Privacy Policy

Last updated: 2026-07-18.

1. What We Collect

We collect account information needed to operate the service, such as your Google, GitHub, or Discord identity, email address when provided by your sign-in provider, account name, plan, subscription status, API-key metadata, billing identifiers from Stripe, and a keyed network fingerprint derived from the address used to access the API. We store API-key hashes and prefixes, not raw API keys after creation. The account-linkage fingerprint is generated with a secret-keyed one-way function, and Yolo-Auto does not store the underlying network address in its account-linkage records.

2. Prompts and Responses

Yolo-Auto does not routinely store your prompts, uploaded content, model responses, or conversations, and does not provide a product interface for browsing them. The admin tools ordinarily show request metadata such as time, model route, provider, token counts, status, latency, and error codes, not prompt or response text.

Your request content is transmitted and processed only as needed to fulfill the API request, including through hosting, networking, and security infrastructure supporting the model runtime we operate. We may temporarily retain or legally preserve specific content when reasonably necessary to investigate abuse or security incidents, protect safety, respond to valid legal process, report apparent child sexual exploitation, enforce these Terms, or comply with law.

3. Usage and Diagnostics

We store usage metadata to enforce limits, detect abuse, identify coordinated or multiple-account operation, debug reliability, and calculate billing or plan state. This includes API key ID, user ID, route name, provider ID, provider key ID, request counts, token counts, latency, status, request ID, timestamps, and the keyed network fingerprint. Network fingerprints may show that accounts used the same network, proxy, or VPN, but are not treated as proof that accounts belong to one person.

4. Billing Data

Payments are handled by Stripe. Yolo-Auto does not store card numbers, bank details, crypto-wallet credentials, or full payment credentials. We store Stripe customer, Checkout, subscription, invoice, price, and event identifiers so we can keep your account plan and billing history in sync.

5. Sharing

We do not sell your personal data. We share data only with service providers needed to run Yolo-Auto, such as Cloudflare and infrastructure hosts for networking, hosting, storage, and security; Stripe for payments; and Google, Discord, or GitHub for authentication.

6. Security

Provider keys, Stripe secrets, and session secrets are stored as server-side secrets. API keys are hashed before storage. Access to admin tools is restricted. No system is perfectly secure, but we design Yolo-Auto to minimize stored sensitive content.

7. Retention

We keep account, billing, and usage metadata for as long as needed to provide the service, resolve disputes, comply with legal obligations, and maintain security. Prompt and response bodies are not routinely retained as conversation history or sold. Specific content preserved for safety, abuse, security, or legal reasons may be retained for as long as reasonably necessary for that purpose.

8. Your Choices

You can disable API keys from the dashboard, cancel subscriptions through Stripe when billing is enabled, or ask the operator to delete or correct account metadata where applicable.

9. Changes

We may update this Privacy Policy as the service changes. Continued use after the policy is updated means you accept the updated policy.

10. Contact

For privacy questions or data requests, contact us at support@yolo-auto.com.