Privacy Policy
Last updated: May 20, 2025
Ollum (“we”, “our”, “us”) operates ollum.dev and related services. This Privacy Policy describes what information we collect, how we use it, and your rights.
1. Information We Collect
- GitHub account information (username, email, avatar, OAuth tokens) collected when you sign in with GitHub OAuth.
- Repository metadata (repo names, commit messages, push events) delivered via GitHub webhooks.
- Usage data (page views, feature interactions) collected via anonymized analytics.
- Billing information processed through Polar — we do not store full card details.
- Email addresses of subscribers who opt in to receive changelog notifications.
2. How We Use Your Information
- To authenticate you and provide access to the dashboard.
- To generate AI-powered changelog entries from your commits using the Anthropic API.
- To send changelog update emails to subscribers who have explicitly opted in.
- To process payments and manage your subscription.
- To improve the product through aggregated, anonymized usage analytics.
3. Data Sharing
We do not sell your personal data. We share data only with:
- GitHub, for OAuth authentication.
- Anthropic, for AI generation (commit message content may be sent to the Anthropic API).
- Resend, for transactional and notification email delivery.
- Polar, for payment processing.
- Vercel, for hosting and infrastructure.
- PostHog, for product analytics (usage data only, no advertising).
4. Data Retention
- Account data is retained while your account is active.
- Changelog entries are retained until you delete them or close your account.
- Subscriber email lists are retained until you delete them or unsubscribe.
- On account deletion, all personal data is removed within 30 days.
5. Your Rights
You may request to: access the personal data we hold about you; correct inaccurate data; delete your account and associated data; export your changelog entries. Contact us at hello@ollum.dev to make any such request.
6. Cookies
We use a session cookie to maintain your logged-in state and analytics cookies from PostHog to understand how the product is used. PostHog analytics are processed on EU servers (eu.posthog.com). We do not use advertising or tracking cookies.
7. Security
All data is transmitted over HTTPS. We store OAuth tokens encrypted at rest. We do not have access to your GitHub repository code — only commit messages and metadata delivered via webhook.
8. Changes
We may update this policy and will note the revision date at the top. Continued use after changes constitutes acceptance.
9. Contact
Questions? Email us at hello@ollum.dev.