Controller: MultivoHub Limited (company no. 17236540), 340 Poplars Avenue
Warrington
WA2 9UF
United Kingdom.
Contact: support@multivohub.com.
Last updated: 12 June 2026.
1. Purpose
This Notice explains how AI may be used within Harmonia Repo Ready to analyse repositories and produce product-readiness outputs.
2. AI inputs
Inputs may include repository structure, file paths, selected source code snippets, configuration files, dependency metadata, documentation, issue text, pull request metadata, prompts and user-provided context.
3. AI outputs
Outputs may include readiness scores, risk descriptions, architecture summaries, dead-code signals, remediation plans, issue drafts, report sections and prioritised recommendations.
4. Human review
Outputs are not guaranteed to be complete, accurate or suitable for deployment without review. Users remain responsible for validating findings, remediation plans, code changes and business decisions.
5. Secrets and sensitive data
You should not intentionally submit production secrets, credentials, private keys, personal data, special category data or regulated data unless explicitly supported by your plan and data processing terms. Where possible, the Service may detect and redact secrets, but detection is not perfect.
6. Model providers
We may use first-party or third-party AI providers. Current and planned providers should be listed in the Subprocessors page before launch.
7. Training
Default position for launch draft: Customer Content should not be used to train third-party foundation models unless the customer has clearly opted in or the relevant order form says otherwise.
8. Data minimisation
We aim to send only the data reasonably required to perform the requested analysis and to prefer metadata, summaries, snippets or redacted content where full content is not needed.
9. Processing by product mode
| Product mode | Processed locally | What may leave the machine | AI provider involved |
|---|---|---|---|
| CLI offline audit | repository files, paths, config, dependency files | nothing intentionally sent to MultivoHub | No |
| GitHub Action | repository files in the GitHub runner | report content, PR comment, job summary, optional SARIF | No, unless Layer 2 is separately enabled |
| Public repo preview | public repo URL, public metadata | public repository metadata / report | No by default |
| Pro Sense QC | Layer 1 report facts, README excerpt, finding metadata | minimised report facts and excerpts to Harmonia API and the enabled AI provider | Yes, if enabled |
| Verified repair | issue / finding data, selected context | depends on the repair workflow and customer consent | Yes, if enabled |