Privacy Policy

Last updated: May 15, 2026

1. Information We Collect

When you use Vettara Launch, we may collect the following information:

  • Account information: Email address, name, and hashed password when you create an account
  • Audit data: Web application URLs you submit for testing, the intended user flows you describe, and the resulting audit reports
  • Login credentials for audited apps: If you provide login credentials for your application (e.g., test account email and password), these are used during the browser-based audit session to execute authenticated flows
  • Uploaded documents: Product specs, READMEs, feature descriptions, or other supporting documents you optionally upload to provide audit context
  • Execution evidence: Screenshots, interaction logs, and behavioral observations captured during the browser-based audit
  • Payment information: Transaction records related to credit purchases (actual payment processing is handled by our third-party payment provider)
  • Usage data: Pages visited, features used, and general interaction patterns with our platform

2. How We Use Your Information

We use your information to:

  • Execute browser-based audits of the applications you submit
  • Generate and deliver audit reports with findings and scores
  • Send email notifications about audit status and account activity
  • Manage your account and credit balance
  • Improve our platform and audit quality
  • Communicate important service updates

3. What We Do Not Do

  • We do not sell your personal data to third parties
  • We do not share your audit reports or application URLs with other users or external parties
  • We do not use your application data, audit results, or uploaded documents to train any models
  • We do not claim ownership of your application, its content, or your audit data
  • We do not store payment card details (handled by our payment provider)
  • We do not access your application's source code, databases, or private infrastructure

4. Credential Handling

If you provide login credentials for the application being audited (e.g., a test account email and password), these credentials are used only during the active browser audit session to log in and execute authenticated user flows.

Credentials are deleted after the audit session completes. They are never stored long-term, shared with third parties, or used for any purpose other than executing the flows in your audit.

We strongly recommend providing test or staging credentials rather than production admin credentials.

5. Data Retention

We retain different types of data for different periods:

  • Login credentials for audited apps: Deleted after each audit session
  • Execution evidence (screenshots, logs): Retained for 30 days after the audit, then automatically deleted
  • Uploaded documents (specs, READMEs): Retained for 30 days after the audit, then automatically deleted
  • Audit reports: Retained while your account is active
  • Account data: Retained while your account is active. If you request account deletion, personal data is removed within 30 days

Aggregated, anonymized data may be retained for service improvement purposes. Retention periods are subject to change and will be updated in this policy.

6. Third-Party Services

Our platform uses the following categories of third-party services:

  • Browser execution service: We use a third-party cloud browser service to execute user flows in your application during audits. This service interacts with your application on our behalf but does not store your data independently
  • Report interpretation: We use automated services to help interpret browser execution results and generate report findings. Your application data is processed for this purpose only and is not used to train any models
  • Payment processing: Transaction processing is handled by our third-party payment provider
  • Email delivery: Email notifications are sent through a third-party email service

These services have their own privacy policies that govern how they handle data during processing.

7. Data Security

We implement industry-standard security measures to protect your data, including encrypted connections (HTTPS), hashed passwords, and secure database storage. However, no method of electronic transmission or storage is 100% secure, and we cannot guarantee absolute security.

8. Cookies

We use essential cookies required for authentication and session management. We do not use third-party tracking cookies or advertising cookies.

9. Your Rights

You have the right to:

  • Access your personal data stored by Vettara
  • Request correction of inaccurate data
  • Request deletion of your account and associated data
  • Opt out of non-essential communications

To exercise these rights, contact us at [email protected].

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify users of significant changes via email or a notice on our platform.

11. Contact

For privacy-related questions, contact us at [email protected].