Last updated: July 12, 2026
Elisha is an autonomous AI software engineer. To do its job it connects to the tools where your team plans and ships work — GitHub, Notion, Slack, Vercel, and Google Workspace — and acts on your behalf. This policy explains what we collect, why, who we share it with, and the choices you have.
We do not sell your data, and we do not use your private source code or project content to train foundation models.
Each organization's data is scoped and isolated. Credentials, repositories, tasks, and traces are partitioned per organization, and every inbound webhook is cross-checked against the workspace and installation that owns it so one customer can never read or act on another customer's data.
Elisha relies on trusted infrastructure and AI providers to deliver the service. These may include:
Providers process data only to deliver their part of the service and under their own confidentiality and security commitments.
Integration tokens and application secrets are encrypted using envelope encryption backed by a cloud key management service. Access to production systems is restricted, and code is executed only inside ephemeral, per-task sandboxes that are destroyed when the task ends.
We keep your data for as long as your account is active or as needed to provide the service. You can disconnect any integration at any time, which revokes Elisha's access to that service. On account deletion we remove your stored credentials and project content, subject to legal and operational retention requirements.
Depending on where you live, you may have the right to access, correct, export, or delete your personal data, and to object to or restrict certain processing. To exercise these rights, contact us at the address below.
We may update this policy from time to time. When we make material changes we will update the date above and, where appropriate, notify you through the service.
Questions about this policy or your data? Email privacy@elisha.dev.