Privacy policy
Privacy, in plain language
Effective: 2026-09-11. Data controller: [apifare HK entity] — until incorporation, the current operator. Questions or requests: POST /v1/support or GitHub issues.
What we collect
Your email address (the account identifier), call metadata — route, price, latency, status — and the append-only ledger and signed audit chain your account generates. We log request IPs for rate-limiting and abuse prevention. We never log the request or response bodies of your API calls.
What we deliberately never see
Card numbers (Stripe processes payments; we store only Stripe's references). Vaulted keys in the clear: keys you vault are encrypted per-tenant at rest, decrypted only in memory at call time, never logged, and no endpoint returns them.
Transactional email (receipts, account notices) is sent because you use the service. Marketing email is sent only if you ticked the opt-in box at signup — it is unchecked by default — and every message carries an unsubscribe that works.
Who processes data for us
Fly.io (hosting), Supabase (database), Stripe (payments), Resend (email delivery), and the upstream API providers — which receive exactly the request your agent sends through them, nothing else. We do not sell data, run ads, or use one account's data for another account.
Retention and deletion
Ask us to delete your account via POST /v1/support: personal identifiers are removed; ledger and audit rows are retained as required financial records, de-linked from you. The audit chain for your own account is exportable by you at any time.
Written to comply with the HK PDPO; the formal legal review lands with the HK cutover. See also the terms of service.