Privacy Policy
Last Updated: September 4, 2025
1. Information We Collect
Account Information
- Username and email address
- Encrypted password (we never store plain text passwords)
- Account creation date and subscription status
Project Data
- Epic and project information you manually input
- Team member data and velocity information
- CSV files and dashboard configurations
- Milestone dates and project timelines
Optional Integration Data
- Jira server connection details (if you choose to connect)
- API tokens (encrypted and only used for your dashboards)
Usage Information
- Dashboard views and interactions
- Login times and session data
- Report downloads and exports
2. How We Use Your Information
Service Delivery
- • Create and manage your dashboards
- • Generate AI-powered insights
- • Calculate project metrics
- • Enable team collaboration
Communication
- • Send account notifications
- • Provide customer support
- • Share service updates
- • Process subscription changes
3. AI and Data Processing
AI processing includes:
- Project health analysis and recommendations
- Risk detection and mitigation suggestions
- Natural language question answering about your projects
- Velocity and timeline predictions
4. Data Sharing and Third Parties
Limited Sharing Occurs Only For:
- Google Gemini AI (for generating project insights)
- Replit hosting infrastructure (secure data storage)
- PostgreSQL database services (encrypted data storage)
- Legal compliance (only if required by law)
5. Data Security
Encryption
- • All data transmitted via HTTPS
- • Passwords encrypted with Werkzeug
- • API tokens securely stored
Access Control
- • User authentication required
- • Session management
- • Project-based permissions
6. Your Rights and Choices
Access
View all your data anytime through your dashboard
Correct
Update your information and project data directly
Delete
Remove your account and all associated data
7. Data Retention
- Account Deletion: All data permanently deleted within 30 days
- Inactive Accounts: Free accounts inactive for 2+ years may be archived
- Backup Retention: Encrypted backups retained for 90 days for recovery purposes
8. Cookies and Tracking
We use minimal cookies necessary for:
- User authentication and session management
- Remembering your preferences and settings
- Google Analytics for basic usage statistics (anonymized)
You can disable cookies in your browser, but this may affect functionality.
9. International Data Transfers
Your data may be processed and stored in the United States through our hosting provider (Replit) and AI services (Google). We ensure adequate protection through:
- Standard contractual clauses
- Encryption in transit and at rest
- SOC 2 compliant infrastructure
10. Children's Privacy
EpicScope is not intended for users under 13 years of age. We do not knowingly collect personal information from children under 13. If you become aware that a child has provided us with personal information, please contact us immediately.
11. Changes to Privacy Policy
We may update this Privacy Policy periodically. We will notify you of any material changes by:
- Email notification to your registered address
- In-app notification upon login
- Updating the "Last Updated" date above
12. Contact Us
If you have questions about this Privacy Policy or how we handle your data, please:
- Contact us through the EpicScope platform
- Visit Rooted In Pixels
- Use the help system within EpicScope