Last updated: February 26, 2026
1. Who We Are
Veritensor ("we", "us") is an open-source security project and provider of the Veritensor GitHub App. We act as the Data Controller for your information.
2. What Data We Collect
We collect data through the following channels:
- Website Waitlist: Name, email address, company name, and role.
- GitHub App Integration: When you install the Veritensor GitHub App, we collect repository metadata (e.g., repository name, PR numbers) and the email addresses of commit authors associated with the scanned Pull Requests.
- Website Usage & Analytics: When you visit our website, we automatically collect certain information about your device, browser type, IP address, and browsing actions using cookies and tracking technologies.
3. Source Code & Data Artifacts (Important)
Veritensor performs static security analysis on your repository files (notebooks, models, datasets, documents).
We DO NOT store your source code, models, or proprietary data on our servers.
All file scanning is stateless and ephemeral. Once the scan is complete and the report is generated, the file data is immediately discarded from our memory.
4. How We Use Data
We use this data solely to:
- Perform automated security scans and post results to your GitHub Pull Requests.
- Contact you regarding critical security alerts found in your repositories.
- Send relevant product updates and Enterprise access information (only if you consented or installed our App).
- Analyze website traffic, monitor performance, and improve the user experience on our platform.
5. Third-Party Services
We use the following third-party services:
- Formspree: To process website form submissions.
- GitHub API: To read files for scanning and post comments.
- Google OSV.dev API: We send your dependency names and versions (e.g., from
requirements.txt) to the public OSV.dev API to check for known vulnerabilities (CVEs).
- Google Analytics (Google Tag): To track website traffic and user behavior. This service uses cookies to collect and process data.
- Vercel Web Analytics: To monitor website performance and anonymized visitor metrics.
By using our services, you acknowledge that information will be processed in accordance with their respective Privacy Policies.
6. Your Rights (GDPR)
You have the right to request access to, correction of, or deletion of your personal data. To exercise these rights or to opt-out of communications, please contact us at: veritensor@gmail.com.
You also have the right to withdraw your consent for analytics cookies at any time by clearing your browser data or local storage.