Privacy Policy
Last updated: August 19, 2026
1. Information we collect
actik scans public repositories you submit and reads their lockfiles to resolve dependency versions. We do not require an account and we do not collect personal information beyond what is necessary to provide the service. We may collect basic analytics such as pages visited and request metadata to operate and improve the service.
2. How we use information
The data you submit is used to perform dependency and supply-chain analysis, return scan results, and improve the product. We do not sell your personal information.
3. Third-party services
actik relies on third-party services such as HydraDB, Google OSV, npm, and PyPI to resolve and verify dependency data. These services have their own privacy policies. We are not responsible for their practices.
4. Data retention
Scan inputs and results may be retained for the duration needed to provide and improve the service, and to support security research. We delete data when it is no longer needed for these purposes.
5. Your rights
Where applicable, you may request access to, correction of, or deletion of personal data we hold about you by contacting us at the email address listed below.
6. Security
We take reasonable measures to protect the information we process. However, no method of transmission or storage is completely secure, and we cannot guarantee absolute security.
7. Changes to this policy
We may update this Privacy Policy from time to time. Material changes will be reflected on this page. Your continued use of actik after changes constitutes acceptance of the updated policy.