Frames Gateway — Privacy Policy

> DRAFT — pending legal review. Founder-drafted launch version. Not yet > reviewed by counsel; do not treat as final legal language.

_Last updated: 2026-06-09_

What we collect and why

Account and authentication data. Sign-up and login are handled by our authentication layer (Better Auth) running on our infrastructure: email, name, hashed credentials, and session data, stored in our database (Cloudflare D1). Used to operate your account and secure the service.

Billing data. Subscriptions and payments are processed by Stripe. We store your Stripe customer/subscription identifiers and webhook event records; we never see or store full card numbers. Stripe's own privacy policy applies to the payment details you give them.

Run and task content. When you submit a run we process and store: the task text, options, the structured result, a per-phase execution trace, usage/cost figures, and the tools consulted. Task content is sent to the AI model providers that execute your run (routed through Cloudflare AI Gateway — currently Google and Anthropic models) and, where the run buys a tool, the arguments for that call are sent to the third-party tool seller. Don't put secrets in tasks.

Payment receipts. Every paid tool call produces a receipt (tool id, amount, currency, network, transaction hash, delivery status). Receipts are part of an immutable billing and audit ledger and are retained for the life of the account and as required for accounting, dispute handling, and fraud prevention. Note that on-chain transaction hashes reference public blockchains; receipts do not contain your personal data.

Operational logs. Standard service logs (request ids, timestamps, error data) to run, debug, and secure the service.

What we don't do

Processors / subprocessors

Retention

Account data lives while your account exists. Run records and the credit/ receipt ledger are retained while your account exists and as needed for billing, audit, and legal obligations (the ledger is append-only by design). On account deletion we delete or anonymize personal data not required for those obligations.

Your rights

Depending on your jurisdiction (e.g. GDPR/CCPA), you may request access, correction, export, or deletion of your personal data. Contact us via the account email on file or the contact in the dashboard; we'll respond within the legally required window.

Cookies

We use session cookies for dashboard login (no advertising or tracking cookies). Dashboard sessions use secure, partitioned cross-site cookies because the dashboard and API run on separate origins.

Changes

We'll notify the account email of material changes to this policy.