Privacy Policy
Last updated: March 1, 2026
What we collect
When you install Cerberus Cloud via GitHub Marketplace, we receive your GitHub organization ID and installation ID. When a pull request triggers a review, we temporarily process the PR diff, file names, and commit metadata to generate review feedback. We do not store your source code after the review completes.
How we use it
- Generate AI code review feedback on your pull requests
- Enforce billing quotas based on your subscription plan
- Improve service reliability through structured audit logs (no source code in logs)
Third-party services
We use OpenRouter as an LLM API gateway to route review prompts to AI models. PR diffs are sent to OpenRouter for inference and are subject to their privacy policy. We do not sell or share your data with any other third party.
Data retention
PR diffs are processed in memory and discarded after review generation. Billing records (plan, usage counts) are retained for the duration of your subscription. Audit logs are retained for 90 days.
Your rights
Uninstall the GitHub App at any time to stop all data processing. To request deletion of billing records, email hello@mistystep.io.
Contact
Misty Step Inc. — hello@mistystep.io