Privacy policy
Last updated: September 8, 2026.
1. Who we are
IleAI is an artificial intelligence gateway platform: it unifies access to several third-party AI providers (text, image, vision, audio, video, translation, embeddings) behind a single API, dashboard, and shared credit system. This policy describes what data we collect when you use the public site, the dashboard, or the API, why, and your rights over that data.
Entity responsible for processing: [to be completed — legal name, legal form, and registered address]. For any question about this policy or to exercise your rights, write to [to be completed — privacy-dedicated email address].
2. Data we collect
- Account: name, email address, password (stored hashed, never in plain text), organizations/projects created, role within an organization.
- Billing: history of credits purchased and consumed, cryptocurrency payment transactions (processed by our payment provider, see §4 — we never store your wallet credentials or payment details).
- API usage: call logs (timestamp, category, model and provider used, status, latency, number of tokens/units consumed) necessary for billing, technical support, and abuse detection.
- Request content: the text, images, or files you send to the API (Playground, Agents, programmatic calls) are transmitted to the chosen AI provider to generate a response, and may pass through our file storage provider for generated results (see §4). We only retain this content for as long as necessary to process the request, and for Agents conversation history, until you delete it.
- Technical data: IP address, request identifier, application error logs — used solely for security, diagnostics, and service reliability.
3. Why we use it
- Provide and bill the service (executing AI calls, managing credits).
- Secure accounts (authentication, suspicious activity detection).
- Send the emails required for the service (account verification, password reset, invitations, budget alerts).
- Provide customer support and diagnose incidents.
- Comply with our legal and accounting obligations.
We never use the content of your requests to train our own models — IleAI does not train any model, it routes your requests to third-party providers. Each provider applies its own policy regarding any use of data transmitted via its API for training (generally disabled by default for API calls, unlike consumer-facing interfaces) — see §4 for links to their respective policies.
4. Subprocessors and third-party providers
Depending on the features you use, your data may be transmitted to the following providers, each acting under its own privacy policy:
- AI providers (content of your requests, only for the categories you use): Anthropic, OpenAI, Google, DeepSeek, xAI, Mistral AI, Moonshot AI, MiniMax, Meta (Llama), Black Forest Labs, DeepL, ElevenLabs, Vidu.
- Payment: NOWPayments (cryptocurrency payment processing) — we never receive your private keys or wallet credentials.
- Transactional email: Resend (sending the account emails listed in §3).
- File storage: UploadCenter (hosting the files you upload and the results generated by AI providers).
5. Retention period
Account and billing data is kept as long as your account is active, then for the period required by our accounting/legal obligations after closure. Raw technical logs are automatically purged after a limited period; aggregated statistics (without request content) may be kept longer for service reliability purposes.
6. Your rights
Depending on your jurisdiction, you generally have a right of access, rectification, erasure, restriction, and portability of your data, as well as the right to withdraw your consent where it forms the basis for processing. You can exercise these rights directly from your dashboard (profile, account deletion) or by writing to us at [to be completed]. We respond within legally applicable timeframes.
7. Cookies
The dashboard uses a strictly necessary session cookie (httpOnly, not accessible via JavaScript) to keep you signed in — no advertising or third-party tracking cookies. The public site uses a strictly necessary cookie to remember your language preference; no tracking cookies.
8. Security
Hashed passwords, hashed API keys in the database, session tokens in httpOnly cookies with rotation, encryption in transit (HTTPS) across the entire service. No system is infallible: in the event of a security incident affecting your data, we will inform you in accordance with our legal obligations.
9. Changes to this policy
We may update this policy to reflect an evolution of the service or of applicable regulations. The last-updated date at the top of the page is refreshed with every significant change; for any substantial modification, we will notify you by email or via the dashboard.