Privacy Policy
Last Updated: June 10, 2026
Introduction
Dorkag ("we", "our", or "us") is committed to protecting your privacy and being transparent about how our software handles data. This Privacy Policy describes the data flows of our AZD plugin for the JetBrains suite and our other software products and services ("Products and Services").
In short:
We do not require user accounts and do not collect personal information such as names or email addresses
We do not use cookies or similar tracking technologies
We do not store your source code or Azure DevOps content on Dorkag servers
We do not sell data to anyone
Optional AI features send the content you explicitly act on directly to a stateless AI model endpoint — there is no Dorkag backend behind it and nothing is stored (see AI Features)
Only the new Microsoft Entra ID (OAuth) sign-in sends a small set of anonymous, temporary telemetry events, which you can switch off; PAT and Azure CLI sign-ins send no telemetry at all (see Anonymous Telemetry)
Azure DevOps Data
The core functionality of the AZD plugin — pull requests, pipelines, boards, and work items — exchanges data directly between your IDE and your own Azure DevOps organization (Azure DevOps Services or Azure DevOps Server). No Dorkag server sits in between, and none of this data is transmitted to Dorkag.
Your credentials (Personal Access Tokens or OAuth tokens) are stored locally in the IDE's secure password store using the JetBrains Credentials API. They never leave your machine except to authenticate directly with your Azure DevOps organization.
AI Features
The plugin includes optional AI-powered features: commit-message generation, pull request title and description generation, AI code review, pipeline log analysis, and AI chat.
AI features are enabled by default and are strictly user-triggered. Nothing runs in the background and nothing is scanned automatically. Data is sent only when you explicitly invoke an AI action, and only the content needed for that action is sent.
What is sent, and when
AI action (user-triggered) | Data sent for that request |
|---|---|
Commit message generation | The code diff of your staged changes |
PR title / description generation | The pull request's code diff, branch names, and commit messages |
AI code review | The pull request's code diff, title, description, and author name |
Pipeline log analysis | Excerpts of the pipeline log being analyzed |
AI chat | Your chat prompts and any content you attach (for example diffs or work item text) |
The default AZD provider
The plugin ships with a built-in "AZD" AI provider that is active by default so AI features work out of the box. When you invoke an AI action on the default provider, the content listed above is sent over HTTPS directly from your IDE to an Azure AI Foundry (OpenAI-compatible) model inference endpoint hosted in Dorkag's Microsoft Azure subscription.
This endpoint is a plain model deployment — currently a standard OpenAI GPT-5.4 model. There is no Dorkag backend, application server, proxy, or database behind it: your IDE talks straight to the model.
This is request/response only:
Nothing is saved on Azure: the endpoint is stateless, with no storage, logging pipeline, or backend service attached in Dorkag's Azure subscription
Dorkag does not store, log, or train on any of this content
Chat history is kept in IDE memory only and is never persisted on Dorkag servers
Inference is processed by Microsoft Azure as a sub-processor under Microsoft's Azure OpenAI data-privacy terms: customer data is not used to train models, and Microsoft may temporarily retain requests for abuse monitoring under its own policies
The plugin shows an in-IDE notification to users on the default provider explaining this, with one-click actions to open the AI settings, disable the default provider, or dismiss the notice.
Using your own provider
Instead of the default provider, you can configure your own AI provider — OpenAI, Anthropic Claude, Google Gemini, or a local Ollama instance. In that case, data flows directly from your IDE to the provider you chose, under that provider's terms; Dorkag is not involved in the request. Your API keys are stored in the IDE's local secure storage and never sent to Dorkag.
With a local Ollama provider, AI requests never leave your machine.
Disabling AI features
You can disable AI features entirely in . Disabling the default AZD provider turns AI features off unless you have configured another provider.
Anonymous Telemetry
Telemetry applies only to the new sign-in with Microsoft Entra ID (OAuth) feature. To measure the reliability of this new sign-in flow, the plugin sends anonymous OAuth sign-in telemetry events to a Dorkag endpoint (dorkag.azurewebsites.net, backed by Azure Application Insights). This telemetry is enabled by default and you can opt out at any time.
Signing in with a Personal Access Token (PAT) or through the Azure CLI sends no telemetry at all.
This telemetry is temporary: it exists only to stabilize the new OAuth sign-in feature, and we plan to remove it by the end of 2026.
Each event contains only:
Event name: sign-in started, completed, or failed
Consent type
Plugin version
IDE product
Operating system family
These events contain no user identifiers, no source code, and no Azure DevOps content. Because the data cannot be related to an identified or identifiable person, it is anonymous information in the sense of GDPR Recital 26.
You can opt out by switching off in the plugin settings. No other usage analytics, crash reporting, or tracking exists in our Products and Services.
Third-Party Processing
We use the following third parties, and only in the circumstances described:
Microsoft Azure — acts as a sub-processor when you use the default AZD AI provider (stateless model inference via Azure AI Foundry, under Microsoft's Azure OpenAI data-privacy terms) and hosts the anonymous telemetry endpoint (Azure Application Insights)
Your chosen AI provider — if you configure OpenAI, Anthropic Claude, Google Gemini, or another provider yourself, your AI requests go directly to that provider under its own terms; Dorkag receives nothing
We do not share, sell, or disclose any data to other third parties.
Data Retention
Dorkag retains nothing: AI requests are processed request/response only and are not stored, logged, or used for training by Dorkag — neither on Dorkag servers nor anywhere in Dorkag's Azure subscription — and chat history exists only in your IDE's memory. Microsoft may temporarily retain AI requests for abuse monitoring in accordance with its Azure OpenAI terms. Anonymous telemetry events are retained as aggregate, non-identifiable statistics, and the OAuth sign-in telemetry itself is planned for removal by the end of 2026.
Changes to This Policy
We may update this Privacy Policy from time to time, for example when features change the data flows described here. We will notify you of any changes by posting the new Privacy Policy on our website. We recommend that you review this Privacy Policy periodically for any changes.
Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us at:
Email: jgafner@dorkag.com