AgentGuards

Privacy Policy

Last updated: June 16, 2025

1. Overview

AgentGuards ("we", "us") operates the guardrail API at agentguards.co. This Privacy Policy explains what data we collect, how we use it, and your rights over it.

2. Data We Collect

We collect the following categories of data:

  • Account data — email address, name, and authentication credentials managed via Clerk.
  • API usage data — request timestamps, check results (pass/block), token counts, and tenant identifiers. We do not store the full content of prompts beyond what is needed for real-time processing.
  • Billing data — plan tier and subscription status. Payment card details are processed and stored by our payment provider; we do not store card numbers.
  • Technical data — IP addresses, browser type, and logs, collected automatically when you access our website or API.

3. How We Use Your Data

We use the data we collect to:

  • Provide and operate the Service.
  • Enforce usage quotas and plan limits.
  • Send transactional emails (account creation, key alerts).
  • Detect abuse and ensure security.
  • Comply with legal obligations.

We do not sell your personal data to third parties.

4. Data Retention

Account data is retained for the lifetime of your account and for 30 days after deletion. Usage event data is retained for 12 months for billing and audit purposes. API request payloads processed in real time are not persisted to long-term storage.

5. Third-Party Services

We share data with the following sub-processors:

  • Clerk — identity and authentication.
  • AWS (eu-north-1) — cloud infrastructure hosting all data.
  • Payment processor — billing and subscription management.

6. Cookies

Our website uses session cookies required for authentication. We do not use tracking or advertising cookies.

7. Your Rights

Depending on your location, you may have the right to access, correct, or delete your personal data, or to object to or restrict certain processing. To exercise any of these rights, contact us at support@agentguards.co. We will respond within 30 days.

8. Data Security

All data is transmitted over HTTPS. API keys are stored encrypted at rest. We follow industry-standard practices to protect your information, though no system is completely secure.

9. International Transfers

All infrastructure runs in AWS eu-north-1 (Stockholm). If you access the Service from outside the EU, your data may be transferred internationally subject to appropriate safeguards.

10. Changes to This Policy

We may update this policy from time to time. We will notify you of significant changes via email. Continued use of the Service after changes constitutes acceptance.

11. Contact

Privacy questions or requests: support@agentguards.co