DeskTickets

Privacy Policy

Last updated September 20, 2026

This policy covers the DeskTickets ticketing dashboard and the DeskTickets Capture Chrome extension. It describes what data each collects, why, and where it goes.

Account and ticket data

When you or your organization use DeskTickets, we store the data you give us to run the service: account details (name, email, hashed password), your organization's tickets, comments, projects, and any files attached to them. This data is stored in our database and, for attachments, either on our servers or in an S3-compatible object store your organization configures. It is only accessible to members of your organization and is never sold or shared with third parties for advertising.

The Chrome extension

The DeskTickets Capture extension only activates when you click its icon or use its keyboard shortcut/on-page widget to record a bug report. While doing so, it collects:

  • Screenshots you explicitly capture by selecting a region of the page.
  • The active tab's URL, page title, browser user agent, viewport, and screen size at the moment of capture, to give the ticket useful context.
  • Any title, description, or voice note text you add before sending.

None of this is collected passively or in the background — nothing is captured unless you start a recording and take a screenshot yourself. This data is sent directly and only to your organization's configured DeskTickets API and filed as a ticket. The extension does not use analytics, does not track browsing activity, and does not send data to any server other than your DeskTickets API.

The extension authenticates using an API key generated when you approve the connection from your DeskTickets account. That key is stored in your browser's local extension storage and is never visible to the pages you visit.

Optional AI processing

If your organization has configured an OpenAI API key, the text you provide when filing a capture (your notes plus the page context above) may be sent to OpenAI to generate a structured ticket title and description. If no key is configured, this happens locally on our servers instead, with no third-party call. Voice-note transcription is currently disabled in the extension regardless of this setting.

Data retention and deletion

Data is retained for as long as your organization's account is active. You can disconnect the extension at any time from its popup, which revokes its API key immediately. To request deletion of your account or organization's data, contact your workspace administrator or reach us using the contact details below.

Contact

Questions about this policy can be sent to the email address your DeskTickets administrator has on file, or to the organization that operates your DeskTickets instance.