repositories, and chat history.
3.2 Billing information
We use Stripe to process subscriptions and trials. Stripe collects and processes payment card and billing details directly. We do not store full payment card numbers on our servers.
We store subscription-related information in our database, including:
- Stripe customer and subscription IDs
- Plan tier (Pro, Pro Plus, Pro Max)
- Subscription status (e.g., trialing, active, canceled)
- Trial and billing period dates
To prevent trial abuse, we may store a payment card fingerprint (a non-reversible identifier provided by Stripe) to enforce our “one free trial per card” policy.
3.3 Repository and code data
When you analyze a repository, we fetch data from GitHub via the GitHub API, including:
- Repository metadata (owner, name, description, default branch, languages, topics)
- File paths and contents (subject to plan limits and indexing depth)
- README, configuration files, and other files selected for indexing
We store this data in Convex (our cloud database), including:
- Repository summaries and “always-on” context
- File contents and code chunks
- Vector embeddings derived from code chunks (numerical representations used for search)
- Per-user analysis records (connected repos, detected stack, important files)
Shared indexing: Repository content may be indexed once and reused across users who analyze the same public repository. Your per-user data (which repos you connected, your questions, and your chat history) remains associated with your account.
3.4 Questions, answers, and chat history
When you use Gitex's Q&A or onboarding features, we store:
- Your questions and prompts
- Generated answers
- Source citations (file paths, line ranges, relevance scores)
- Feature type (e.g., general question, learning path, repo tour, file explanation)
3.5 Usage and technical data
We collect operational data to run the Service, enforce limits, and improve reliability, including:
- Usage events (e.g., questions asked, repositories ingested)
- Token and cost estimates
- Latency metrics
- Rate-limit counters
- Monthly chat quota usage
We may also collect standard log and device data (IP address, browser type, timestamps, error logs) through our hosting and infrastructure providers.
3.6 Cookies and similar technologies
Clerk and Stripe use cookies and similar technologies for authentication, fraud prevention, and checkout. You can control cookies through your browser settings, but disabling them may limit Service functionality.
4. How we use your information
We use the information we collect to:
- Provide, operate, and maintain the Service
- Authenticate you and secure your account
- Process subscriptions, trials, upgrades, and billing
- Enforce plan limits (connected repos, monthly questions, onboarding guides)
- Ingest, index, and search repository content
- Generate AI-powered answers and onboarding content
- Store your chat history and repo analyses
- Prevent abuse, fraud, and unauthorized access
- Comply with legal obligations
- Improve the Service and diagnose technical issues
5. AI processing
Gitex uses Google Gemini to:
- Generate embeddings (vector representations) of code chunks and questions
- Generate natural-language answers and onboarding content
Your questions and relevant repository context are sent to Google's API for processing. Google's handling of this data is governed by Google's Privacy Policy.
AI outputs may be inaccurate or incomplete. Gitex is designed to cite source files, but you should verify answers against the actual code.
6. How we share information
We do not sell your personal information. We share information only as follows:
| Recipient | Purpose |
|---|---|
| Clerk | Authentication and account management |
| Stripe | Payment processing and subscription management |
| Convex | Database, backend functions, and vector search |
| Google (Gemini) | Embeddings and answer generation |
| GitHub | Fetching repository data you request |
| Hosting providers (e.g., Vercel) | Serving the website and API routes |
| Legal and safety | When required by law, to protect rights and safety, or to enforce our Terms |
We may also share information in connection with a merger, acquisition, or sale of assets, subject to this Privacy Policy.
7. Your responsibilities regarding repository data
By submitting a repository for analysis, you represent that:
- You have the right to access and process that repository’s contents through Gitex
- For private repositories, you are authorized to grant us access via our GitHub integration
- The repository does not contain unlawful content that you are knowingly submitting for processing
- You are responsible for ensuring your use of Gitex complies with your organization’s policies and any third-party licenses applicable to the code
8. Data retention
We retain information for as long as needed to provide the Service and fulfill the purposes described in this policy, unless a longer period is required by law.
In general:
- Account and subscription data is retained while your account is active and for a reasonable period afterward
- Chat history and repo analyses are retained while your account is active unless you request deletion
- Indexed repository data may be retained to serve other users analyzing the same public repository
- Billing records may be retained as required for tax, accounting, and legal compliance
You may request deletion of your account data by emailing cardona.adrian.1029@gmail.com. Some data may be retained where we have a legal obligation or legitimate business need.
9. Security
We implement technical and organizational measures designed to protect your information, including:
- JWT-based authentication (Clerk) with server-side identity verification
- Per-user data scoping in our backend
- Input validation and security headers
- Rate limiting on AI-backed operations
No method of transmission or storage is 100% secure. We cannot guarantee absolute security.
10. International data transfers
We and our service providers may process your information in the United States and other countries. If you are located outside those countries, your information may be transferred internationally. Where required, we rely on appropriate safeguards for such transfers.
11. Your rights and choices
Depending on where you live, you may have rights to:
- Access the personal information we hold about you
- Correct inaccurate information
- Delete your information
- Object to or restrict certain processing
- Data portability
- Withdraw consent where processing is consent-based
- Lodge a complaint with a supervisory authority
To exercise these rights, contact cardona.adrian.1029@gmail.com or call (310) 489-6795. We may need to verify your identity before responding.
California residents: You may have additional rights under the CCPA/CPRA, including the right to know, delete, and opt out of the sale of personal information (we do not sell personal information).
EEA/UK residents: Our legal bases for processing include contract performance, legitimate interests, consent (where applicable), and legal obligations.
12. Children’s privacy
The Service is not intended for anyone under 18. We do not knowingly collect personal information from children. If you believe a child has provided us information, contact us and we will delete it.
13. Third-party links and services
The Service integrates with third-party services (GitHub, Clerk, Stripe, Google). Their privacy practices are governed by their own policies. We encourage you to review them.
14. Changes to this Privacy Policy
We may update this Privacy Policy from time to time. We will post the updated version at https://gitex.dev/privacy (or equivalent) and update the “Last updated” date. Material changes may be communicated by email or in-app notice. Continued use after changes constitutes acceptance.
15. Contact us
| Gitex | |
| Website | https://gitex.dev |
| cardona.adrian.1029@gmail.com | |
| Phone | (310) 489-6795 |