Legal
Privacy policy
contextu is a tool for design system teams. This page describes exactly what we store, why we store it, and how to get it removed. It reflects what the product does today, not what it might do later.
Who is responsible
The controller for this data is contextu. For anything in this policy, write to info@contextu.app.
The waitlist
If you enter your email address on the home page, we store that address, which form you used, and the date. Nothing else. We use it for one purpose: to email you when contextu opens up.
- Legal basis: your consent, given by submitting the form.
- Every email we send carries an unsubscribe link that works in one click, without signing in.
- Unsubscribing marks your address as opted out. We keep that record so a later signup cannot silently undo your choice. Ask us and we delete the row entirely.
- We do not sell, rent or share these addresses.
Your account
Signing in is handled by Clerk, which stores your name, email address and, if you upload one, a profile photo. Inside contextu we store your workspace, its members and their roles, and the design systems you create.
What we never store
contextu reads your repository to derive a contract: tokens, component APIs and rules. Your source code is never stored, not in the database, not in logs, and not in error reports. Extraction runs in a worker that clones the repository, derives the specification and then discards the files. Only that derived specification is kept.
The same applies to feedback reported by CI and AI tools: we accept a rule name, a file path, a line number and a suggested token. Never a fragment of code.
Figma
When you import tokens or assets, your Figma token is used for that single request and then discarded. We store the file key, the source type and the resulting tokens, never the token itself.
Payments
Paid plans run through Stripe. Card details go straight to Stripe and never touch our servers. We store a Stripe customer reference, a subscription reference and which plan is active.
Who processes data on our behalf
- Clerk, for accounts and sign-in.
- Stripe, for payments, only once you subscribe.
- Resend, for sending email.
- Figma and GitHub, only when you connect them yourself.
- Our own database and application server, which we host ourselves.
Cookies
We set a session cookie through Clerk so you stay signed in, and we remember your light or dark preference in your browser. There is no advertising, no tracking pixel and no analytics script on this site.
How long we keep things
- Waitlist addresses: until you unsubscribe and ask for removal, or until the launch mailing is done and the list is no longer needed.
- Workspace data: until you delete the workspace, which removes its systems, tokens, documentation and API keys immediately.
- Account data: managed by Clerk and removed when you delete your account.
Your rights
Under the GDPR you can ask for a copy of your data, have it corrected, have it deleted, object to its use, or withdraw your consent at any time. Write to info@contextu.app and we will respond within one month. You can also complain to the Autoriteit Persoonsgegevens.
Changes
If we change what we store or why, we update this page and the date at the top. If the change is significant and you are on the waitlist, we tell you before it takes effect.