Privacy Policy
What we collect, why, and the control you have over it.
Last updated: July 3, 2026
Summary
BoardRepo is a place to share electronics design projects as a link. We collect the little we need to run accounts, host your projects, and keep the service working. We do not sell your personal data, and we do not grant anyone rights to train models on your content beyond the license you attach to a project. We use a small set of cookies to keep you signed in and to measure how BoardRepo is used, and you can opt out of analytics at any time.
Who we are
BoardRepo is operated by Flintt, Inc., a Delaware corporation located at 2261 Market Street STE 13714, San Francisco, CA 94114, United States, which is the controller of the personal data described here. You can reach us about privacy at [email protected].
Data we collect
Account data. When you sign up we store your email address, a username (handle), and optionally a display name and avatar image. If you sign in with Google or GitHub, we receive your basic profile from that provider (with GitHub: your account id, username, name, avatar, and verified email) and store the account link and session that keep you signed in. If you install our GitHub App to import private repositories, you grant BoardRepo read-only access to the repositories you select; we store the installation id and read those repositories only to import the boards you choose.
Content you create. The projects and files you upload or import, the visibility you set on them, comments you post, and projects you save. Files you upload are stored as you sent them, alongside the previews and build outputs we generate from them.
Usage and device data. Basic analytics about how BoardRepo is used, such as pages viewed and features used, plus technical logs. Our analytics and error-tracking providers also receive the technical data your browser sends with each request, including your IP address and user-agent. Separately, to count distinct downloaders of a project without identifying anonymous visitors, we store a one-way hash of the IP address in our own database, not the address itself.
Diagnostics. When something breaks, our error-tracking tool records the error and limited technical context so we can fix it.
How we use your data
- run your account and keep you signed in;
- host, render, and serve your projects to you and the people you share with;
- generate previews, BOMs, and fabrication files from your sources;
- send you the emails the service needs, such as sign-in links and notices;
- keep the service secure, prevent abuse, and enforce limits;
- understand usage in aggregate so we can improve BoardRepo.
Legal bases (GDPR)
If you are in the European Economic Area or the United Kingdom, we process your data to perform our contract with you (running your account and hosting your projects), on the basis of our legitimate interests (keeping the service secure and understanding usage in aggregate, balanced against your rights), and to meet legal obligations. If we introduce processing that requires your consent, we will ask for it, and you can withdraw consent at any time.
Cookies and analytics
BoardRepo uses two kinds of cookies and similar local storage:
- Essential cookies that make the service work: a sign-in cookie that keeps you logged in, and short-lived access cookies that remember when you have unlocked a private-link or password-protected project. These are needed to provide the service.
- Analytics cookies set by PostHog, our product-analytics provider. They store an identifier and session information so we can measure how BoardRepo is used and improve it. If you are signed in, we associate these events with your account.
Our analytics are first-party and used only to understand and improve BoardRepo. We do not use them for advertising, and we do not sell or share the data. You can opt out of analytics at any time by emailing [email protected], and you can clear or block these cookies in your browser at any time. We are adding an in-product cookie control so you can manage these preferences directly.
Who we share data with
We do not sell your personal data. We share it only with the service providers that help us run BoardRepo, each acting on our instructions under a data processing agreement:
| Provider | Purpose | Data involved |
|---|---|---|
| Render | Application hosting and the export worker | All service data in transit and processing |
| Cloudflare (R2 and CDN) | File storage and delivery | Uploaded files and generated artifacts |
| Resend | Transactional email (sign-in links, notices) | Email address |
| Optional sign-in with Google | Google account identifier and basic profile | |
| GitHub | Optional sign-in with GitHub | GitHub account id, username, name, avatar, and verified email |
| GitHub App | Optional private-repository import | Installation id; read-only access to the repositories you select |
| PostHog | Product analytics | Usage events, account id and email if signed in |
| Sentry | Error and performance diagnostics | Error details and limited technical context |
We may also disclose data if the law requires it, or to protect the rights, safety, and security of BoardRepo, our users, and the public.
Public content
Projects you set to public are visible to anyone and can be crawled by search engines and AI tools, always under the license you attach to the project. Private-link and password-protected projects are unlisted and carry noindex metadata. Anything you put in a public project, including text in files and comments, is public. Do not put personal or confidential data in a project you make public.
International transfers
BoardRepo is operated from the United States, and our providers may process data in the United States and other countries. Where we move personal data out of the EEA or the UK, we rely on appropriate safeguards such as the European Commission’s standard contractual clauses.
How long we keep data
We keep your account data while your account is open. Project files and content are kept until you delete them or close your account. When you delete a project or your account, we remove it from the live service promptly, and backup copies age out on a normal cycle. We keep limited logs and aggregate analytics for a reasonable period to run and secure the service.
Your rights
Depending on where you live, you have rights over your personal data. Under GDPR and UK law these include access, correction, deletion, portability, and the right to object to or restrict certain processing, plus the right to complain to your local data protection authority.
If you are a California resident, the CCPA and CPRA give you the right to know what we collect, to delete it, to correct it, and to opt out of the sale or sharing of personal information. We do not sell or share personal information as those terms are defined, and we will not discriminate against you for exercising your rights.
You can exercise any of these rights by emailing [email protected]. You can also edit your profile and delete your projects directly in the product, and you can ask us to delete your account by emailing the same address.
Security
We use encryption in transit, scoped access controls, and access grants held in httpOnly cookies rather than in page URLs. No service can promise perfect security, so keep your email account secure and keep your own copies of important files.
Children
BoardRepo is not directed to children under 13, and we do not knowingly collect their personal data. If you believe a child has given us personal data, contact us and we will remove it.
Changes to this policy
We may update this policy as BoardRepo changes. When we make a material change we will update the date above and, where appropriate, give notice in the product.
Contact
Questions or requests about your data: email [email protected]. See also our Terms of Service.