Privacy Policy
Last updated:: 2026-08-06
1. Who we are
HostAgentics provides managed hosting for workflow engines and autonomous AI agents. This policy explains what personal data we process, why, and the rights you have.
2. Data we process
Account data: email address, name where provided, authentication identifiers, and session records when you sign in.
Billing data: payment records are processed and stored by our payment provider (Stripe). We store only the payment status, plan, and invoice references needed to operate your subscription.
Runtime data: your workflows, agent memories, skills, sessions, and files stored inside your managed runtimes. Runtime data is encrypted at rest, scoped to your runtime, and never shared with other customers. We do not read the contents of your conversations except as required to operate, secure, or repair your runtime.
Usage data: resource usage (CPU, memory, storage, transfer), health checks, backup status, and model-credit consumption needed to run the service and enforce plan limits.
3. How we use data
We use your data to: provide and secure the service; bill you; send transactional emails; enforce plan limits; and comply with legal obligations.
4. AI usage
When you use HostAgentics AI credit, requests are routed to third-party model providers through our model router. When you bring your own API key (BYOK), your requests go directly to the provider you configured. Prompt and response content is processed by those providers under their own terms; see their policies for how they handle data. We do not use your runtime content to train models.
5. Subprocessors
We engage subprocessors to operate the service. The current list is published on the Subprocessors page and is incorporated here by reference.
6. Retention
Runtime data is retained for the life of your subscription plus a retention period after cancellation, during which you can export or restore your data. Operational logs are retained per your plan (7 days by default). Full conversation content is not permanently retained in platform logs.
7. Your rights
You may request access, correction, export, or deletion of your personal data at any time by contacting [email protected]. We respond to verified requests within 30 days.
8. Contact
Privacy inquiries: [email protected]. This policy may be updated; the effective date above always applies.

