Privacy policy
Last updated: January 2026
1. What we collect
We collect account information (name, email, organization) when you sign up for early access or API keys, and usage data (request counts, endpoints called, response times) when you use the API. We do not collect the content of the data you refine beyond what's needed to process and return your request.
2. How we use it
Account data is used to manage your API keys, billing, and support requests. Usage data is used to enforce rate limits, monitor service health, and improve the refinery pipeline. We do not sell your data to third parties.
3. Data retention
Request logs are retained for 30 days for debugging and abuse prevention, then deleted. Account information is retained for as long as your account is active, plus a reasonable period afterward for legal and accounting purposes.
4. Third-party processors
We use infrastructure and billing providers to operate the service (hosting, payments, email delivery). These providers only receive the minimum data required to perform their function and are bound by their own data protection agreements.
5. Security
API traffic is encrypted in transit. Access to production data is restricted to a small number of team members and is logged. We follow standard practices for credential storage, including hashing and scoped access tokens.
6. Your rights
You can request a copy of your account data, ask us to correct it, or request deletion at any time by emailing ask@theaineed.com. We will respond within 30 days.
7. Changes to this policy
We may update this policy as the product evolves. Material changes will be communicated to active accounts by email before they take effect.
Questions about this policy? Contact us at ask@theaineed.com.