Privacy Policy

Last updated: October 2026

Information We Collect

When you use Majken, we collect:

  • Account information (email, name) when you sign up
  • GitHub profile data (publicly available) when you run analyses
  • If you connect GitHub as a candidate: your GitHub identity and email, and read access to the repositories you select, described below
  • Payment information processed securely through Stripe
  • Usage data to improve our service, described below

Cookies and Usage Data

To see which pages bring visitors and where they drop off, we run our own first-party event log on our servers. We do not use third-party scripts for it.

  • A cookie named dv_aid holds a random identifier. It lasts one year, is HTTP-only and SameSite=Lax, and contains no personal information.
  • We log page views (path, and the referring site's domain and campaign tags when present), report requests, signups, checkout starts and purchases, linked to that identifier and, when you are logged in, to your account.
  • We do not store IP addresses in these events, and we skip known bots and crawlers.
  • A session cookie keeps you logged in. We also load Google Analytics for aggregate traffic statistics.

You can delete the dv_aid cookie in your browser at any time. To have events linked to your account deleted, contact us at hello@majken.ai.

How We Use Your Data

We use collected information to:

  • Provide and improve our developer evaluation service
  • Show you your own report history: reports you unlocked or requested, and when you last opened each one
  • Process payments and manage subscriptions
  • Send service-related communications
  • Ensure security and prevent abuse

Data We Don't Store

We do not keep source code from analyzed repositories long term. A public report, including the code excerpts it shows, is cached so it loads quickly and is deleted after 30 days. Code from private repositories a candidate connects is never stored.

Candidates Who Connect GitHub

Candidates can sign in with GitHub to get a verified report. We process this data on the basis of your consent, which you can withdraw at any time. You choose one of three levels before anything is read.

  • Signing in gives us your GitHub user id, username, name, avatar and email, used to create or link your Majken account. The sign-in token is used during sign-in only and not kept.
  • Verified owner (the default): sign-in only. No app is installed and no private repository is read. Your report is built from your public GitHub data.
  • Private activity, no code: you install the read-only Majken GitHub App on repositories you select and tick which to include. We read only metadata: commits you authored (dates and counts), pull requests, reviews and language statistics. No file contents are fetched, and nothing from private repositories is sent to OpenAI.
  • Full review: the same, plus up to 4 private files you tick after seeing the list. Only those files are read, and their contents are sent to OpenAI's API for the review. OpenAI does not use API data for training, and may retain it for up to 30 days for abuse monitoring.
  • The app has read-only access to the repositories you select, and nothing else. We create a one-hour access token when an analysis runs and don't store it. You can revoke access at any time in your GitHub settings.
  • We never store code from private repositories: excerpts are removed before your report is saved. We keep the counts, scores, review notes, file paths and repository names. Employers never see private code.
  • Share links show the report without private code, and without private repository names unless you turn them on. Links expire after 90 days and you can revoke them. We count how often a link is opened.
  • Delete everything from your dashboard to remove your report, share links and installation record. Uninstall the app on GitHub to end our access. Your account itself can be deleted on request.
  • If an employer asked you for a report, we store their request with your name and email and send you one email about it. You're not added to any mailing list.

Third-Party Services

We use the following third-party services:

  • GitHub API - for public developer data, and for repositories candidates connect through our GitHub App
  • OpenAI - for AI-powered code analysis. OpenAI does not use API data for training, and may retain it for up to 30 days for abuse monitoring
  • Stripe - for payment processing
  • Resend - for transactional and marketing email

Data Controller

The data controller for your personal data is Amöba AB, org.nr 556853-4910, Folkskolegatan 5, 117 35 Stockholm, Sweden. Contact: hello@majken.ai

Contact

For privacy-related inquiries, contact us at hello@majken.ai