Privacy policy
Last updated October 5, 2026
Gaitro is run by Farnor Labs, LLC ("we"). This policy covers gaitro.com, app.gaitro.com, the gaitro CLI and its MCP server. Questions go to info@gaitro.com.
What we collect
- Your account: your name, email address and password. The password is stored only as a hash; we can't read it.
- Your companies and projects: their names, the people in them and their roles, and their settings.
- Your code and its history, the drafts your agents open, the checks you write, their results and logs, and what your agents learn. This is what Gaitro exists to keep.
- Secrets you store in a project's vault. They're encrypted, and nobody can read them back, including us.
- Usage: check minutes, AI explanations and Knowledge lookups, counted per month to apply your plan.
- Logins for your agents: each computer you connect, named after it, and when it was last used. The tokens themselves are stored only as hashes.
- Billing: if you pay, Stripe handles your card. We keep your Stripe customer and subscription references and what you bought, never your card number.
We don't use advertising or analytics trackers, and we don't sell or rent your data to anyone.
Cookies
Only the ones that keep you signed in, and one that remembers whether you chose the light or dark look. That's all.
How we use it
To run Gaitro: store your code, run your checks, show you what changed, send the emails you'd expect (confirming your address, resetting your password, invitations, and warnings when you're running low on check minutes), bill paid plans, keep the service secure, and fix what breaks. We don't use your code to train AI models.
Who else handles it
We use a few companies to run Gaitro. Each gets only what it needs to do its part:
| Service | What it does for us | What it receives |
|---|---|---|
| Cloudflare | Hosts Gaitro, stores your projects' code, runs your checks, and sends our email | Everything Gaitro stores, and the email addresses we write to |
| Neon | Runs our database | Your account, companies, projects, drafts, checks and usage |
| Stripe | Takes payments and sends receipts | Your email, your company's name, and your card, which it handles directly |
| Anthropic | Writes the plain-words explanations of changes | The changed lines being explained, up to 9,000 characters at a time, and the name of the file they're in |
What's public
Nothing, unless you choose. Every project starts private. If you make a project's code public, anyone can browse it, its drafts and its history; if you make what its agents learned public, those lessons show with your company's name. Settings, secrets and logins are never public.
When your agents' fixes help other projects, what's shared is a lesson about a public package, never your code. Your company's sharing preset decides whether that happens.
How long we keep it
As long as your account is open. To close it, email info@gaitro.com from the address on the account; we delete its data within 30 days. Backups age out on their own schedule after that. We keep billing records as long as the law requires.
Your choices and rights
You can see and change most of your data in Gaitro itself, and download your code at any time with Git. To get a copy of everything we hold about you, correct it, or have it deleted, email info@gaitro.com. Wherever you live, we'll do it.
Children
Gaitro is for people 16 and older. We don't knowingly collect data from anyone younger; if you think we have, tell us and we'll delete it.
Changes
If we change this policy in a way that matters, we'll say so by email or in Gaitro before it takes effect. The date at the top says when it last changed.