Terms of Use & Privacy Policy

These terms govern your use of DoraCalculator and explain how we handle your personal information. By signing in to the service, you agree to these terms.

Last updated: March 27, 2026

1. Acceptance of These Terms

By accessing or using DoraCalculator (the "Service"), available at https://doracalc.vercel.app, you agree to be bound by these Terms of Use and Privacy Policy ("Terms"). If you do not agree, do not use the Service.

Your continued use of the Service after any changes to these Terms constitutes your acceptance of the revised Terms.

2. Who We Are

DoraCalculator is a free web application operated by an individual developer based in Canada. The Service is provided on a personal, non-commercial basis to help Scrum Masters and engineering teams track DevOps Research and Assessment (DORA) metrics.

For any questions or requests regarding these Terms or your personal information, contact us at: fseguerra1@gmail.com.

3. Description of Service

DoraCalculator is a free, web-based tool that enables Scrum Masters to manually record and analyse the four DORA engineering metrics: Change Lead Time, Deployment Frequency, Change Failure Rate, and Mean Time to Restore (MTTR).

The Service is provided free of charge with no guarantee of uptime, accuracy, or fitness for any particular purpose. We reserve the right to modify, suspend, or discontinue the Service at any time without notice.

4. Information We Collect

We collect only the minimum personal information necessary to provide the Service.

Information provided via Google Sign-In:

  • Full name — displayed in the application sidebar to personalise your session.
  • Email address — used solely as a unique account identifier. We do not send emails to this address.
  • Profile picture URL — displayed as your avatar in the sidebar.

Automatically collected:

  • Session cookie — a secure, HTTP-only cookie that maintains your authenticated session. It contains no personal information.

We do not collect browsing history, device identifiers, IP addresses, location data, or any information beyond what is listed above.

5. How We Use Your Information

Your personal information is used exclusively for the following purposes:

  • Authentication: to verify your identity and create a secure session.
  • Data isolation: to ensure your squads, sprints, deployments, and incidents are visible only to you.
  • Personalisation: to display your name and avatar within the application.

We do not use your information for any purpose beyond what is listed above.

6. What We Will Never Do

We make the following firm commitments regarding your personal information:

  • Send you promotional emails, newsletters, product updates, or any unsolicited commercial electronic messages — ever.
  • Sell, rent, trade, or otherwise transfer your personal information to third parties for commercial purposes.
  • Use your email address or name to contact you for marketing, advertising, or any purpose other than responding to a direct inquiry you initiate.
  • Profile you, build a user behavioural database, or use your data for analytics beyond the basic operation of the Service.
  • Share your data with advertisers or data brokers.

7. Third-Party Service Providers

To operate the Service, we rely on the following trusted third-party processors. Each is bound by its own privacy policy and applicable data protection law:

Google LLC

OAuth 2.0 identity provider — handles the sign-in flow. Google may collect data per its own privacy policy at policies.google.com/privacy.

Vercel Inc.

Web hosting and serverless function provider. Application requests are processed on Vercel infrastructure. See vercel.com/legal/privacy-policy.

Neon Technologies Inc.

Serverless PostgreSQL database hosting. Your application data (squads, deployments, incidents) is stored on Neon servers. See neon.tech/privacy.

We do not authorise any of these providers to use your personal information for their own marketing purposes.

8. Canada's Anti-Spam Legislation (CASL)

Canada's Anti-Spam Legislation (S.C. 2010, c. 23) prohibits the sending of commercial electronic messages without express or implied consent. DoraCalculator is fully compliant with CASL because:

  • We never send commercial electronic messages of any kind to users.
  • We do not collect email addresses for the purpose of communication.
  • We do not use third-party email marketing services or platforms.

The only electronic communication we may send is a direct reply to a support inquiry you initiate yourself at fseguerra1@gmail.com.

9. PIPEDA Compliance

The Personal Information Protection and Electronic Documents Act (S.C. 2000, c. 5) ("PIPEDA") governs how organisations collect, use, and disclose personal information in the course of commercial activities. We adhere to PIPEDA's ten fair information principles:

Accountability

The operator is responsible for all personal information under our control.

Identifying Purposes

Purposes are identified at or before the time of collection (see Section 4).

Consent

By signing in via Google, you consent to collection as described in these Terms.

Limiting Collection

We collect only name, email, and profile picture — nothing more.

Limiting Use, Disclosure & Retention

Information is used only for authentication and data isolation.

Accuracy

Your profile information reflects what Google provides at sign-in.

Safeguards

Data is stored on industry-standard encrypted infrastructure (Vercel, Neon).

Openness

This policy is publicly accessible at /terms.

Individual Access

You may request access to or correction of your data at any time.

Challenging Compliance

Direct questions or concerns to fseguerra1@gmail.com.

10. Your Privacy Rights

You have the following rights regarding your personal information held by DoraCalculator:

  • Right of Access: You may request a summary of the personal information we hold about you.
  • Right of Correction: If your information is inaccurate, you may request a correction.
  • Right of Deletion: You may request that your account and all associated personal information be deleted. We will fulfill deletion requests within a reasonable time, no longer than 30 days.
  • Right to Withdraw Consent: You may withdraw consent at any time by ceasing to use the Service and submitting a deletion request.

To exercise any of these rights, email us at fseguerra1@gmail.com with the subject line "Privacy Request". We will respond within 30 calendar days.

11. Data Retention

Your personal information (name, email, profile picture) is retained for as long as your account remains active. Application data (squads, sprints, deployments, incidents) is retained indefinitely to preserve your historical metrics, unless you request deletion.

Upon a verified deletion request, we will remove your personal information and all associated application data from our systems within 30 days. Note that third-party processors (Google, Vercel, Neon) manage their own retention schedules according to their respective policies.

12. Security

We take reasonable precautions to protect your personal information:

  • All data is transmitted over HTTPS (TLS encryption).
  • We do not store passwords. Authentication is delegated entirely to Google OAuth.
  • Session tokens are stored in secure, HTTP-only cookies.
  • Database access is restricted and managed by Neon's infrastructure security controls.

No method of transmission over the internet is 100% secure. While we strive to protect your information, we cannot guarantee absolute security and disclaim liability for breaches outside our reasonable control.

13. Children's Privacy

DoraCalculator is intended for professional use by adults. The Service is not directed at, and we do not knowingly collect personal information from, persons under the age of 13. If you believe a child has provided us with personal information, please contact us at fseguerra1@gmail.com and we will delete it promptly.

14. Changes to These Terms

We may update these Terms from time to time. When we do, the "Last updated" date at the top of this page will be revised. Your continued use of the Service after any changes constitutes your acceptance of the revised Terms.

We encourage you to review this page periodically. We will not notify you of changes via email.

15. Contact Us

For any questions, concerns, or requests regarding these Terms or your personal information — including access, correction, and deletion requests — please contact:

fseguerra1@gmail.com

We aim to respond to all privacy requests within 30 calendar days, as required under PIPEDA.