Privacy Policy
Effective 11 July 2026
1. Scope and service boundary
This policy explains how Ai Adit handles information when you visit our site, create an account or use our Key allocation, usage reporting and billing services. The Ai Adit core platform is a managed cloud service: information submitted to it is transmitted to and processed on systems operated for Ai Adit, and the core platform is not self-hosted by customers. Separately, the optional New API sync program can run on a customer-managed server. That program reads configured consumption logs and reports usage to the Ai Adit core platform; its New API access token remains in the customer-managed environment. This policy does not cover a model provider’s separate handling of requests sent with its credentials.
2. Information we collect
We process account names, email addresses, telephone numbers, company and qualification details; authentication, IP address, browser and request metadata; provider, platform and Key lifecycle records; model names, Token counts, timestamps, request identifiers, usage costs and reconciliation status; deposits, adjustments, invoices and ledger records; support communications; and administrative audit history. Sources include information directly from users; information collected automatically from browsers and servers; data sent by customer and New API integrations; records of administrator actions; and credential or lifecycle data received from upstream partners and model providers. Standard usage integrations are designed not to require prompt or model-response content, and customers should not submit such content unless a documented workflow expressly requires it.
3. Cookies and tracking
We use necessary session cookies to keep users signed in, protect account workflows and maintain security. We do not use advertising cookies or trackers, sell browsing profiles or build cross-site advertising audiences. Basic server logs may record network and device details needed for reliability, fraud prevention and incident investigation.
4. How we use information
We use information to verify and administer accounts, allocate Keys exclusively, operate integrations, reconcile usage, calculate charges, maintain balances and credit controls, answer support requests, improve reliability, prevent misuse and satisfy contractual or legal duties. Depending on the context, processing supports performance of our agreement, legitimate operational and security needs, legal obligations, or consent where applicable law requires it.
5. Provider credentials
Raw provider Keys are stored because the service must receive, allocate and return them to authorized accounts. They are excluded from ordinary application logs, advertising analytics and public pages. Access is limited to authorized administrators and the assigned customer where the product workflow requires it. A customer remains responsible for protecting credentials after delivery and for promptly reporting suspected exposure.
6. Sharing
We may share the minimum information required with hosting, database, communications, security and support vendors acting for us; with professional advisers; with a successor in a corporate transaction subject to appropriate protection; or with authorities when legally required. Requests a customer sends directly to a model provider are handled independently under that provider’s terms; Ai Adit does not proxy or actively disclose that request content. We do not sell personal information or disclose provider Keys for advertising.
7. Retention
We retain information while an account or service relationship is active and afterward where reasonably needed for accounting, security, audit, dispute resolution, contractual commitments or legal compliance. The period depends on the record type, sensitivity, operational purpose and applicable obligations rather than a single fixed schedule. Key records follow their operational lifecycle; immutable billing and audit entries may remain after account closure where their purpose still applies.
8. Security and incident reporting
We apply role-based access, session controls, restricted administrative operations, transport protection and audit logging for critical security and administrative events. These controls reduce risk but are not a guarantee against every incident. If you believe credentials, an account or Ai Adit may be affected by a security vulnerability, contact contact@aiadit.com with the subject “Security Report” and avoid including live secrets in the first message.
9. International processing
Ai Adit, its service providers and model providers may process information in countries different from your own. The legal requirements and protections for a particular transfer depend on the locations, recipient, processing purpose, relevant agreements and applicable law. You may contact us for information about an international processing arrangement relevant to your account.
10. Your rights
Within the scope allowed by applicable law, you may ask to access, correct or delete personal information, restrict or object to certain processing, receive portable information, withdraw consent where processing depends on consent, or complain to an appropriate regulator. We may verify identity before acting. Some requests can be limited where records must be preserved for security, billing, legal claims or other lawful reasons.
11. Children
Ai Adit is a business service and is not directed to anyone under 18. We do not knowingly permit a person under 18 to open an account. If you believe a minor has provided personal information, contact us so we can review and take appropriate action.
12. Changes and contact
We may update this policy as the service, vendors or legal requirements change. Material revisions will be identified by a new effective date and, where appropriate, an in-product or account notice. Privacy questions and rights requests may be sent to contact@aiadit.com.