VeilguardVeilguard

Privacy Policy

Last updated: July 13, 2026

The short version

The free scan only looks at your app from the outside — exactly what any visitor or attacker can already see. We never ask for or store your source code. Deeper checks are opt-in and read-only, and you can revoke access at any time.

What we scan

When you give us your app's URL, Veilguard makes external requests to it the way a browser would, and inspects the responses for security issues. If you choose to connect a service such as GitHub or Supabase, you grant read-only access that we use only to run the checks you asked for — we do not copy or retain your source code, and you can disconnect at any time.

What we store

To show your results and keep monitoring your app, we store your account details (such as your email), the app URLs you add, and the findings and grades from each scan. We do not store your source code or the full contents of your app. You can delete this data at any time by deleting your account.

Third parties

  • Dependency CVE lookups— where applicable, package names and versions (never your code) are sent to Google's OSV.dev to check for known vulnerabilities.
  • Payments — purchases are processed by Polar as our Merchant of Record. Polar collects the information needed to process your payment (such as your email and billing details) and is the data controller for that transaction. We never see or store your full payment details.

This website

We do not use tracking cookies or sell any data. If we add privacy-respecting, aggregate analytics in the future, we will update this policy first.

Your rights & contact

You can request access to or deletion of any personal data associated with your account by emailing info@veilguard.dev. For payment-related data, you can also contact Polar directly through their customer portal.