Privacy Policy
How EveryBug collects, uses, and protects your data — including payment processing and optional Jira Cloud integration.
Overview
EveryBug (“we”, “us”, “our”) operates the EveryBug website and bug-bash session recorder at https://everybug.com (the “Service”). This Privacy Policy explains what information we collect, how we use it, and your choices.
By creating an account or using the Service, you agree to this policy. If you do not agree, please do not use EveryBug.
Information we collect
We collect information you provide and data generated when you use the Service:
- Account details: name, email address, username, and password (stored as a secure hash) when you register, or profile information from Google Sign-In when you use that option.
- Workspace content: project and folder names, session titles, uploaded videos, bug reports (descriptions, timestamps, status, comments, history, drawings, and file attachments), and sharing settings.
- Usage and technical data: IP address, browser type, device information, and logs needed to operate, secure, and troubleshoot the Service.
- Communications: messages we send (e.g. login alerts, share notifications) and support correspondence if you contact us.
How we use your information
We use collected information to:
- Provide, maintain, and improve the Service (hosting sessions, collaboration, exports, search, and integrations).
- Authenticate you and protect accounts from unauthorized access.
- Send transactional emails (sign-in notices, share invitations) when enabled by your administrator’s email settings.
- Process payments for paid plans through our payment partners (see Payment processing below).
- Comply with legal obligations and enforce our terms.
We do not sell your personal information. We do not use your session videos or bug content to train third-party AI models.
Google Sign-In
If you sign in with Google, we receive your Google account ID, email, and display name from Google’s identity service. We use this only to create or link your EveryBug account and authenticate you. Google’s use of your data is governed by Google’s Privacy Policy.
Payment processing
EveryBug may offer paid subscriptions or one-time purchases. When you make a payment, the transaction is handled by third-party payment gateways (such as Stripe, Razorpay, PayPal, or similar processors we may use from time to time).
We do not store full payment card numbers or CVV codes on our servers. Payment gateways collect and process billing details according to their own privacy policies and PCI-DSS requirements. We may receive and store limited billing metadata from the processor — for example, the last four digits of a card, card brand, billing country, transaction ID, subscription status, and invoice history — so we can manage your plan, provide receipts, and handle refunds or disputes.
To complete a purchase you may be redirected to or interact with the payment provider’s checkout page. Please review that provider’s privacy policy before submitting payment information.
Jira Cloud integration
EveryBug offers an optional integration with Atlassian Jira Cloud. You choose whether to connect Jira; the integration is not required to use the core Service.
If you enable Jira, you may authenticate using either an API token (site URL, Atlassian account email, and API token) or Atlassian OAuth 2.0 (“Connect to Jira”). We store your Jira connection settings and credentials securely in our database so we can act on your behalf when you push issues. API responses mask secrets; tokens are never included in your browser session JWT.
When you use “Send to Jira”, we transmit data from your selected session to your Jira Cloud site via Atlassian’s APIs. This may include:
- Issue summaries and descriptions (bug text, status, timestamps, reporter name, comments, and a link back to the EveryBug session).
- Media attachments: session video, PDF report, per-bug video clips, annotated still frames, and bug file attachments you have uploaded.
- Project and issue metadata needed to create the parent task and sub-tasks in the Jira project you select.
Data sent to Jira is processed under Atlassian’s terms and Privacy Policy (https://www.atlassian.com/legal/privacy-policy). We are not responsible for how Atlassian or your organization administers Jira data after it is created in your site.
You can disconnect Jira at any time from Integrations in the app, which removes stored credentials from EveryBug. Issues already created in Jira remain in your Atlassian account.
EveryBug is not affiliated with or endorsed by Atlassian. Jira® is a trademark of Atlassian Pty Ltd.
How we share information
We may share information only in these circumstances:
- With collaborators you invite — when you share a project, folder, or session link, recipients you authorize can view the shared content.
- With service providers who help us run the Service (hosting, email delivery, search indexing for share autocomplete, payment processing) under contractual confidentiality obligations.
- With Atlassian when you use the Jira integration, as described above.
- When required by law, court order, or to protect rights, safety, and security.
- In connection with a merger, acquisition, or sale of assets, with notice where legally required.
Data retention
We retain your account and workspace data while your account is active. You may delete sessions, projects, and folders you control (subject to sharing permissions). If you delete your account or ask us to delete your data, we will remove or anonymize personal information within a reasonable period, except where we must retain records for legal, security, or billing purposes.
Backups may persist for a limited time before being overwritten.
Security
We use industry-standard measures to protect data in transit (HTTPS) and at rest on our infrastructure. No method of transmission or storage is 100% secure; we cannot guarantee absolute security.
Your choices and rights
Depending on your location, you may have rights to access, correct, delete, or export your personal data, or to object to or restrict certain processing. To exercise these rights, contact us at the email below. We may need to verify your identity before responding.
International transfers
EveryBug is operated from cloud infrastructure that may process data in countries other than your own. Where required, we rely on appropriate safeguards for cross-border transfers.
Children’s privacy
The Service is not directed to children under 16. We do not knowingly collect personal information from children. If you believe a child has provided us data, contact us and we will delete it.
Changes to this policy
We may update this Privacy Policy from time to time. We will post the revised version on this page and update the “Last updated” date. Material changes may be communicated by email or in-app notice where appropriate.
Contact us
Questions about this Privacy Policy or our data practices: admin@everybug.com