Privacy Policy
Last updated: June 16, 2025
1. Overview
AgentGuards ("we", "us") operates the guardrail API at agentguards.co. This Privacy Policy explains what data we collect, how we use it, and your rights over it.
2. Data We Collect
We collect the following categories of data:
- Account data — email address, name, and authentication credentials managed via Clerk.
- API usage data — request timestamps, check results (pass/block), token counts, and tenant identifiers. We do not store the full content of prompts beyond what is needed for real-time processing.
- Billing data — plan tier and subscription status. Payment card details are processed and stored by our payment provider; we do not store card numbers.
- Technical data — IP addresses, browser type, and logs, collected automatically when you access our website or API.
3. How We Use Your Data
We use the data we collect to:
- Provide and operate the Service.
- Enforce usage quotas and plan limits.
- Send transactional emails (account creation, key alerts).
- Detect abuse and ensure security.
- Comply with legal obligations.
We do not sell your personal data to third parties.
4. Data Retention
Account data is retained for the lifetime of your account and for 30 days after deletion. Usage event data is retained for 12 months for billing and audit purposes. API request payloads processed in real time are not persisted to long-term storage.
5. Third-Party Services
We share data with the following sub-processors:
- Clerk — identity and authentication.
- AWS (eu-north-1) — cloud infrastructure hosting all data.
- Payment processor — billing and subscription management.
6. Cookies
Our website uses session cookies required for authentication. We do not use tracking or advertising cookies.
7. Your Rights
Depending on your location, you may have the right to access, correct, or delete your personal data, or to object to or restrict certain processing. To exercise any of these rights, contact us at support@agentguards.co. We will respond within 30 days.
8. Data Security
All data is transmitted over HTTPS. API keys are stored encrypted at rest. We follow industry-standard practices to protect your information, though no system is completely secure.
9. International Transfers
All infrastructure runs in AWS eu-north-1 (Stockholm). If you access the Service from outside the EU, your data may be transferred internationally subject to appropriate safeguards.
10. Changes to This Policy
We may update this policy from time to time. We will notify you of significant changes via email. Continued use of the Service after changes constitutes acceptance.
11. Contact
Privacy questions or requests: support@agentguards.co