Privacy policy

Privacy, in plain language

Effective: 2026-09-11. Data controller: [apifare HK entity] — until incorporation, the current operator. Questions or requests: POST /v1/support or GitHub issues.

What we collect

Your email address (the account identifier), call metadata — route, price, latency, status — and the append-only ledger and signed audit chain your account generates. We log request IPs for rate-limiting and abuse prevention. We never log the request or response bodies of your API calls.

What we deliberately never see

Card numbers (Stripe processes payments; we store only Stripe's references). Vaulted keys in the clear: keys you vault are encrypted per-tenant at rest, decrypted only in memory at call time, never logged, and no endpoint returns them.

Email

Transactional email (receipts, account notices) is sent because you use the service. Marketing email is sent only if you ticked the opt-in box at signup — it is unchecked by default — and every message carries an unsubscribe that works.

Who processes data for us

Fly.io (hosting), Supabase (database), Stripe (payments), Resend (email delivery), and the upstream API providers — which receive exactly the request your agent sends through them, nothing else. We do not sell data, run ads, or use one account's data for another account.

Retention and deletion

Ask us to delete your account via POST /v1/support: personal identifiers are removed; ledger and audit rows are retained as required financial records, de-linked from you. The audit chain for your own account is exportable by you at any time.

Written to comply with the HK PDPO; the formal legal review lands with the HK cutover. See also the terms of service.