Legal

Privacy Policy

Last updated: June 2026

1. What We Collect

When you sign up, we collect your email address and a password (hashed). If you pay, we collect billing details processed by Stripe. We do not store full card numbers.

2. What We Do NOT Collect

We do not log your prompts. We do not log your completions. We do not store conversation history. We do not train on your data. Your inputs and outputs are processed in memory and discarded immediately after delivery.

3. API Usage Data

We track token counts for billing purposes only. This includes: total tokens used, model accessed, and timestamp. We do not store the content of requests or responses.

4. Cookies

We use a single session cookie for authentication. No tracking cookies, no analytics cookies, no advertising cookies.

5. Third Parties

We use Stripe for payments. Stripe has its own privacy policy. We use our own infrastructure for model inference. No third party has access to your prompts or completions.

6. Data Retention

We retain your account email and billing records for as long as your account is active. Token usage records are retained for 90 days for billing audit, then deleted. No prompt or completion data is retained.

7. Your Rights

You can request export or deletion of your account data at any time. Email contact@openrout.ing with your request. We will process it within 30 days.

8. Security

All data is encrypted in transit (TLS 1.3) and at rest. API keys are hashed. Passwords are bcrypt-hashed. Access to infrastructure is restricted and audited.

9. Children

The service is not intended for users under 13. We do not knowingly collect data from children.

10. Changes

We may update this policy. We will notify users by email for material changes.

11. Contact

For privacy questions or data requests, email contact@openrout.ing.

TermsPrivacyPricingcontact@openrout.ing