Privacy Policy

Last updated: April 19, 2026

Final Chek (“we”, “us”, or “our”) operates the Final Chek platform accessible at finalchek.com (the “Service”). This Privacy Policy explains what information we collect, how we use it, and your rights regarding that information. By using the Service, you agree to the practices described here.

1. Information We Collect

Account Information

When you sign up, we collect your email address via Supabase Auth (magic-link authentication). We do not collect passwords.

Uploaded Code

To run an audit you upload a ZIP archive of your codebase. We process this file entirely in your browser — filtering, concatenating, and hashing the contents before transmitting only the resulting text string to our secure storage. We do not store your raw ZIP file. The processed text is deleted from storage as soon as your audit report has been generated.

Payment Information

Galahad Technology Consulting LLC FZ processes transactions via Stripe as our payment service provider. We never receive or store your card details. Stripe provides us with transaction metadata (e.g. plan purchased, transaction ID) to credit your account. Stripe's privacy practices are described at stripe.com/privacy.

Usage Data

We collect standard server logs (IP address, browser type, pages visited, timestamps) to operate and improve the Service. This data is retained for up to 90 days.

Cookies

We use essential cookies to maintain your login session (set by Supabase Auth). We also set a cookie_consentpreference in your browser's local storage to remember your cookie choices. No advertising or tracking cookies are set without your consent.

2. How We Use Your Information

  • To authenticate you and maintain your account.
  • To perform the code audit — your codebase text is sent to our AI providers under our API agreements. See Section 4 for details.
  • To process payments and manage your audit credits via Stripe.
  • To send transactional emails (magic links, receipts).
  • To monitor and improve the reliability and security of the Service.
  • To comply with legal obligations.

3. Data Storage and Security

Your data is stored in Supabase (hosted on AWS). All data is encrypted at rest and in transit. Row-Level Security (RLS) policies ensure that you can only access your own scans and account data. Uploaded codebase text is stored in a private storage bucket and automatically deleted after your audit completes.

4. Third-Party Processors

We share your data with the following sub-processors to operate the Service:

  • Supabase — authentication, database, and file storage. Privacy policy
  • Stripe — payment processing and subscription management. Privacy policy
  • Anthropic— AI analysis of your codebase. Your code text is sent as a prompt and not used to train Anthropic's models under our API agreement. Privacy policy
  • Google— AI analysis of your codebase. Your code text is sent as a prompt under Google's API terms. Privacy policy
  • Trigger.dev — background task execution. Task payloads contain only your scan ID and user ID, not your code. Privacy policy

5. Data Retention

  • Codebase text — deleted automatically from storage after your audit report is generated (typically within 10 minutes of upload).
  • Audit findings — stored in your account indefinitely so you can review past reports. You may delete a report at any time from the dashboard.
  • Account data — retained while your account is active. You may request deletion at any time (see Section 6).

6. Your Rights

Depending on your jurisdiction you may have the right to access, correct, port, or delete your personal data, and to object to or restrict its processing. To exercise any of these rights, email us at privacy@finalchek.com. We will respond within 30 days.

7. Children

The Service is not directed at children under 16. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us so we can delete it.

8. Changes to This Policy

We may update this policy from time to time. We will notify you of material changes by posting a notice in the dashboard or by email. Continued use of the Service after changes take effect constitutes acceptance of the updated policy.

9. Contact

Questions or concerns? Reach us at privacy@finalchek.com or through our Contact page.