Every public repository, free forever. Private repositories are one flat plan, never per seat.See pricing
[ Console ]

Privacy Policy

Last updated 23 August 2026 · version 2026-08-23

quellbot is a GitHub App that reads issues and pull requests you point it at and uses a model you choose (Claude from Anthropic, or Codex from OpenAI) to fix bugs, review PRs, and triage failed CI. This policy explains what data passes through the service and how it is handled. It applies to the service at console.quellbot.dev.

1. What we process

DataWhyKept
GitHub identity (login, id, avatar)To sign you in and map you to your installationWhile your account exists
Repository content (issue text, PR diffs, CI logs, file contents needed for a change)Read at run time to perform the fix, review, or triage you requestedNot stored after the run; only sent to the model to produce the result
Your model credential (Anthropic or OpenAI API key, or a Claude / ChatGPT subscription token)To call the model on your behalf, from a machine in your own cloudEncrypted at rest until you disconnect it; decrypted only to start a run
Your Fly.io API tokenTo start the ephemeral machines in your Fly account that run your fixes, reviews, CI triage and repliesEncrypted at rest until you disconnect it
Run metadata (repo, status, model, token counts, cost, timestamps)To show your dashboard, enforce budgets, and debugRetained for your history until you delete the account
Email (optional)To send you health alerts (dead token, budget cap)Until you remove it
Subscription state (plan status, renewal date, and the Dodo customer and subscription ids)To know whether your account has an active plan. Paid accounts onlyWhile the account exists

quellbot does not store your source code, execute it on the control plane, or use your code or prompts to train any model.

quellbot also never sees or stores your card details, billing address, or tax identifiers. Checkout happens on Dodo Payments' own pages; all we receive back is whether a subscription is active and an opaque customer id.

2. Who we share it with (sub-processors)

To run the service, data passes through these providers. Each is used only for the function listed.

3. How your credentials are protected

3a. Cookies and local storage

The console sets one cookie, a signed session cookie that keeps you logged in for up to seven days, plus short-lived cookies for the sign-in handshake. The website stores your light or dark theme choice in your browser's local storage. There are no advertising or cross-site tracking cookies.

4. Your choices and rights

5. Data location and retention

The control plane and database run in the United States. Run metadata is kept for your dashboard history until you delete your account; credentials are kept until you disconnect them; repository content is not retained beyond the run that used it.

6. Children

quellbot is a developer tool and is not directed to anyone under 16. Do not use it if you are under the age required to hold a GitHub account in your country.

7. Changes

If this policy changes materially, we will update the date above and, where appropriate, notify account holders by email.

8. Contact

The data controller is Quellbot, established in the United Arab Emirates. Questions, data access requests, and deletion requests: support@quellbot.dev. We aim to reply within two business days.