How we protect your code and data with modern security practices.
MergeBetter is built with security as a core principle. We implement multiple layers of protection to ensure your code and data remain safe.
We request only the minimum GitHub permissions necessary to detect conflicts. We do not request write access to your code.
We analyze diffs in memory only. Your source code is never stored on our servers.
All data is encrypted in transit and at rest using industry-standard encryption protocols.
Required to analyze file changes and detect potential conflicts. We only read diff data, never full file content.
Read access to analyze PRs for conflicts. Write access to post conflict warning comments only.
Optional permission to post conflict notifications as issues if enabled in settings.
Basic repository information required for GitHub App functionality.
AWS infrastructure compliance
EU data protection compliance
California privacy rights
International security practices
Our security team is here to answer any questions about our security practices and compliance.