Legal
Privacy Policy
Last updated 14 March 2026
This policy explains what we collect when you use CAPI, why we collect it, how long we keep it, and the choices available to you.
What this policy covers
Section 01
This policy explains what we collect when you use CAPI, why we collect it, how long we keep it, and the choices available to you.
It applies to the API, the dashboard, the documentation site, and any support or billing correspondence you have with us.
Information you provide
Section 02
Account details — the email address and (optionally) the organisation name you give when you create an account.
Support messages — anything you send through the contact form, email, or chat. We use these to respond and to improve the service.
Billing details — when you add credit, our payment processor receives the card or wallet details; CAPI stores only the last four digits and the brand.
Information we collect automatically
Section 03
Request metadata — model IDs, parameters you sent, response sizes, status codes, and how long the request took. We use this to operate the service, prevent abuse, and resolve incidents.
Generated media — the assets produced for you, kept for the lifetime of your account and deletable from the dashboard.
Device and log data — IP address, browser, and timestamps for management endpoints. Logs are retained for 30 days.
Third-party model providers
Section 04
When you call a model, the request is forwarded to the underlying provider. They receive the parameters and the prompt you sent, and the output that they return.
Each provider has its own retention and training policy. We publish a per-model note on the catalog page so you can pick providers that match your obligations.
Use of generated content
Section 05
We do not use the assets you generate to train our own models, and we do not share them with other customers.
Anonymised, aggregated counters (total generations per model, per day) may be used to publish ecosystem stats.
Cookies and local storage
Section 06
We use first-party cookies for session and locale preference. We do not deploy third-party tracking, advertising cookies, or analytics that follow you off the site.
You can clear these at any time from your browser; doing so logs you out and resets your locale back to the default.
Your rights
Section 07
You can export your data and close your account from the dashboard. Closing deletes your keys, generated media, and account record within the retention window below.
If a data-protection regulation gives you additional rights, the support team will honour them regardless of where you live.
Retention
Section 08
Closed accounts: account record and metadata are deleted within 30 days; generated media within 60 days; logs within 30 days.
Open accounts: deleted within 90 days of the last activity. You can request earlier deletion at any time.
Contact
Section 09
Questions about this policy or about your data can be sent to privacy@capi.ai. We answer within five business days.
This document is illustrative sample copy produced for a product prototype. It is not legal advice and has no contractual effect.