Privacy Policy

Hokmah Code Impact (mcp.hokmah.dev) · Operated by Catalyst AI Research, Haifa, Israel · Last updated: 2 October 2026

Hokmah Code Impact is a remote MCP server at https://mcp.hokmah.dev/mcp that analyzes the impact of code changes on public GitHub repositories. It has no user accounts and no sign-in. This policy explains what it processes.

1. Who is responsible

Catalyst AI Research (sole proprietor: Frédéric David Blum), Haifa, Israel. Contact: freddavidblum@catalystais.com.

2. Data we process

CategoryWhatWhy / how long
Tool inputsThe public repository URL and the description of the change you send with each call.To compute the analysis. The change description is used for that computation only and is not stored.
Imported repository dataFor public repositories only: file paths of the source tree and, for up to 500 recent commits, the first line of the message, the date, the changed files and the names of functions and classes added or removed, read from GitHub's public API. The diffs are read to extract those names; source code itself is not stored.To build the analysis graph. Kept on our server and shared by all users of the service, since it derives from public data. It is not backed up.
Operational logsTime, client IP address and status of each request; error messages can include the repository URL. Tool inputs are not logged.Security, abuse prevention and debugging. Kept up to 30 days.
Rate limitingClient IP address with request times.Held in memory only, for at most one hour.

There are no accounts, no cookies and no tracking. No language model is used and nothing is sent to an AI provider. We do not sell data or use it for advertising or model training.

3. Private repositories

Only public repositories are accepted. Visibility is checked with GitHub at import and before every analysis, and the GitHub credential used by the server is limited to reading public repositories.

4. Sub-processors

ProviderPurposeLocation
Contabo GmbHServer hosting and storageGermany (EU)
GitHubReading public repositories and their visibility (our server calls GitHub's public API; no user data is sent beyond the repository name)USA

5. Your rights

Depending on where you live (including under the GDPR and the Israeli Privacy Protection Law), you may have rights to access, rectify or erase personal data and to object to processing. Since the service has no accounts, the only personal data it holds is IP addresses in logs; write to the contact address for any request. If you maintain a public repository and want its imported analysis data removed, write to us as well. You may also complain to your local data-protection authority.

6. Children

The service is not directed at children under 16.

7. Changes

We will post updates on this page and change the date above.