Privacy Policy
Effective: [DATE] · Status: Private Beta
| Category | Examples | Why |
|---|---|---|
| Account data | Email, hashed API keys, invite provenance | Authentication, abuse prevention |
| Billing records | Job/session durations, GPU class, integer-microdollar amounts, spend caps | Cash billing, payouts, reconciliation. Append-only ledger — retained for accounting. |
| Operational logs | API request logs (with request IDs), job lifecycle events, node heartbeats, container logs you emit | Debugging, reliability metrics, incident response |
| Workload traffic | Prompts/requests sent to your workspace endpoint transit our relay tunnels | Routing your traffic to your session |
| Host data | Node hardware specs (GPU model, VRAM), reliability history, payout records | Scheduling, quarantine, payouts |
We do not sell personal data, run ads, or use your workload content to train models.
Workspace traffic is relayed through our ingress to the machine serving your session — typically an independent contributor's ("Host's") GPU. See the Terms of Service §5 trust disclosure: content that reaches a Host's machine is technically observable by that Host despite contractual prohibitions.
We do not persist prompt/response bodies on our servers beyond transient relay buffers; container logs (which may include whatever your workload prints) are persisted for you to retrieve.
- Billing and payout ledgers: retained for [7 years] (append-only by design; required for accounting and tax).
- Job/session logs: retained [90 days] or until job deletion, whichever is first.
- API request logs: [30 days].
- Account data: until account deletion, then removed except where retention is legally required.
- Cloud fallback: jobs routed to Vast.ai run under Vast.ai's terms.
- Infrastructure: hosting on Microsoft Azure; optional object storage on [Cloudflare R2 / S3-compatible provider].
- No analytics/ad networks are embedded in the beta UI.
API keys are stored hashed; session tokens are hashed and revocable; all public traffic is TLS-terminated; databases are not exposed publicly. Report vulnerabilities to [SECURITY EMAIL].
Email [PRIVACY EMAIL] to access, correct, or delete your account data. Beta accounts are invite-only and presumed to be business users; if you are in a jurisdiction granting statutory rights (GDPR/CCPA), we will honor verified requests within the statutory window.
[OPERATOR LEGAL ENTITY NAME] · [ADDRESS] · [PRIVACY EMAIL]
See also: Terms of Service · Host Agreement