Last updated: August 22, 2026
When you use feedbacks.dev, we collect information you provide directly:
All data is stored securely on Supabase infrastructure with row-level security policies. Feedback data belongs to you. You can export or delete it at any time.
Feedback screenshots and image attachments are stored in private buckets. They are served only through an authenticated, project-owner-authorized download route. Stored integration credentials are encrypted and are never returned to the browser after saving.
The widget may record the page URL, page title, referrer, browser user agent, viewport, language, and time zone so a project owner can reproduce the reported issue. A screenshot is captured only when the submitter chooses the screenshot action and the project has that field enabled. Automatic page context keeps the origin and path but removes query strings and fragments, which often contain tokens or customer data. Project owners should also configure allowed origins for sensitive applications.
We use secure, same-site authentication cookies to keep you signed in on the browser and device you used. These cookies are necessary to provide your account, refresh the session, and protect private workspace routes, so they are not used for advertising and do not depend on optional measurement consent. Your session ends when you sign out, revoke the session, or an applicable security or session-lifetime limit is reached.
Google, Meta, and Reddit measurement is optional and off until you choose “Allow optional.” If enabled, browser tags may use advertising identifiers and cookies. For completed lead or signup events, our server may send a matching event identifier, a hashed normalized email, campaign click identifiers, IP address, user agent, and the page where the conversion happened. Browser and server events use the same identifier so providers can deduplicate them.
Advertising tags are limited to feedbacks.dev marketing and signup measurement. They are not installed in customer widgets, customer websites, submitted feedback, or public feedback boards. Choosing “Reject optional” prevents these tags and server conversion calls. Your choice is remembered for up to 180 days. You can change or withdraw it at any time; withdrawal stops optional tags, clears the stored campaign attribution and known readable measurement cookies, and reloads the page if a tag had already been loaded.
Your data is retained as long as your account is active. When you delete a project, all associated feedback, screenshots, and uploaded attachments are permanently removed. Free and Pro plans both surface full feedback history. Account deletion removes account-owned product data and uploaded feedback media. Operational delivery and security records are retained only as needed to operate, secure, and troubleshoot the service, with destinations redacted and credentials excluded. Early Adopter Programme records are kept for the programme lifecycle and associated account history, or until an applicable deletion request is completed. Advertising conversion records retain hashed match fields and delivery status only as long as needed for attribution, troubleshooting, deletion requests, and fraud prevention.
You can export your feedback data as CSV, delete entire projects, or delete your account from the Settings page. If you have an active paid subscription, cancel or downgrade it from Billing before account deletion. You can also withdraw advertising measurement through the privacy choices control and request deletion of lead, referral, or advertising match data by contacting us.
Questions about this policy or your data? Email pashaseenainc@gmail.com.