Privacy policy
Last updated September 1, 2026. Demo text for a Framer template: replace it with your own before you publish.
What we collect
Account details you give us: your name, work email and company. Connection details: the names of the repos and cloud accounts you connect. Findings metadata: what we found, where and when. Billing details are handled by our payment processor, and we never see your full card number.
Source code
We read source code at scan time to find exposures and write fixes. We do not keep it after a scan ends, and we never use your code to train models.
How we use it
To run scans, open pull requests, bill you and answer support requests. We improve Quorum with aggregate, anonymized numbers, such as how long fixes take to merge.
Who we share it with
The subprocessors listed on our Security page, under written contracts that limit what they can do with it. We do not sell personal data, and we do not share it with advertisers.
How long we keep it
Findings metadata for 13 months, account details for as long as your account is open plus 90 days, and application logs for 30 days.
Your choices
You can ask us to access, correct, export or delete your personal data at any time by emailing privacy@quorumscan.dev. We answer within 30 days, and sooner where the law requires it.
Contact
Quorum Labs, Inc., Denver, Colorado. privacy@quorumscan.dev.