Legal
Privacy Policy
KoderDev is the controller for personal data processed in the KoderDev workspace. Last updated 3 August 2026.
Who is responsible for your data
- This workspace is operated and sold by KoderDev. KoderDev is the data controller for the personal data described on this page and decides how and why it is processed.
- Privacy questions and requests go to Support@koderdev.com.
Data we collect
- Account data: your email address, username, display name and plan. This is what identifies you when you sign in.
- Project data: the projects, files, chat threads and prompts you create, so your work is there when you come back.
- Support data: the messages, ticket details and email address you provide when you contact support.
- Operational data: sign-in events, credit usage, device and browser information, IP address and error reports used to keep the workspace running and secure.
How we use it, and our legal basis
- To run the workspace — authenticate you, store your projects, generate code with AI and show live previews. Basis: performance of our contract with you.
- To send account email — verification links, password resets, plan receipts, publishing notices and support replies. Basis: contract performance and our legitimate interest in servicing your account.
- To enforce plan limits, prevent fraud and detect abuse, and to keep the platform secure. Basis: legitimate interests and legal obligation.
- To improve the product using aggregated usage patterns. Basis: legitimate interests. Optional marketing email is sent only with your consent, which you can withdraw at any time.
- We do not sell your data, and we do not use your private project contents to advertise to you.
Who we share data with
- Service providers and subprocessors: KoderDev runs on the Lovable Cloud platform, which provides the managed database, authentication, file storage and hosting. AI features are served through the platform's AI gateway, and email is delivered through our configured sending domain.
- Merchant of Record: Paddle.com resells KoderDev subscriptions and receives the data needed for the sale, subscription management, payments, tax compliance and invoicing. Card details are collected by Paddle, never by us.
- Professional advisers such as legal and accounting support, and authorities where we are legally required to disclose.
- If you connect a third-party service yourself — for example importing a repository from GitHub — data is shared with that service only to perform the action you asked for.
International transfers
- Our providers may process data outside your country, including outside the UK and EEA. Where that happens we rely on appropriate safeguards such as standard contractual clauses or an adequacy decision.
Cookies
- We use essential cookies and local storage to keep you signed in and remember workspace preferences such as theme and dashboard filters. These are required for the app to work.
- We do not run advertising cookies. Any analytics we use is limited to aggregated product usage, and you can clear cookies for the site from your browser at any time.
Access controls
- Access to the app requires a verified email and password, or Google sign-in.
- Database access rules are scoped per account so your projects, threads and tickets are readable only by you and, on team plans, the members you invite.
- Admin tooling is limited to KoderDev staff accounts and is used for support and abuse handling.
Security measures
- We apply appropriate technical and organisational measures: encryption in transit, encrypted storage, per-account database access rules, and access to admin tooling limited to named staff accounts.
- No system is perfectly secure, so we also keep audit trails of sensitive account changes such as email changes and plan grants.
Retention and deletion
- Account and project data is kept while your account is active so you can return to your work, and is deleted or anonymised when it is no longer needed for the purposes above.
- You can delete individual projects at any time from your dashboard.
- To delete your whole account and its projects, ask us from Settings or email Support@koderdev.com and we will confirm once it is done. Billing and tax records are retained for as long as the law requires.
Your rights
- You can ask for access to the personal data we hold, correction of inaccurate data, deletion, restriction of processing, portability, or object to processing based on legitimate interests. Where processing relies on consent you can withdraw it at any time.
- Send privacy requests to Support@koderdev.com from the email address on the account so we can verify the request. We respond within one month.
- If you are in the UK or EEA and are unhappy with our response, you can complain to your local data protection supervisory authority.
Security contact
- If you believe you have found a vulnerability, email Support@koderdev.com with the details and steps to reproduce. Please avoid testing that could affect other customers' data.
Shared responsibility
- The platform provides the hosting, authentication and database controls described above. KoderDev is responsible for how we configure and operate them.
- You are responsible for what you build and publish with KoderDev, including the data your own end users give you and the review of generated code before it goes live.
See also our Terms of Service and Refund Policy.
