Legal

Privacy Policy

Plain-English answers about what we collect, why, and the control you keep over your data.

Last updated: June 14, 2026

1. Who we are

Vynix ("Vynix", "we", "us" or "our") provides a website-feedback and developer-context tool: a lightweight browser widget, a dashboard, an API and an MCP server that turn visual feedback into structured context for AI coding agents.

This Privacy Policy explains what we collect, why, and the choices you have. It applies to https://vynix.in, the dashboard, the API and the Vynix widget. It does not cover third-party websites that embed the widget. Those sites are run by their own operators under their own policies.

2. The two roles in our service

Vynix is used in two ways, and the responsibilities differ:

  • Account holders (our customers): people who sign up, create projects and install the widget. For their account data, we act as the data controller.
  • Feedback authors (site visitors): people who leave a note through a widget that a customer installed on their own site. For that feedback, the customer is the controller and Vynix acts as a processor, handling the data on the customer's behalf and instructions.

If you left feedback on someone else's website and want it changed or removed, please contact the operator of that website; we will support their request.

3. Information we collect

Account information you give us: your name, email address, a securely hashed password, and (if you sign in with Google or GitHub) the basic profile and email those providers share.

Project and feedback content: the notes you or your visitors capture, and the technical context attached to each note so an agent can act on it: the page URL and title, the element's CSS selector and XPath, its tag, classes, visible text, bounding box and computed styles, the viewport size, and recent browser console errors and failed network requests.

Screenshots you choose to attach: on a region note you can click "Attach screenshot", at which point your browser asks your permission to share the current tab and we capture a single still image of just the area you selected. It is only ever taken after you grant that permission, it is stored with the note you attach it to, and you can remove it before sending.

What we deliberately do not capture: request or response bodies, request or response headers, cookies, form values you did not type into a note, or full query strings. Captured URLs are reduced to their origin and path before they are stored. We never capture your screen automatically: screenshots happen only on an explicit click and a browser permission prompt. Runtime diagnostics can be switched off entirely with a single widget attribute.

Billing information: when you upgrade, payment is handled by our payment partners (Razorpay and PayPal). They process your card or payment-method details directly. We receive only a transaction reference and status, never your full card number.

Technical and usage data: standard server logs such as IP address, browser type, timestamps and the pages or API endpoints you request, used to keep the service secure and reliable.

4. How we use information

  • Provide, operate and maintain the dashboard, API, MCP server and widget.
  • Turn your feedback into structured context, prompts and (when you ask) GitHub issues.
  • Authenticate you, secure your account and prevent abuse or fraud.
  • Process subscriptions and payments through our payment partners.
  • Respond to your support requests and send essential service notices.
  • Understand aggregate, non-identifying usage so we can improve the product.

We do not sell your personal information, and we do not use the content of your annotations to train our own or third-party machine-learning models.

5. Cookies and local storage

We keep things minimal. The dashboard stores your signed-in session token in your browser so you stay logged in. The widget uses your browser's local storage to remember notes you are drafting before you send them. We do not use third-party advertising or cross-site tracking cookies.

6. When we share information

We share data only with service providers that help us run Vynix, and only as needed:

  • Payment processing: Razorpay and PayPal, to take payments securely.
  • Source control: GitHub, only when you choose to connect a repository or open an issue from an annotation.
  • Hosting and infrastructure: the servers and databases that run the service.
  • Legal compliance: where we are required to by law, or to protect the rights, safety and security of our users and the service.

If Vynix is ever involved in a merger, acquisition or asset sale, we will continue to protect your information and will notify you before it becomes subject to a different policy.

7. Data retention

We keep your account and project data for as long as your account is active. You can delete annotations and projects at any time, and you can ask us to close your account and remove your personal data. We may retain limited records where we are legally required to (for example, tax and billing records) or to resolve disputes and enforce our agreements.

8. How we protect your data

Connections to the dashboard, API and widget are encrypted in transit with HTTPS. Passwords are hashed, access tokens are signed, and feedback is scoped to the account and project that created it. No method of transmission or storage is ever completely secure, so while we work hard to protect your data we cannot guarantee absolute security.

9. Your choices and rights

Depending on where you live, you may have the right to access, correct, export or delete your personal data, and to object to or restrict certain processing. You can do much of this yourself from the dashboard, or email us and we will help.

To exercise any of these rights, write to privacy@vynix.in. We may need to verify your identity before acting on a request.

10. International transfers

Vynix is operated from India and your data may be processed on servers there or with the service providers listed above. Where data is transferred across borders, we rely on appropriate safeguards and the protections described in this policy.

11. Children

Vynix is a tool for website owners and developers and is not directed at children under 16. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, contact us and we will delete it.

12. Changes to this policy

We may update this policy as the product and the law evolve. When we make material changes we will update the date below and, where appropriate, notify you. Continuing to use Vynix after an update means you accept the revised policy.

13. Contact us

Questions about this policy or your data? Email us at privacy@vynix.in and we will respond as soon as we can.

Stop describing bugs. Point at them.

Add one script tag and give your AI agent the context it has been missing. Free while we grow.