Byline

Privacy policy

Draft — under review. This text is not yet ratified.

Effective date: to be set at launch. This policy mirrors the /data transparency page. Where they differ, the stricter reading governs.

What we collect

How we use it

To build and synthesize your ledger, render your pages and exports, operate billing, and secure the service. Synthesis calls Anthropic's API with your artifact data; Anthropic processes it as a subprocessor.

What we never do

We never sell your data. We never show your ledger to your employer. We never publish anything you did not explicitly publish. Machine actions never widen visibility.

Research (opt-in only)

Byline supports published academic research on how engineering work is recognized. Participation is consent-based and mirrors the dashboard's Research card.

Subprocessors

Convex (database and functions), Anthropic (synthesis), Stripe (billing), Vercel (hosting), GitHub (sign-in and data source).

Retention and deletion

Your data persists while your account exists, in any billing state. Deleting an entry removes it from every surface. Removing a repo removes its artifacts.

Closing your account (Dashboard → Danger zone) deletes your data immediately: your ledger, drafts, artifacts, public page and handle, vouches, collector tokens, and the GitHub connection. The stored GitHub token is destroyed and revoked at GitHub. Your Stripe subscription is canceled; Stripe keeps the billing records the law requires. Platform backups may hold deleted rows for a limited period, to be confirmed.

Your rights

Access, export, correction, deletion — the product's own controls provide all four. Email works too: hello@withbyline.com.

Changes

We announce material changes by email and on the site at least 15 days ahead.

Privacy policy — Byline