Privacy Policy

Last updated: January 12, 2025

Privacy First, Always

At FlouState, we believe that tracking productivity shouldn't mean sacrificing privacy. We've built our entire product around this principle. This policy explains what data we collect, why we collect it, and how we protect it.

What We Track

Coding Activity Patterns

  • Keystroke frequency - How often you type, not what you type
  • File activity - Which files you edit and when
  • Lines of code - Added and deleted line counts only
  • Programming languages - Languages used in your sessions
  • Active vs idle time - When you're actively coding

Session Metadata

  • • Session start and end times
  • • Total duration and active coding time
  • • Focus scores based on consistency
  • • Git commits and branch names (no commit messages)

Account Information

  • • Email address for authentication
  • • GitHub username (if using GitHub OAuth)
  • • Subscription status and billing information
  • • Usage analytics (feature usage, not code content)

What We NEVER Track

  • Your actual code - We never see or store your source code
  • Keylogging - We don't record what you type
  • Screen recording - No screenshots or screen capture
  • Other applications - We only track VS Code activity
  • Browsing history - We don't monitor web activity
  • Personal files - No access to your documents or system

How We Protect Your Data

Encryption - All data is encrypted in transit (TLS) and at rest

Secure infrastructure - Hosted on Vercel with Supabase (SOC 2 compliant)

Authentication - Secure OAuth 2.0 and token-based authentication

Access controls - Row-level security ensures you only see your data

Regular backups - Automated backups with point-in-time recovery

No employee access - Your coding data is never accessed by our team

Data Sharing

We do NOT sell, rent, or share your personal data. Period.

We only share data in these specific cases:

  • Payment processing - Basic info with Stripe for billing
  • Analytics - Anonymous usage data with PostHog
  • Legal requirements - Only if legally required (we'll notify you)

Note: If using AI insights (Pro feature), anonymized patterns may be sent to OpenAI for analysis. This never includes your actual code.

Your Rights

You have complete control over your data:

  • Access - View all data we have about you
  • Export - Download your data in JSON format (Pro feature)
  • Delete - Permanently delete your account and all data
  • Opt-out - Disable analytics and AI insights anytime
  • Portability - Export and take your data anywhere

Manage your data from Privacy Settings

Cookies & Local Storage

We use minimal cookies and local storage:

  • Authentication - Session tokens (required)
  • Preferences - Timer settings and UI preferences
  • Analytics - PostHog tracking (can be disabled)

We don't use tracking cookies or sell data to advertisers.

Questions?

If you have any questions about this privacy policy or how we handle your data, we're here to help.

privacy@floustate.com

We may update this policy as we improve FlouState. We'll notify you of any significant changes.

Thank you for trusting us with your productivity data. We take that responsibility seriously.