Privacy Policy

Effective: February 28, 2026

1. Information We Collect

We collect minimal information, only when you choose to provide it:

  • Email address — provided voluntarily via website signup forms or the CLI first-run prompt
  • Company name and role — optionally provided via website forms
  • CLI metadata — when you opt in via the CLI prompt, we collect: CLI version, Node.js version, and operating system platform

2. Information We Do NOT Collect

Halo is designed with privacy by default:

  • Source code is never sent to our servers. All scanning happens locally on your machine.
  • Scan results (violations, scores, reports) stay entirely local.
  • File paths and directory structures are never transmitted.
  • Violation details, code snippets, and compliance scores are never collected.
  • We use no cookies for tracking on our website.
  • We use no analytics or tracking pixels.

3. How We Use Your Information

  • Send product updates and announcements (if you opted in)
  • Understand CLI adoption through aggregate, anonymized metrics
  • Manage the Halo Pro waitlist
  • Respond to inquiries or support requests

4. Data Storage

Data is stored using Supabase, which provides encryption at rest and in transit. Data is stored in the United States.

5. Third-Party Services

We use the following third-party services:

  • Supabase — database and authentication
  • Cloudflare Pages — website hosting
  • npm — package distribution

We do not use advertising networks, tracking pixels, or behavioral analytics services.

6. Data Retention

  • Email and contact data is retained until you request deletion or unsubscribe
  • CLI telemetry data is retained for up to 12 months

7. Your Rights

You have the right to:

  • Unsubscribe from communications at any time
  • Request deletion of your data by emailing us
  • Skip data collection entirely by pressing Enter at the CLI prompt or not submitting website forms

To request data deletion, email [email protected].

8. Children's Privacy

Halo is a developer tool intended for use by software professionals. It is not directed at children under 13. We do not knowingly collect personal information from children under 13. If you believe a child has provided us with personal information, please contact us and we will delete it promptly.

9. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be communicated via the website or email (if you have opted in). The effective date at the top of this page indicates when the policy was last revised.

10. Contact

For questions about this Privacy Policy or your data, contact us at:

Mindful Media
[email protected]