Privacy Policy
Last updated: 2026-08-09
1. Scope
This policy covers TokenHub (https://tokenhubapp.site), an OpenAI-compatible inference API offered to developers and to aggregator/reseller channels. It applies to the API endpoints, the website, and partner accounts.
2. Data we process
- Account data: email address, API key hash (we never store key plaintext), prepaid credit ledger entries.
- Usage metadata: model name, prompt/completion token counts, latency, HTTP status, timestamp. Used for billing and reconciliation.
- Request payloads: prompt and completion content is relayed to the serving backend to produce a response.
3. Prompt and completion retention
We do not persist prompt or completion content in our database. Only token counts and billing metadata are stored. Content may transit upstream infrastructure required to serve the request; that upstream is disclosed at /provider/health under supply.mode.
4. Training
We do not train models on customer prompts or completions, and we do not sell customer content.
5. Sub-processors and upstream
Depending on configuration, inference is served either by our own OpenAI-compatible endpoint or by a third-party gateway. The live value is published machine-readably at /provider/health. Hosting and database are provided by Vercel and Neon.
6. Retention
Billing and usage metadata are retained for the period required for financial reconciliation and applicable tax rules. Account records are retained while the account is active.
7. Security
API keys are stored as SHA-256 hashes. Transport is HTTPS only. Admin and automation endpoints require separate secrets.
8. Your rights
You may request deletion of an account and its associated metadata, subject to records we must retain for accounting purposes. Contact us through the channel form at /channels.
9. Changes
Material changes will be reflected by updating the date at the top of this page.