At a glance
We use account, security, and usage metadata to operate the Service. Prompts and completions are transient by default: we do not put them in general logs, analytics, support views, audit events, or usage exports.
Scope and our approach
This Privacy Policy explains how InferencePass handles personal data when you visit our website, create an account, use the dashboard or API, or contact us. “Personal data” means information that identifies you or can reasonably be linked to you.
Our approach is to collect less, separate sensitive content from operational records, and explain the limits of our role. This policy applies to InferencePass's own handling of data; third-party providers you choose may process data under their own policies.
Data we handle
Depending on how you use the Service, we may handle account information such as your name, email address, workspace membership, and authentication records; technical and security information such as IP address, browser or device details, session activity, and security events; and service metadata such as request IDs, timestamps, selected model, usage counters, status, latency, and billing or audit references.
Prompts, completions, files, and other Customer Content are handled transiently to perform the requested AI operation. Our default service design does not place Customer Content in general logs, analytics, support views, audit events, or usage exports. Customer Content can still be processed by the third-party provider required to fulfil your request.
Why we use data
We use personal data to provide and secure the Service; authenticate users; manage workspaces and API access; prevent fraud and abuse; measure usage and apply limits; respond to support requests; meet legal obligations; and improve reliability and accessibility.
Where privacy law requires a particular basis for processing, we rely on the basis appropriate to the activity, such as performing our contract with you, meeting legal obligations, our legitimate interests in operating a secure service, or your consent when required. We do not use Customer Content to train general-purpose AI models.
Sources and sharing
We collect information directly from you, automatically when you use the Service, and from services you choose to connect, such as an identity provider or an external AI provider. We share data only as needed to operate the Service.
Recipients can include hosting and infrastructure providers, identity and security providers, service providers supporting customer operations, and AI providers selected to handle your request. We may also disclose information when required by law, to protect rights and safety, or in connection with a corporate transaction. We do not sell personal data or use it for cross-context behavioural advertising.
International processing
The Service and its providers may process data in countries other than the one where you live. When cross-border transfer rules apply, we use the safeguards required for the relevant transfer or limit the transfer when those safeguards are not available.
Because route availability can change, you should not send regulated, highly sensitive, or restricted data unless you have independently assessed the selected provider path and put appropriate safeguards in place.
Retention
We retain account and service data only for as long as needed for the purposes described here, including maintaining your account, preventing abuse, resolving disputes, meeting legal and accounting obligations, and enforcing agreements. The exact period depends on the type of data and why it was collected.
We minimise Customer Content retention by design. The standard Service does not provide a general content-retention feature. Security, audit, usage, and financial records may be retained longer than routine operational records where needed for legitimate operational or legal reasons.
Security
We use technical and organisational measures designed to protect data, including access controls, encrypted secret handling, session protections, and audit controls. No system is perfectly secure, so please protect your credentials and report suspected account compromise quickly.
For a description of the controls we make visible, visit our Security page. It describes our approach and does not promise absolute security.
Your choices and rights
You can review or update account information through the Service where that feature is available, revoke sessions, rotate API keys, and stop using the Service. Depending on where you live and the circumstances, you may have rights to request access, correction, deletion, restriction, objection, portability, or withdrawal of consent.
To make a privacy request, email support@inferencepass.com with the subject “Privacy request.” We may need to verify your identity and may retain limited information where law allows or requires it. You may also have the right to complain to the data-protection authority that applies to you.
Children and changes
The Service is built for developers and organisations, not for children. Do not use it if you are below the minimum age to consent to online services where you live. If you believe a child has provided us personal data without appropriate permission, contact us so we can review the request.
We may update this policy as the Service or applicable requirements change. We will publish the new effective date and provide additional notice for material changes where reasonably practicable.
Contact us
For privacy questions or requests, email support@inferencepass.com. For general service rules, see the Terms of Service.