Activity Racoon(“we,” “us”) builds software that helps engineering teams understand delivery and activity. This policy explains what we collect, why we collect it, and the choices available to you.
Two contexts: this website and the product
This privacy policy covers (1) visitors to our marketing website and (2) users of the Activity Racoon platform deployed by an organization. When your employer or another organization enables Activity Racoon, that organization is the controllerof workplace activity data — it decides whether to monitor, what notice to give, and how data may be used. We provide software and process data on the organization's instructions as a service provider (processor).
Activity Racoon does not direct monitoring programs and is not responsible for an organization's use of data. See our Terms and EULA for allocation of responsibility.
Information we collect on this website
Our landing site is a static marketing experience. We do not currently run third-party advertising trackers or analytics cookies on this site. Like most websites, our hosting provider may automatically log technical information such as IP address, browser type, requested pages, and timestamps for security and reliability.
If you contact us (for example, to book a demo), we collect the information you choose to provide, such as your name, email address, and company name.
Information collected by the Activity Racoon platform
Activity Racoon is deployed per organization. The data below is collected only when an organization installs and configures the product for its team. Your organization's administrator controls many collection settings through organization policy.
Windows desktop agent
Organizations may install a Windows background service and tray application on workstations. When monitoring is active, the agent collects activity signals such as:
- Windows username and hostname
- Active and background application names and executable paths
- Foreground window titles
- Browser URLs when a supported browser is in the foreground
- Process identifiers and foreground/background duration
- CPU and memory usage for tracked processes
- Activity category labels (for example, development, browser, communication)
- Session start and end times, including unexpected shutdown markers
- AFK and idle periods (time away from keyboard or workstation lock)
- Agent health and connectivity status
Window titles and URLs may contain sensitive information (for example, document names, ticket subjects, or page content reflected in the title bar). Organizations should configure exclusion rules and communicate monitoring to their teams as required by local law.
Optional screenshots: Screenshot sampling is disabled by default. When enabled by organization policy, the agent may capture periodic desktop screenshots. Screenshots are stored encrypted and are subject to storage caps and deduplication rules configured by the organization.
What the Windows agent does not collect: We do not implement keystroke logging or clipboard capture in the desktop agent.
When the agent cannot reach the server, activity may be buffered locally on the device (for example, under %ProgramData%\ActivityRacoon\) and uploaded when connectivity returns. Server policy and exclusion rules are applied before data is accepted.
IDE extension (VS Code / Cursor)
When installed, the developer extension sends telemetry to your organization's Activity Racoon API to attribute engineering work to tasks. This may include:
- Editor and workspace context (open file paths, languages, branch names)
- Edit activity summaries (counts and whether edits appear human- or AI-assisted)
- Terminal and IDE environment metadata
- Task-matching context used to link work to issues in connected tools
The extension does not stream full file contents or individual keystrokes to Activity Racoon.
Connected integrations
When an organization connects third-party tools, Activity Racoon ingests data made available through those integrations, such as repositories, pull requests, issues, and messages from services like GitHub, Jira, Linear, GitLab, and Slack. The exact data depends on which integrations are enabled and the permissions granted.
Dashboard accounts
Users who sign in to the web dashboard provide account information such as email address, password (stored hashed), organization membership, and role (for example, admin or member). Admins may map members to Windows tracking usernames used by the agent.
AI features
Some features use large language models to summarize activity, answer questions about engineering data, match development context to tasks, or analyze screenshots when that capability is enabled. Prompts may include aggregated or contextual activity data. Organizations should review whether AI processing is appropriate for their compliance requirements.
How we use information
- Provide delivery analytics, timelines, sprint insights, and dashboards
- Attribute development work to tasks and sync time to connected issue trackers
- Operate, secure, and improve the service
- Respond to support requests and communicate about the service
- Comply with law and enforce our terms
Who can see the data
Within an organization, administrators configure policies and may view team-level or individual activity depending on role and settings. Your organization's internal policies, employment agreements, and applicable law govern workplace monitoring — not Activity Racoon.
Activity Racoon personnel access customer data only when needed to provide support, maintain security, or as directed by the customer, subject to confidentiality obligations.
Employee and workplace disputes regarding monitoring should be directed to your employer or organization administrator. Activity Racoon is not a party to employment relationships.
Retention and security
Retention periods are determined by organization configuration and operational needs. We use encryption for sensitive stored data (including screenshots), access controls, and integrity protections. No method of transmission or storage is completely secure; we work to reduce risk using industry-standard practices.
Your rights and choices
Depending on your location, you may have rights to access, correct, delete, or restrict processing of personal data, or to object to certain processing. Because workplace activity data is usually controlled by your organization, requests about agent or dashboard data should often be directed to your employer or organization administrator first.
You may also contact us at [email protected]. We will route workplace-data requests to the relevant organization when appropriate.
International transfers
Data may be processed in countries other than where you live. Where required, we use appropriate safeguards for cross-border transfers.
Children
Activity Racoon is a business service and is not directed at children under 16. We do not knowingly collect personal information from children.
Changes to this policy
We may update this policy from time to time. We will post the revised version on this page and update the effective date above.
Contact
Questions about this policy or our privacy practices: [email protected].
See also our Terms & Conditions, End User License Agreement, Security, and Data Processing Agreement.