The Service
Pilot reads your code repository, product analytics, support chats and tickets, App Store and competitor reviews, and mentions across forums and social to draft product-change suggestions. It hands the ones you approve off to your issue tracker. It also watches what your team ships and flags changes that appear to move a metric. Pilot does not write code, open pull requests, or make changes to your repository or product on its own — you decide what to act on.
Your content and your repositories
You retain all rights to your code, your analytics data, your specs, and anything else you submit to the Service. You grant Pilot a worldwide, non-exclusive, royalty-free license to host, copy, transmit, display, and otherwise process Customer Content strictly to operate the Service for you — for example, to read a repository through the GitHub App you install, to draft a spec, or to prepare a suggestion for handoff to your issue tracker.
You’re responsible for what gets shipped. Pilot proposes changes; your team decides what to implement and merge.
Third-party integrations
The Service relies on third parties. Your use of those services is governed by their terms, not ours. Google provides sign-in. GitHub provides a GitHub App you install on the repositories you want Pilot to work in. You can uninstall the app at any time. PostHog provides analytics. Pilot connects to your PostHog project via OAuth 2.0, or a legacy personal API key for existing connections. Credentials are encrypted at rest.
Linear provides the issue tracker for handing off approved suggestions when you connect it. Anthropic provides the language models that draft suggestions and specs. Vercel provides hosting, cron scheduling, and AI model routing. Resend provides transactional email. Liveblocks and Pusher provide real-time collaboration. Voyage AI provides suggestion embeddings. Steel and Apollo provide company enrichment during onboarding.
We’ll make commercially reasonable efforts to keep these integrations working, but we can’t guarantee a third party won’t change or break what we depend on.
AI-generated output
Pilot uses large language models to draft suggestions and specs. Model output can be wrong, incomplete, or non-deterministic. You’re responsible for reviewing what Pilot produces before you act on it in your repository, your analytics, or your product.
As between you and Pilot, you own the output produced for you, subject to the third-party model providers’ own terms. Similar output may be generated for other users — we don’t claim exclusivity on prompts or outputs.
What we collect
We collect only what we need to operate the Service. When you sign in with Google, we receive your name, email address, profile picture, and Google account identifier. We store these to authenticate you and to display you in your workspace. We also collect the workspace slug, members, roles, and connection settings you configure.
Through the GitHub App you install, we read repository files, branches, commits, and pull-request metadata that Pilot needs to draft suggestions and specs. We don’t persist your source code beyond what’s required to generate a suggestion or spec, and Pilot doesn’t write code or open pull requests in your repository.
We store the analytics connection you supply and use it only to read the events and analytics results Pilot needs. We store the product-change specs, hypotheses, and change proposals Pilot generates on your behalf. We also use standard server logs to operate and secure the Service, and product analytics to understand how the dashboard is used and to debug issues. We don’t sell this data.
Security
We follow practices appropriate to the sensitivity of the data we handle: TLS in transit, AES-256-GCM at rest for the PostHog API keys you supply, scoped GitHub App permissions, principle of least privilege for staff access, and regular dependency updates. No system is perfectly secure; if you believe you’ve found a vulnerability, please use the contact information in the Privacy Policy.
Read llms.txt, inspect the public API at openapi.json, or browse the public pages in the sitemap.