/trust/privacy
Privacy
This page routes privacy, legal, and data-processing enquiries for Data Demon Systems and Repod.
Privacy enquiries
For privacy questions, data-processing requests, or vendor review documentation, contact the team with your organisation name and requested review scope.
Product scope
Repod is focused on GitHub access governance: repository access review, permission cleanup workflows, and audit evidence generation.
Browser tools
The Data Demon browser tools—including the JSON Viewer & Formatter, JSON Schema Validator, JSON Diff, local data converters, image tools and Text Compare—process input locally in your browser. Tool input, schemas, patches, filenames, image content, metadata, hashes, JSON paths, search terms, converted output, and generated differences are not uploaded to Data Demon or saved in browser storage.
JSON files above the 20 MiB editable limit and up to 4 GiB remain file-backed. A local worker reads bounded slices for syntax validation and inspection, and compatible browsers stream formatted or minified output directly to a file. The complete source or output is not assembled in browser memory.
Usage measurement
Data Demon records page views and content-free actions such as format, compare, copy, download, share, and outbound product clicks. A tool-activation event may record only an allowlisted tool identifier, action and broad result such as valid, invalid, changed or complete, once after the first meaningful user-requested result on a page view. It does not count automatic samples, opening a sharing panel, cancellation or a crash. Sharing events may include only the selected public or password-protected mode, a compression-codec category, a success category, and coarse link-length, source-size, or duration buckets. These events do not include tool input, generated output, share summaries, source-content links or files, filenames, passphrases, settings, counts, exact sizes, decryption outcomes, hashes, or copied URLs. Analytics receives the clean canonical page location rather than a URL fragment.
Tool sharing
Where a browser tool offers sharing, clean links, settings links, and content-free summaries are generated locally only after you choose a share action. Clean and settings links exclude tool input and filenames. Summary previews contain only aggregate facts such as validation status or change counts, and are not sent to Data Demon.
JSON Viewer and Text Compare can also create an optional self-contained link for up to 32 KB of source content. The recommended option compresses the source, derives a key from a generated or custom passphrase, and encrypts it with authenticated AES-GCM. The passphrase is not included in the link and must be sent separately. Data Demon cannot recover either the source or passphrase. Short or predictable custom passwords may be guessed offline by anyone who obtains the encrypted link.
Users may deliberately select a compressed-only link instead. Compression is not encryption: no password is required, and anyone with the complete link can recover its source. Both link types place content in the URL fragment after the #. Standard browsers process that fragment locally rather than including it in the HTTP request. Browsers, extensions, messaging services, clipboard managers, screenshots, or recipients may still retain a link or passphrase. The receiving tool removes the fragment from the address bar before analytics and waits for the recipient to choose Load locally; encrypted links require their passphrase first.
The same tools can create local .ddshare files containing up to 4 GiB of combined source. A compressed share file is public and uses checksums only to detect accidental damage. A password-protected share file compresses first and then encrypts each block with authenticated AES-GCM; its passphrase is not stored in the file. Original filenames are excluded unless you explicitly include them, in which case they are visible in a public package and encrypted in a protected package. Large packages are streamed between files in compatible browsers, while browsers without direct file access use a 100 MiB in-memory limit. Data Demon does not upload, host, retain, or transfer these packages.
Contact datademonsystems@gmail.com for privacy and legal requests.