Privacy

This describes how Fervio handles your data when you connect GitHub or Linear, at fervio.co. It is written from the code that actually runs, not from intent. Last updated 9 August 2026.

What Fervio stores

Everything below lives in Cloudflare's key-value storage, in the region Cloudflare assigns. Nothing else is kept.

What Why How long
Your GitHub and Linear access tokens To read and write your issues on your behalf. It stays on the server and is never sent to the browser. 7 days, then the session expires
Your GitHub and Linear usernames To show who you are, and to record who owns and who was invited to a map. Until you ask for deletion
One email address, so Fervio can reach you For messages about the account itself: a sign-in from a device you have not used before, billing, and changes to the terms or the service. Read from GitHub or Linear when you sign in. Product news is a separate switch that stays off until you turn it on. Change the address, or remove it, in settings. Until you remove it, or delete the account
Card order on the map The map layout is Fervio's own; GitHub has nowhere to keep it. Until the map is deleted
Who you invited, and their role To decide who may open or edit a map. Until the member is removed or the map is deleted
When you signed in, and how many times To know how many people are using Fervio. Until you ask for deletion
A share snapshot, if you publish one So that a share link opens without a GitHub sign-in. This is a copy of the issue titles and states at the moment you published it. 90 days, or until you revoke the link
Your plan, and AI usage this month To apply the limits of your plan. Plan: until it changes. AI count: resets monthly
That you asked to hear when Pro opens, if you did So that Fervio can write to you once, when Pro goes on sale. The record is the date you asked; the address comes from the contact address above. Until you leave the list, or Pro opens

What Fervio never touches

Cookies

Two, both strictly necessary, neither used for tracking. A session cookie identifies your sign-in for 7 days, and a short-lived cookie guards the sign-in round trip for 10 minutes. Both are HttpOnly, so scripts on the page cannot read them.

Who else is involved

Deleting your data

Deleting a map removes its layout, its member list and any share snapshot. Signing out ends the session and discards the access token. To remove everything at once, use Delete account at the bottom of Settings — it erases your spaces, connections, keys, share links and sign-in record from Fervio. Your issues and boards on GitHub and Linear are not touched. Removing a connection — or deleting the account — also revokes Fervio at that provider, so it disappears from your authorized applications. If that step fails we say so, and you can revoke it yourself from GitHub (Settings → Applications) or Linear (Settings → API). If anything is left that you want gone, write to support@fervio.co.

Changes

Fervio is still changing. When what is stored changes, this page and the summary on the home page are updated together — the list above is meant to be countable, so anything new has to appear in it.