プライバシーポリシー
最終更新: April 17, 2026
1. 収集する情報
Smart AIPI を利用する際、以下を収集します:
- アカウント情報: サインアップ時に提供されるメールアドレス、名前、認証資格情報。
- 使用データ: 使用した model、token 数、timestamps、IP addresses を含む API request metadata。prompts や completions の内容は保存しません。
- 支払い情報: 請求情報は決済プロバイダー(Polar)によって処理されます。クレジットカード番号は保存しません。
- クッキー: 認証用の session cookies と、サイト利用状況の把握のための analytics cookies(Umami、self-hosted)。
2. 情報の利用方法
- Smart AIPI サービスの提供および維持のため
- 請求および credit 取引を処理するため
- アカウント関連の連絡(確認、支払い確認、credit 有効期限の警告)を送信するため
- サービスの健全性を監視し、不正利用を防ぐため
- 集計された使用パターンに基づいてサービスを改善するため
3. データ処理
Smart AIPI は AI model providers への proxy として動作します。API requests は responses を生成するために upstream providers(OpenAI)へ転送されます。prompts や completions の内容は保存、記録、学習に使用しません。請求目的のため、metadata(token 数、使用 model、コスト)のみ保持します。
4. データ保存とセキュリティ
- アカウントデータは Turso(分散 SQLite)でホストされた暗号化データベースに保存されます。
- API keys は復元不可能な hash として保存されます。平文のキーは作成時に一度だけ表示され、後から取得できません。
- すべての接続で TLS 暗号化を使用します。
- インフラは Fly.io 上でホストされ、北米とヨーロッパにデータセンターがあります。
5. データ共有
個人データを販売することはありません。データ共有は以下に限定されます:
- AIモデルプロバイダー (OpenAI)API requests を処理するため
- 決済事業者 (Polar)請求処理のため
- インフラ提供事業者 (Fly.io、Turso、Cloudflare)サービスのホストおよび提供のため
6. あなたの権利
以下のことができます:
- dashboard からアカウントデータにアクセス
- サポートに連絡してアカウントと関連データを削除
- 使用履歴をエクスポート
- いつでもAPI keys を無効化
7. Cookie
認証 session 用の必須 cookies と、サイトをまたいで追跡せず個人識別子も使わない任意の analytics cookies(self-hosted Umami)を使用します。
8. 本ポリシーの変更
このプライバシーポリシーは随時更新される場合があります。重要な変更がある場合は、登録ユーザーにメールで通知します。
9. Zero Retention of Prompts and Completions
Because this question is the single most important one for an API gateway, we restate it here in concrete, testable terms.
We never log, persist, cache to disk, or otherwise retain any of the following:
- The text or JSON body of any chat completion or completion request, including system messages, user messages, assistant messages, and tool/function call arguments and results.
- The text or JSON body of any chat completion or completion response, including streamed deltas.
- Embedding inputs and embedding output vectors.
- Image generation prompts, image edit prompts, input image bytes, output image bytes, or image URLs.
- Audio bytes for speech-to-text or text-to-speech, transcripts, or generated audio.
- Files uploaded to /v1/files, vector store contents, or any document content.
We do log the following per-request metadata, and only for the purposes listed in section 2:
- Account ID (so we can bill the correct account).
- API key fingerprint, never the key itself.
- UTC timestamp.
- Source IP address (for abuse detection and rate-limit enforcement).
- Target endpoint and target model name.
- Prompt token count and completion token count, returned by the upstream provider.
- HTTP status code and total request duration in milliseconds.
If our policy ever changes such that any item in the first list begins to be retained, we will publish the change here, bump the Last Updated date, and notify registered users by email at least seven days before the change takes effect.
10. Retention Periods
Concrete retention windows for everything we do keep:
- Per-request metadata rows (the fields in section 9): retained for 30 days for usage display and billing reconciliation, then automatically deleted.
- Aggregated, non-identifying daily counters (total tokens per account per model per day): retained for the lifetime of the account for the user-facing usage dashboard.
- Account profile (email, name, hashed password or OAuth identity): retained while your account is active. Deleted within 30 days of account deletion.
- Billing records and invoices: retained for the period required by applicable tax and accounting law (typically 7 years), in accordance with our payment processor's policies.
- Web access logs at the edge (Cloudflare): retained per Cloudflare's standard retention, generally less than 30 days.
11. No AI Training on Your Data
We do not train, fine-tune, evaluate, benchmark, distill, or otherwise use any of your requests, responses, embeddings, images, audio, files, or metadata to develop any machine learning model, our own or a third party's. We do not sell or share data with anyone for AI training. The OpenAI store=false parameter is forwarded on supported endpoints so that the upstream provider also does not retain your data for training under their default consumer terms; our agreement with OpenAI is on their API tier, which by OpenAI's published policy excludes API traffic from training by default.
連絡先
プライバシーに関するお問い合わせは、以下までご連絡ください [email protected].