Privacy Policy

Last updated: November 16, 2025

1. Introduction

DepFixer ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when using our dependency analysis platform.

2. Information We Collect

We collect: Account data (email, name, encrypted password), profile data (organization, role, preferences), analysis data (package.json files, dependency information), usage data (IP address, browser type, pages visited), and technical data (device info, performance metrics, API usage).

3. How We Use Your Information

We use your information to provide our service, process analyses, send notifications, improve our platform, monitor usage, prevent abuse, comply with legal obligations, and communicate updates.

4. Data Sharing and Disclosure

We may share information with trusted service providers (email, hosting, database, analytics), when required by law, or in business transfers (mergers, acquisitions). All service providers are contractually obligated to protect your data.

5. Data Security

We implement HTTPS/TLS encryption, encrypted password storage (bcrypt), JWT authentication, regular security audits, and access controls to protect your information.

6. Your Rights (GDPR/CCPA)

You have the right to access, rectify, erase, restrict processing, data portability, object to processing, and withdraw consent. California residents have additional rights under CCPA. Contact us at contact@depfixer.com to exercise these rights.

7. Cookies and Tracking

We use essential cookies (authentication), functional cookies (preferences), and analytics cookies. Manage preferences in our Cookie Policy. We do not respond to Do Not Track signals.

8. Data Retention

We retain account data until deletion requested, analysis data for 12 months, waitlist data until invited or 24 months inactive, and log data for 90 days.

9. International Data Transfers

Your data may be transferred internationally. We ensure GDPR-compliant safeguards are in place.

10. Marketing Communications

You can opt-out of marketing emails at any time via unsubscribe links or by contacting us. Transactional emails (account updates, security notices) cannot be opted out.

11. Third-Party Links

Our platform may contain links to third-party websites. We are not responsible for their privacy practices. Review their privacy policies before providing information.

12. Automated Decision Making

We use automated analysis to process dependency compatibility. You have the right to request human review of automated decisions affecting you.

13. Data Breach Notification

In the event of a data breach affecting your personal information, we will notify you and relevant authorities within 72 hours as required by law.

14. User Responsibilities

You are responsible for maintaining the confidentiality of your account credentials and for all activities under your account. Notify us immediately of unauthorized access.

15. Children's Privacy

Our service is not intended for users under 16. We do not knowingly collect information from children under 16. If we learn we have collected such information, we will delete it promptly.

16. Consent

By using our service, you consent to this Privacy Policy. You may withdraw consent at any time by contacting us or deleting your account.

17. Governing Law

This Privacy Policy is governed by applicable data protection laws, including GDPR for EU users and CCPA for California residents.

18. Dispute Resolution

For privacy-related disputes, contact us first. EU users may also lodge complaints with their local data protection authority.

19. Changes to This Policy

We may update this policy periodically. Significant changes will be notified via email or platform notice. Continued use constitutes acceptance.

20. Contact Us

For questions, GDPR inquiries, or to exercise your rights, contact: