Legal

Privacy Policy

Last updated 14 March 2026

This policy explains what we collect when you use CAPI, why we collect it, how long we keep it, and the choices available to you.

What this policy covers

Section 01

This policy explains what we collect when you use CAPI, why we collect it, how long we keep it, and the choices available to you.

It applies to the API, the dashboard, the documentation site, and any support or billing correspondence you have with us.

Information you provide

Section 02

Account details — the email address and (optionally) the organisation name you give when you create an account.

Support messages — anything you send through the contact form, email, or chat. We use these to respond and to improve the service.

Billing details — when you add credit, our payment processor receives the card or wallet details; CAPI stores only the last four digits and the brand.

Information we collect automatically

Section 03

Request metadata — model IDs, parameters you sent, response sizes, status codes, and how long the request took. We use this to operate the service, prevent abuse, and resolve incidents.

Generated media — the assets produced for you, kept for the lifetime of your account and deletable from the dashboard.

Device and log data — IP address, browser, and timestamps for management endpoints. Logs are retained for 30 days.

Third-party model providers

Section 04

When you call a model, the request is forwarded to the underlying provider. They receive the parameters and the prompt you sent, and the output that they return.

Each provider has its own retention and training policy. We publish a per-model note on the catalog page so you can pick providers that match your obligations.

Use of generated content

Section 05

We do not use the assets you generate to train our own models, and we do not share them with other customers.

Anonymised, aggregated counters (total generations per model, per day) may be used to publish ecosystem stats.

Cookies and local storage

Section 06

We use first-party cookies for session and locale preference. We do not deploy third-party tracking, advertising cookies, or analytics that follow you off the site.

You can clear these at any time from your browser; doing so logs you out and resets your locale back to the default.

Your rights

Section 07

You can export your data and close your account from the dashboard. Closing deletes your keys, generated media, and account record within the retention window below.

If a data-protection regulation gives you additional rights, the support team will honour them regardless of where you live.

Retention

Section 08

Closed accounts: account record and metadata are deleted within 30 days; generated media within 60 days; logs within 30 days.

Open accounts: deleted within 90 days of the last activity. You can request earlier deletion at any time.

Contact

Section 09

Questions about this policy or about your data can be sent to privacy@capi.ai. We answer within five business days.

This document is illustrative sample copy produced for a product prototype. It is not legal advice and has no contractual effect.