Privacy policy
BranchDeploy is operated by Pixel Funnel Ltd, a company registered in England and Wales (Company No. 8497619). Our registered address is available on request.
Summary
The free tier of BranchDeploy operates entirely within your Azure DevOps organisation. Configuration data is stored in Azure DevOps Extension Data storage — no data is sent to Pixel Funnel Ltd servers. The Pro tier logs deployment metadata (not code) to a backend hosted on Cloudflare infrastructure.
Data controller
Pixel Funnel Ltd is the data controller for personal data processed in connection with BranchDeploy. Contact: privacy@pixelfunnel.co.uk.
What we collect
Free tier
The free tier of BranchDeploy does not transmit any data to Pixel Funnel Ltd. All data stays within your Azure DevOps organisation:
- Extension configuration (pipeline ID, environment name, parameter names, branch patterns) is stored in Azure DevOps Extension Data — Microsoft's per-project document store for Marketplace extensions. It is subject to Microsoft's privacy policy and data residency settings for your organisation.
- Azure DevOps API calls are made using your active browser session. Pixel Funnel Ltd never receives your Azure DevOps credentials or personal access tokens.
Pro tier
When Pro features are active, BranchDeploy logs the following for each deployment:
- Azure DevOps organisation ID and project ID (opaque identifiers)
- Work item ID
- Resolved branch name
- Environment name
- Pipeline run ID returned by Azure Pipelines
- Timestamp
- Outcome (queued / failed / cancelled)
We do not collect source code, work item titles or descriptions, commit messages, user names, email addresses, or any other personal data unless you contact us directly.
Anonymous usage telemetry
BranchDeploy collects limited anonymous usage telemetry to help us understand extension usage and diagnose reliability issues. This may include extension version, event type, success/failure status, broad error codes, coarse branch and environment categories (for example “feature” or “staging”), and hashed Azure DevOps identifiers. Identifiers are hashed with a server-side secret before storage, so we cannot reverse them to the original organisation, project, or user.
We do not collect repository names, branch names, organisation names, project names, user emails, access tokens, commit messages, pull request titles, or pipeline variables. Telemetry is best-effort and never blocks deployments. You can disable it at any time from Project Settings → BranchDeploy under “Anonymous usage telemetry”. Raw telemetry events are retained for up to 12 months.
Website visitors
This website (branch-deploy.dev) does not use cookies or third-party analytics. We do not track individual visitors. Cloudflare Pages may log anonymised request metadata (IP addresses are not stored by us).
Support communications
If you email us for support, we store your email address and message content for the purpose of responding to your request. We do not add you to any mailing list without explicit consent.
Legal basis for processing
Where we process personal data, the legal basis is:
- Contract — processing deployment log data is necessary to deliver the Pro subscription service.
- Legitimate interests — processing support emails to respond to your request.
Data retention
- Pro deployment logs are retained for 90 days by default, then deleted automatically.
- Support emails are retained for up to 2 years, then deleted.
- Free tier configuration data is stored in Azure DevOps and remains under Microsoft's retention policies. Uninstalling BranchDeploy removes the extension; the configuration documents remain in Extension Data unless deleted via the Azure DevOps Extension Data API.
Data sharing
We do not sell personal data. We share data only with:
- Cloudflare, Inc. — infrastructure provider for the BranchDeploy backend and this website. Data is processed under Cloudflare's Data Processing Addendum.
- Stripe, Inc. — payment processor. Stripe handles billing data directly. Pixel Funnel Ltd does not store payment card details.
Your rights
Under UK GDPR and the Data Protection Act 2018, you have the right to:
- Access the personal data we hold about you
- Correct inaccurate data
- Request deletion of your data
- Restrict or object to processing
- Data portability (where applicable)
To exercise any of these rights, email privacy@pixelfunnel.co.uk. We will respond within 30 days.
You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) at ico.org.uk.
Security
Data in transit is encrypted with TLS. Pro deployment logs are stored in Cloudflare D1 (SQLite) with access restricted to the BranchDeploy backend service. We do not store Azure DevOps credentials or personal access tokens at any point.
Changes to this policy
We may update this policy from time to time. The date at the top of this page shows when it was last revised. Significant changes will be notified to Pro subscribers by email.
Contact
For privacy questions, email privacy@pixelfunnel.co.uk.