Harmonia Repo Ready
Terms Privacy Cookies Security
Legal

AI & Data Processing Notice

How AI processing, repository content and generated outputs are handled.

← Back to site Company Details Terms and Conditions Privacy Policy Cookie Policy Acceptable Use Policy AI & Data Processing Notice Security Policy Refunds and Cancellation Subprocessors Disclaimer
Questions about this document? Contact support@multivohub.com.

Controller: MultivoHub Limited (company no. 17236540), 340 Poplars Avenue
Warrington
WA2 9UF
United Kingdom.

Contact: support@multivohub.com.

Last updated: 12 June 2026.

1. Purpose

This Notice explains how AI may be used within Harmonia Repo Ready to analyse repositories and produce product-readiness outputs.

2. AI inputs

Inputs may include repository structure, file paths, selected source code snippets, configuration files, dependency metadata, documentation, issue text, pull request metadata, prompts and user-provided context.

3. AI outputs

Outputs may include readiness scores, risk descriptions, architecture summaries, dead-code signals, remediation plans, issue drafts, report sections and prioritised recommendations.

4. Human review

Outputs are not guaranteed to be complete, accurate or suitable for deployment without review. Users remain responsible for validating findings, remediation plans, code changes and business decisions.

5. Secrets and sensitive data

You should not intentionally submit production secrets, credentials, private keys, personal data, special category data or regulated data unless explicitly supported by your plan and data processing terms. Where possible, the Service may detect and redact secrets, but detection is not perfect.

6. Model providers

We may use first-party or third-party AI providers. Current and planned providers should be listed in the Subprocessors page before launch.

7. Training

Default position for launch draft: Customer Content should not be used to train third-party foundation models unless the customer has clearly opted in or the relevant order form says otherwise.

8. Data minimisation

We aim to send only the data reasonably required to perform the requested analysis and to prefer metadata, summaries, snippets or redacted content where full content is not needed.

9. Processing by product mode

Product modeProcessed locallyWhat may leave the machineAI provider involved
CLI offline auditrepository files, paths, config, dependency filesnothing intentionally sent to MultivoHubNo
GitHub Actionrepository files in the GitHub runnerreport content, PR comment, job summary, optional SARIFNo, unless Layer 2 is separately enabled
Public repo previewpublic repo URL, public metadatapublic repository metadata / reportNo by default
Pro Sense QCLayer 1 report facts, README excerpt, finding metadataminimised report facts and excerpts to Harmonia API and the enabled AI providerYes, if enabled
Verified repairissue / finding data, selected contextdepends on the repair workflow and customer consentYes, if enabled
© MultivoHub Limited
Terms Privacy Cookies Acceptable Use