Legal

Privacy Policy

Last updated: March 2026

1. Introduction

SenseLab, Inc. ("SenseLab," "we," "our," or "us") respects your privacy and is committed to protecting it through our compliance with this Privacy Policy ("Policy"). A core element of our mission is our commitment to protect your personal information and to be transparent about the data we collect about you, how it is used, and with whom it is shared.

This Policy describes our practices for collecting, using, maintaining, protecting, and disclosing your information through https://sense-lab.ai (our "Website"), our applications (our "Apps"), and our products, services, technology platforms and related applications (collectively, the "Services").

Please read this Policy carefully to understand our policies and practices regarding your information. If you do not agree with our terms, your choice is not to use our Services. By accessing or using our Services, you agree to this Privacy Policy. This Policy may change from time to time. Your continued use of our Services after we make changes is deemed to be acceptance of those changes.

2. Information We Collect About You and How We Collect It

We collect only the minimum amount of information needed to provide you with our Services. We collect basic contact information when you sign up for an account. Other information we collect relates to how you use our Website or Apps, which helps us improve our Services.

Information You Provide to Us

  • Personal Information: In the course of registering an account, we collect information that identifies you as a specific individual, such as your name and email address.
  • Payment Information: We may process your payment information, such as credit card and billing address. We do not collect or store your payment information directly — it is collected and stored by our authorized payment processors (such as Stripe). By submitting payment information, you consent to our providing it to those processors as necessary to complete your transactions.
  • User Contributions: You may interact with parts of our Website or submit feedback or support tickets. Your contributions are posted and transmitted at your own risk. Use precaution when posting any personal information.

Information Collected Automatically

  • Usage Information: Details of your visits to our Website, including which links you clicked, content response times, location data, logs, and other interaction statistics.
  • Device Information: Information about your computer and internet connection, including your IP address, operating system, and browser type.
  • Non-Identifying Information: Zip codes, demographic data, time zone, and general information regarding your use of the Service.

Cookies and Other Tracking Technologies

  • Cookies: We use both persistent cookies (to save your login session) and session cookies (to enable features and monitor usage). You can control cookies through your browser, but disabling them may limit certain features.
  • Web Beacons: We and our partners may use web beacons or tracking tags to track content effectiveness and monitor aggregate usage.
  • Embedded Scripts: We may use embedded scripts temporarily downloaded to your device to collect information about your interactions with the Service.

Information Received from Third Parties

  • GitHub / GitLab / Azure DevOps / Bitbucket: We may collect data necessary to enable your SenseLab account to interface with your code repository, such as your token, organization, username, and user role. We do not have access to your repository provider credentials.
  • Single Sign-On: If you access the Services through a third-party SSO provider (e.g., GitHub), we receive information as permitted by your authorization and their privacy settings.

3. Do Not Track Signal

Do Not Track (DNT) is a privacy preference users can set in some web browsers. We do not track users and do not allow third parties to track the personal information of our users on our Website.

4. Children's Privacy

The Services are intended for users 13 and older. We do not knowingly collect personal information from anyone younger than age 13. If we become aware that we have collected personal information from a child under 13, we will take steps to delete that information.

5. How We Use Your Information

We may use information we collect about you, including personal information:

  1. To provide you with an account.
  2. To perform lineage tracking, AI attribution analysis, risk scoring, and evidence pack generation.
  3. To deliver, provide, and process payment for the Services.
  4. To improve our Services.
  5. To address your inquiries.
  6. To tailor content we display to you, both on the Service and elsewhere online.
  7. To communicate with you and promote products, services, and events offered by SenseLab.
  8. To comply with legal requirements and assist law enforcement.
  9. To stop any activity we may consider illegal, fraudulent, or unethical.
  10. To identify SenseLab users.
  11. For the purposes disclosed at the time you provide your information.
  12. As otherwise permitted with your consent.

6. Legal Bases

To process your information as described above, we rely on the following legal bases:

  • Contractual Necessity: To provide you with the SenseLab Service and perform the contract you have with us.
  • Legitimate Interests: It is in our legitimate interests to improve and analyze our Service, promote our products, prevent fraudulent transactions, maintain security, and provide functionality.
  • Consent: In instances where we ask for consent, you may withdraw it at any time by contacting us at privacy@sense-lab.ai.

7. How We Disclose and Share Your Information

We do not sell personal information to third parties. We share information as follows:

With Our Service Providers

We employ third-party companies to provide Services on our behalf, including maintenance, database management, web analytics, server hosting (AWS), fraud detection, payment processing (Stripe), and email communications (Mailchimp). These third parties may have access to your personal information only to perform these tasks.

For Our Service Integrations

We integrate with the following third-party services to provide functionality:

  • GitHub and GitLab Code repository access and lineage capture.
  • Bitbucket and Azure DevOps Code repository access and pipeline signals.
  • CI/CD platforms (e.g., GitHub Actions, Jenkins) Build and deployment telemetry.
  • AI providers (OpenAI, Anthropic) AI attribution and analysis.

Neither SenseLab nor any AI provider uses your proprietary code or personal information collected through the Services to train, refine, or otherwise influence any AI models. Your code is used solely for the purpose of generating lineage records and analysis in accordance with your request.

For Corporate Transactions

SenseLab may share information, including personal information, in connection with a merger, acquisition, reorganization, or sale of assets, including as part of due-diligence with any potential acquiring entity or in the event of bankruptcy.

If Required by Law

SenseLab will disclose information to government or law enforcement officials or private parties as we believe necessary to respond to legal process, protect the property and rights of SenseLab or a third party, protect public safety, or prevent illegal or fraudulent activity.

With Your Consent

We may share your information with affiliates or non-affiliates based on information you submit and consent you provide through our Website forms.

8. Third-Party Websites and Links

Our Services may contain links to other websites operated by third parties. We do not control such platforms and are not responsible for their content, privacy policies, or use of your information.

9. Your Rights and Choices Regarding Your Information

  • Account Settings: You may access, update, or delete your personal information through your account settings in the App.
  • Contact Us: You may contact us at privacy@sense-lab.ai to access, update, or delete your personal information.
  • Email: You may opt out of marketing emails by following the unsubscribe instructions in those emails. Transactional account messages may still be sent.

European Residents

Under the GDPR, SenseLab may be considered a data controller to the extent we process personal information directly from European residents. You may access, correct, update, or delete your personal information; object to our processing; ask us to restrict processing; or request portability by contacting us at privacy@sense-lab.ai.

California Residents

If you are a California resident, the CCPA may provide you with additional rights, including:

  • The right to know what personal information we have collected and how we have used and disclosed it.
  • The right to request deletion of your personal information.
  • The right to be free from discrimination for exercising your privacy rights.
  • The right to opt out of the sale of your personal information.

SenseLab does not sell personal information, nor do we share it with third parties for marketing purposes. To exercise your rights, contact us at privacy@sense-lab.ai.

10. International Jurisdictions

Our servers are located in the United States. If you are accessing the Services from another country, please be advised that you may be transferring your personal information to the United States. By using the Services, you consent to that transfer, processing, and storage of your personal information in accordance with this Privacy Policy.

11. Security

We use physical, technical, and organizational measures designed to protect your information against unauthorized access, theft, and loss. We restrict access to your personal information to employees who need it to service your account or perform their job functions.

No system or electronic data transmission is completely secure. Any transmission of your personal data is at your own risk. If you become aware of any security vulnerabilities, please contact us at security@sense-lab.ai.

12. Data Retention, Storage & Usage for Proprietary Code

Unless you request deletion of your information, we will retain your personal information for the period necessary to fulfill the purposes outlined in this Policy, or as required by law. The criteria used to determine our retention periods include:

  • The length of time we have an ongoing relationship with you.
  • Legal obligations requiring us to keep records for a certain period.
  • Whether retention is advisable given our legal position (statutes of limitations, litigation, regulatory investigations).

Data Storage for Lineage Improvement

SenseLab stores certain data — primarily vector embeddings and lineage metadata — to refine and improve the accuracy of AI attribution and risk analysis over time. You can opt out of this data storage at any time through your account settings. All stored data is handled in compliance with SOC 2 Type II and GDPR requirements.

Your proprietary code is never stored beyond what is necessary to generate the requested analysis. It is not used to train any AI models by SenseLab or any of our AI provider integrations.

13. Changes to This Policy

SenseLab may update this Privacy Policy at any time. Changes will be effective upon posting. In the event of material changes to how we treat your personal information, we will update the Last Updated date at the top of this Policy and may notify you by email.

14. How to Contact SenseLab

Our data protection contact can be reached at privacy@sense-lab.ai for any questions regarding this Privacy Policy or your personal data.

SenseLab, Inc.

Email: privacy@sense-lab.ai

Website: https://sense-lab.ai