Privacy Policy for Code Auditor

Last updated: October 9, 2026

Code Auditor is an open-source developer tool (MIT licensed) that runs locally on your machine. It does not collect, store, or transmit personal data by default.

What stays local

All code analysis runs on your device. Source code, file paths, identifiers, and project structure never leave your machine during normal operation.

Optional, opt-in feedback

If you explicitly enable anonymous dismissal feedback via the telemetry tool, dismissed findings are sent to a feedback service. This is disabled by default. When enabled, only the following is transmitted: the dismissal reason (as text), a structural AST signature (grammar node types only, never their contents), and a coarse language hint. Source code, identifiers, literals, file paths, and environment details are never sent.

No third-party tracking

The documentation site at codeauditormcp.com does not use cookies, analytics, or third-party tracking scripts.

Contact

Questions or concerns: hello@codeauditormcp.com