Last updated: August 2026

1. What LidPush Collects

LidPush is a desktop application that requires GitHub authentication via OAuth 2.0. To operate securely, the following data is collected and stored:

No file contents, source code, or project data are ever transmitted. The cleaning engine copies your project locally and only sends aggregate statistics (file counts and sizes, not file contents) to the database.

2. Security & Activity Logging

To detect abuse and trace a compromised account back to its source, every desktop OAuth hop logs a light-weight security record. Each log entry may contain:

One-time login codes are stored only as SHA-256 hashes — the raw code is never persisted and expires within minutes of issuance.

3. Data Storage

Data is stored in a Neon PostgreSQL database (cloud-hosted PostgreSQL). The following tables are used:

This data feeds the Lidprex platform for operational analytics and product improvement. No third-party analytics SDKs are used.

4. GitHub Access Token

Your GitHub OAuth access token is used only to call the GitHub API on your behalf (listing repos, reading metadata, and performing the pushes you request). It is handled in two places:

5. Internal API Security

The embedded API server starts on a local port every launch. Every request requires an x-lidpush-secret header containing a session secret. Nothing on the machine can call the internal API without knowing both the port and the secret.

6. What We Do NOT Collect

7. Data Deletion

To request deletion of your data from the Lidprex platform, contact us through Lidprex Labs with your GitHub username. We will process deletion within 30 days. Deleting your Lidprex account also removes the server-side copy of your GitHub token.

8. Contact

For privacy-related inquiries, visit Lidprex Labs or open a discussion on GitHub.