Privacy Policy

Last updated: August 25, 2026

What we collect

Your account email and name; workspace and client details you enter (names, logos, contact emails, project descriptions); activity data you connect (commits, pull requests, cards, issues, notes, metrics); and the reports generated from it. We collect basic product analytics about how you use WorkedOn.

How we use it

To run the product: sync your connected tools, generate reports with AI, send emails you approve, and bill your subscription. Activity data is sent to Anthropic's API to write your reports; it is not used to train models. We never sell your data.

Integrations

OAuth tokens for GitHub, Trello, and Linear are encrypted at rest. Disconnecting a source deletes its token and the activity imported from it. We request read-only scopes wherever the provider offers them.

Public report links

Approved reports are reachable at an unguessable link so your clients can read them without an account. Links are not indexed by search engines. Deleting your account disables all links.

Third parties

We use Supabase (database and authentication), Vercel (hosting), Anthropic (report generation), Resend (email), Stripe (payments), and PostHog/Plausible (analytics). Each processes only what is needed for its role.

Your rights

Export all your data or permanently delete your account any time from Settings → Account. Questions or requests: privacy@workedon.io.