Privacy Policy
Last updated: 9 August 2026
This Privacy Policy explains how Prodignite Private Limited (trading as “The Product Highway” / “TPH”; “we”, “us”) collects, uses, and safeguards information when you use Snag — our bug‑capture and triage service, comprising the Snag web app, the Snag browser extension, and the Snag mobile app (together, the “Service”).
By using the Service you agree to this Policy. If you do not agree, please do not use the Service.
1. Information we collect
Account information
When you sign in we collect your email address and, if you provide it, your name. We authenticate with a passwordless email “magic link”; we do not store passwords.
Content you capture
When you file a snag, we process the information you choose to include, which may contain:
- Screenshots, screen recordings, and annotations you create;
- The page URL and title, and basic browser/operating‑system metadata;
- Console log entries and network request metadata (method, URL, status) captured around the time of the report;
- The title, description, severity, environment, and build you enter.
Redaction. The Service deliberately strips network request and response bodies before storage and truncates large payloads, to reduce the chance of capturing secrets. You remain responsible for the content you submit — avoid capturing passwords, tokens, or personal data you are not authorised to collect.
Usage information
We keep an activity log of actions taken on a snag (status changes, comments, assignments) and standard server logs (including IP address and timestamps) for security and debugging.
2. How the browser extension works
The extension only captures a page when you initiate a capture — it does not monitor your browsing in the background. It requests broad host access so it can capture whichever tab you are actively working in. It stores your chosen Snag server URL and your session token locally in the browser so you stay signed in. Captured content is sent only to your Snag server.
3. How we use information
- To provide, operate, and secure the Service (capture, triage, search, notifications);
- To send transactional email (sign‑in links, invites, and notifications you enable);
- To deliver activity to third‑party tools you explicitly connect (see §5);
- To diagnose problems, prevent abuse, and improve reliability.
We do not sell your personal information, and we do not use it for advertising.
4. Where data is stored
Data is hosted on Amazon Web Services. Structured data is stored in a PostgreSQL database and uploaded files (screenshots, recordings) in Amazon S3. Data is encrypted in transit (TLS). Automated database backups are retained for up to 30 days.
5. Third‑party services (subprocessors)
We share data with these providers only as needed to run the Service:
- Amazon Web Services — hosting, database, and file storage.
- Resend — delivery of transactional email.
- Slack — only if a workspace admin connects Slack; snag activity is then posted to the channels you configure.
- ClickUp — only if a workspace admin connects ClickUp; a task per snag is created and status‑synced in the list you choose.
Integrations are off by default and are governed by each provider’s own privacy terms.
6. Data retention & deletion
We retain your data for as long as your account/workspace is active. Workspace admins can export all data as JSON and can delete a workspace, which removes its projects, snags, comments, and attachments. Residual copies may persist in encrypted backups for up to 30 days before being overwritten. To request deletion of your account, contact us (below).
7. Your rights
Depending on your jurisdiction, you may have rights to access, correct, export, or delete your personal information. You can exercise access/export via the in‑app workspace export, or contact us to make a request.
8. Security
We use TLS encryption, scoped access tokens, role‑based permissions, and rate limiting on sensitive endpoints. No system is perfectly secure; we cannot guarantee absolute security.
9. Children
The Service is not directed to children under 16, and we do not knowingly collect their data.
10. Changes to this Policy
We may update this Policy from time to time. Material changes will be reflected by updating the “Last updated” date above.
11. Contact
Prodignite Private Limited (The Product Highway)
Smart Avenu, Unit FO-02, 4th Floor, 28/A, Indiranagar, Bangalore North, Karnataka 560038, India
Email: tools@theproducthighway.com