Privacy Policy
Last updated: initial draft, not officially published.
PLAN.md and hasn't been through legal review. Don't treat it as final until reviewed by qualified counsel.1. We never see your code
This is the most important point: CAF Orchestrator runs on your own VPS, not on a Coderium server. The artifact handoff between phases (see Layer 3: Artifact Handoff) is just a Markdown file stored in your repo. Your project's source code is never sent to, or stored on, Coderium infrastructure.
2. Data this site collects
This marketing and documentation site (the one you're reading now) currently doesn't run any third-party analytics. If we add analytics in the future, we'll prioritize privacy-friendly tools (like Plausible or Umami) that don't do cross-site tracking, and this page will be updated to say so explicitly.
We don't collect email addresses or other personal data through this site — there's no newsletter form or account signup in v1.0.0.
3. Credentials you store yourself
Variables like tracker API keys or Git host tokens (see Environment Variables) are stored in an .env file on your own infrastructure. Coderium never receives or stores these credentials.
4. Questions
If you have questions about this privacy policy, reach us via GitHub.