Privacy Policy — Hyper Review
Last updated: 2026-08-05. Status: published. Hosted at https://hyperreview.dev/privacy.
TL;DR
Hyper Review does not collect, store, share, or transmit any of your data to us or to any third party. The only network destinations the app contacts are GitHub’s own servers. We have no backend.
The one thing we do collect is on the website, not in the app, and only if you hand it over: if you type your email address into the beta waitlist form, we get your email address. That’s it, and it’s covered in full below.
What data the app handles
- Your GitHub OAuth access token. Stored on your device only, in the operating-system-provided secure keystore (Apple Keychain on iOS, Android Keystore via EncryptedSharedPreferences on Android). Never transmitted anywhere except in
Authorizationheaders toapi.github.com. - Your pull requests, comments, and review drafts. Fetched from GitHub for display, and (for drafts in progress) cached on your device. Not shared anywhere except back to GitHub when you submit a review.
- Cached responses from the GitHub API. Stored on your device to make the app fast and to allow offline opening.
All of the above lives on your device. None of it leaves your device except in requests directly to GitHub.
What the app does NOT do
- No analytics. The app contains no analytics SDK.
- No crash reporting. The app contains no crash reporting SDK. Production crashes are not reported back to us automatically.
- No advertising. No ad SDK, no ad identifier read, no advertising network.
- No tracking. The app does not request App Tracking Transparency permission on iOS because it does not track you.
- No telemetry of any kind.
Diagnostics
The app keeps a small in-memory ring buffer of recent log lines on your device for troubleshooting. You can view these in Settings → Diagnostics — or, if you can’t sign in, from the View diagnostics link on the sign-in screen — and choose to copy or email them to a support address. Nothing is sent unless you explicitly initiate it.
The beta waitlist (this website)
The closed beta is invited in waves, and hyperreview.dev carries a form to join the list. It is the only place on this site or in this app where we ask you for anything.
- What we collect: your email address, and only because you typed it in and pressed the button. Nothing is pre-filled, nothing is inferred, and it is the only field you fill in. (The form carries two hidden fields, neither about you: a fixed label marking the submission as a beta signup, and a spam-trap that real browsers leave empty — if that one arrives filled, the submission was a bot.)
- Where it lives: with Buttondown, our email-list provider, who store the list and send the emails. They are the only third party involved.
- How joining works: you’ll get one email asking you to confirm. If you don’t click the link in it, you are not on the list — an unconfirmed address is never invited and never emailed again.
- What we send you: an invitation when your wave opens, and occasional short updates while you’re waiting. After the beta, the same list carries occasional writing from Ben Taylor, who makes Hyper Review — so joining here means joining that one list, and we’d rather say so at the door than surprise you later. It stays one sender and one unsubscribe; there is no second list, no other sender, and your address is never sold, rented, or shared.
- Which emails you get: signing up through this page tags you as a beta signup, so beta invitations go to the people who actually asked for the beta rather than to everyone on the list.
- How to leave: every email carries an unsubscribe link, which takes effect immediately. To have your address deleted outright rather than unsubscribed, email support@taybenlor.com and we’ll remove it from the list.
- Tracking: none. This website sets no cookies, runs no analytics, and loads no pixels or third-party scripts — the form makes no network request at all until you press the button, and the emails we send carry no open- or click-tracking.
The waitlist is a website thing. It changes nothing about the app: the app has no idea whether you’re on the list, and everything under “What data the app handles” and “What the app does NOT do” is unchanged.
Network destinations
The only hosts the app contacts:
api.github.com— the GitHub REST API, for everything review-related.github.com— only during sign-in, to display the device-flow verification code.
How this policy maps onto the Apple App Privacy and Google Play Data Safety questionnaires is recorded in the repository’s Store Privacy Declarations document (internal — this policy page is the public statement).
Third parties
The app shares data with no third parties. The only party it exchanges data with is GitHub, on your behalf, at your request.
The website has exactly one: Buttondown, who hold the beta waitlist described above — and only if you chose to join it. There is no third party involved in simply reading this site.
Children
The app is not directed at children under 13 and does not knowingly collect any data from anyone. The beta waitlist is not directed at children either; if you believe a child’s address is on it, email support@taybenlor.com and we’ll delete it.
Changes
If this policy changes, the updated date at the top will reflect the new version, and material changes will be noted in the app’s release notes.
Contact
Questions: support@taybenlor.com