Legal
Privacy Policy
Last updated: July 6, 2026
1. What this covers
This policy explains what DesignGuard AI ("DesignGuard," "we," "us") collects when you use the DesignGuard dashboard, Figma plugin, and GitHub App at designguardai.com, and how that data is used, stored, and protected.
2. Information we collect
- Account information: name, email address, and a hashed password (or, if you sign in through GitHub, the profile information GitHub provides).
- Design and code data: the Figma files, pages, frames, and components you choose to import, and the GitHub repositories you connect and select for sync — including component names, props, tokens, and file paths needed to detect drift between design and code.
- Connection credentials: Figma personal access tokens and GitHub tokens you provide are encrypted at rest (AES-256-GCM) before storage and are never displayed in full after being saved. One-time tokens are used only for a single request and are not stored at all.
- Usage data: audit history, sync activity, and basic product analytics needed to operate and improve the service.
- Billing information: subscription plan and status. Payment card details are handled entirely by our payment processor (Dodo Payments) — we do not receive or store your card number.
3. How we use it
We use this information to run audits, detect design-system drift, generate Code Connect scaffolds, enforce plan limits, process billing, and secure your account. Where an audit uses an LLM to enhance a deterministic finding, only the specific design/code excerpt being analyzed is sent to our model provider (OpenAI) for that single request — the LLM never defines what counts as a violation, and design data is not used to train third-party models.
4. Who we share it with
We share data only with the service providers needed to run DesignGuard: our hosting and database providers, our payment processor (Dodo Payments) for billing, our background-job provider for durable sync/indexing work, and, when enabled, our LLM provider for audit enhancement. We do not sell your data or share it with advertisers.
5. Data retention and deletion
We retain workspace data for as long as your account is active. You can disconnect a Figma or GitHub connection at any time, which revokes our access and stops future syncs. To request deletion of your account and associated data, contact us at the address below.
6. Your rights
Depending on where you live, you may have rights to access, correct, export, or delete your personal data. Contact us to exercise any of these rights.
7. Changes to this policy
We'll update the date at the top of this page when this policy changes, and post material changes here before they take effect.
8. Contact
Questions about this policy? Email support@designguardai.com.