Privacy Policy
This policy explains what data we collect and why, who we share it with, how long we keep it, and how you can exercise your rights.
1. What We Collect
2. What We Do Not Collect
- Request bodies (messages, prompts, attachments, images) and model response bodies; they are never written to disk and never enter our logging systems.
- Personal information about your end users — unless you place it in your request content, and that content we do not retain.
- Cross-site tracking via third-party advertising networks; we deploy no such scripts.
3. How Request Content Flows
After a request reaches the nearest edge node, authentication, metering, and forwarding are performed entirely in memory, and the request is then passed to the upstream provider. How the provider handles the content is governed by its own policies; see the Service-Specific Terms for the retention tier of each channel. Streaming responses are likewise passed through only, with no buffering to disk.
4. Purposes and Legal Bases
5. Who We Share With
- Upstream model providers: receive only the request content necessary to perform inference, and never your account identity information.
- Payment and settlement providers: receive the minimum information required to process top-ups, invoices, and withdrawals.
- Cloud and infrastructure providers: supply node compute, object storage, and monitoring, all under executed data processing agreements.
- Legal requirements: we disclose upon receiving a lawful request from an authority with jurisdiction, and notify you in advance to the extent permitted by law.
- Corporate transactions: in a merger, acquisition, or transfer of assets, data may be transferred as an asset, and the recipient must assume equivalent obligations.
We do not sell personal data, nor do we use it for third-party advertising targeting.
6. Cross-Border Transfers
We operate nodes in multiple regions, and data may be transferred outside your country. For data concerning the European Economic Area, the United Kingdom, or Switzerland, we rely on the EU Standard Contractual Clauses and conduct transfer impact assessments. Enterprise customers may designate a data residency region, in which case access is provided only from nodes in that region.
7. Retention Periods
8. Cookies and Local Storage
- Essential cookies: maintain your sign-in session and security checks; they cannot be disabled.
- Preference storage: remembers interface settings such as sidebar collapse state, language, and chart intervals, stored locally in your browser.
- Analytics: we use self-hosted, anonymized visit statistics, set no cross-site identifiers, and integrate no third-party advertising SDKs.
9. Your Rights
- Access and export: export usage and billing data self-service in the console, or write to us for a copy of your account data.
- Rectification and erasure: update your account profile at any time, or request deletion of your account and associated data.
- Restriction and objection: you may object to processing based on legitimate interests, and we will reassess its necessity.
- Withdrawal of consent: unsubscribe from marketing emails at any time without affecting your use of the service.
- Complaints: you have the right to lodge a complaint with your local data protection authority.
To exercise your rights, write to [email protected]. We respond within 30 days and may first verify your identity where necessary.
10. Security Measures
- TLS 1.3 end to end; API keys are stored as hashes only, with the plaintext shown once at creation.
- Internal access follows least privilege and dual review, and all administrative actions are recorded in audit logs.
- Data is encrypted at rest, with keys rotated by a managed key management service.
- We conduct regular penetration testing and dependency vulnerability scanning; if a security incident affects your data, we notify you within 72 hours of confirmation.
11. Children’s Privacy
The service is not directed at individuals under 18 years of age. If we discover that an account was created by a minor without authorization, we will disable the account and delete the associated data.
12. Changes to This Policy
Material changes are announced at least 15 days before taking effect, via email and the announcement center, and prior versions are preserved in the version archive for comparison. Continued use of the service constitutes acceptance of the updated policy.