Privacy Policy
Last updated: September 11, 2026
1. Overview
This Privacy Policy explains what data Fleeter (“we”, “us”) collects through the Fleeter desktop application and web account pages (together, the “Service”), and how we use, share, and protect it.
2. Information we collect
We collect the following categories of information:
- Account information — your email address, name, and password (stored securely, never in plain text) when you register directly, or your identity as provided by a social login provider (Google, Microsoft, GitHub, Slack, or Teams).
- Integration connections — OAuth tokens for the third-party services you choose to connect (Jira, Bitbucket, GitHub, Linear, Slack, Teams), stored encrypted, and used only to perform the actions you configure.
- Session data — httpOnly authentication cookies used to keep you signed in, and short-lived login codes used to sign the desktop app in on your behalf.
- Ticket and code content — the ticket text, repository code, and diffs that a session reads and produces while working on your behalf, for the duration needed to complete that work.
- Product usage events — first-party, operational events such as the desktop app starting, a workflow stage being reached, or a pull request being opened, together with a per-install identifier, app version, and platform. These never include ticket or code content, and are used only to understand and improve the Service (e.g. onboarding completion, feature usage) — never for advertising.
3. How we use your information
We use the information above to:
- Authenticate you and maintain your session across the web and desktop app;
- Run agent sessions against the tickets and repositories you connect;
- Operate, maintain, and improve the Service;
- Communicate with you about your account or material changes to the Service.
We do not sell your personal information.
4. Sharing with third parties
Fleeter shares data with third parties only as needed to provide the Service:
- Anthropic — ticket content and code are sent to Claude models (via the Claude Agent SDK) to plan and generate the changes a session produces.
- Your connected integrations — data flows to and from the services you explicitly connect (for example, reading a Jira ticket, or opening a Bitbucket or GitHub pull request), strictly to perform the actions you’ve configured.
We don’t share your data with advertisers, and the Service doesn’t use third-party analytics or ad-tracking scripts — the product usage events described above are collected and stored entirely on our own infrastructure, never sent to or sold to a third-party analytics provider.
5. Data security
Access and refresh tokens are stored in httpOnly cookies inaccessible to page scripts. Integration credentials are encrypted at rest. We use industry-standard practices to protect your data, but no method of transmission or storage is 100% secure.
6. Data retention
We retain account and integration data for as long as your account is active. You can disconnect an integration at any time, which revokes our access to it going forward. Deleting your account removes your account data, subject to any copies retained briefly for backups or legal compliance.
7. Your rights
You can access, correct, export, or delete your account information at any time from your account settings, or by contacting us at hello@fleeter.dev.
8. Cookies
The Service uses only the httpOnly cookies necessary to keep you signed in — it does not use cookies for advertising or cross-site tracking.
9. Children’s privacy
The Service is not directed at children under 16, and we don’t knowingly collect personal information from them.
10. Changes to this policy
We may update this Privacy Policy from time to time. If we make material changes, we’ll update the “Last updated” date above and, where appropriate, notify you directly.
11. Contact
Questions about this policy? Reach us at hello@fleeter.dev.