Privacy Policy
Last updated: January 15, 20261) Who we are and scope
This Privacy Policy explains how AnyInt ("AnyInt", "we", "our", or "us") collects, uses, shares, and protects information when you access or use our websites, dashboards, APIs, SDKs, and related services (the "Service"). If you do not agree with this Policy, please do not use the Service.
AnyInt provides a unified AI gateway that aggregates multiple models with smart routing and billing, and an optional provider program ("BYOK / Share Idle Compute") that lets providers securely contribute upstream idle compute resources for orchestrated execution and verifiable rewards. This Policy applies to all users of the Service, including API consumers and providers.
2) Information we collect
- Account & Contact: email, username or handle, organization, wallet address if used, profile preferences, and communication records.
- Usage & Telemetry: timestamps, request and response metadata such as model ID, route, token counts, latency, status and error codes, IP or network hints, user agent, and basic device information. By default, we retain only what is necessary for routing, billing, security, and audit.
- Content you send: prompts, files, images, and other Inputs, plus Outputs returned to you. Section 5 explains how we handle this content.
- Payment & Billing: limited billing metadata and transaction identifiers from processors such as Stripe or Coinbase. We do not store full card numbers or private crypto keys.
- Provider Data (BYOK): identifiers of compute capacity are stored only in encrypted form and decrypted only inside authorized execution components for fulfilling requests.
- Support & Trust/Safety: tickets, abuse reports, and fraud signals.
- We do not intentionally collect sensitive biometric data or government IDs unless required by law or by a verification process you initiate.
3) How we use information (purposes)
- Provide and operate the Service: request routing, metering, billing, rate-limiting, and support.
- Security & integrity: detect and prevent fraud or abuse, respond to incidents, audit activity, and support compliance.
- Service quality: debugging, reliability improvements, capacity planning, and usage analytics in aggregate or de-identified form.
- Communications: account notices, product updates, and support messages. You can adjust preferences for non-essential emails.
- Legal & compliance: meet tax, accounting, audit, and lawful-request obligations.
4) Legal bases (where applicable)
When required by law, including GDPR and UK GDPR, we rely on the following legal bases:
- Contract necessity, to provide the Service.
- Legitimate interests, including security, fraud prevention, and product improvement.
- Legal obligations, including tax and audit requirements.
- Consent, including optional prompt or chat logging and marketing.
5) Inputs & Outputs (User Content)
- Default logging: we keep minimal operational metadata needed for routing, billing, security, and audit.
- Optional logging for improvement and debugging: if prompt or chat logging is offered as an opt-in and you enable it, we may store Inputs and Outputs for diagnostics and quality. You can disable it at any time with prospective effect.
- Upstream models: when you choose a model, your Inputs and Outputs may be sent to that third-party provider, which may process, store, or use content under its own terms, including safety, abuse, or training policies. You are responsible for reviewing those terms and deciding what to send.
- No sale of prompts: we do not sell your personal information or prompts. We may use de-identified, aggregated metrics to publish rankings or performance statistics.
6) BYOK / Share Idle Compute (Providers)
- Zero-trust storage: provider credentials are encrypted at rest and in transit. AnyInt backends do not store them in plaintext form. Decryption occurs only within authorized executors to fulfill calls.
- Access controls & auditing: compute usage is restricted to configured routes. Anomalous or abusive traffic may be blocked, and rewards may be withheld or clawed back.
- Separation of data: usage metrics for reward calculation may be aggregated and published through proofs or roll-ups without exposing underlying credentials or personal data.
7) Sharing of information
We may share information with the following categories of recipients:
- Subprocessors and service providers: cloud infrastructure, logging and monitoring, support, analytics, payment processors, and anti-abuse vendors, only as needed to operate the Service.
- Upstream model providers: when you select a model, request data is shared as necessary to generate Outputs.
- Legal & Safety: to comply with laws, enforce terms, protect users and the Service, or respond to lawful requests.
- Business transfers: as part of a merger, acquisition, or asset sale, subject to this Policy.
- We do not sell personal information or share it for cross-context behavioral advertising as defined by applicable privacy laws.
8) Data retention
- Operational logs are typically retained for 30–90 days unless longer retention is needed for security, audit, or legal obligations.
- Account and billing records are kept while you maintain an account and as required by tax and audit laws, often five to seven years.
- Optional prompt or chat logs are retained only if you opted in and are deletable prospectively when you opt out.
- Provider credentials are retained in encrypted form until you rotate or revoke them or your program participation ends.
- Actual retention may vary where law or a litigation hold requires longer storage.
9) Security
Provider credentials follow a zero-plaintext design using modern public-key exchange and authenticated encryption. No method of transmission or storage is completely secure; keep your credentials and API keys secret.
10) International data transfers
We may process and store data in the United States and other countries. Where required, including in the EEA and UK, we use safeguards such as Standard Contractual Clauses and technical measures such as encryption and pseudonymization.
11) Your rights & choices
Depending on your region, you may have rights to access, correct, delete, restrict, port, or object to certain processing.
- Disable optional prompt or chat logging if available.
- Opt out of non-essential communications.
- Close your account. We will delete or de-identify data not required by law.
- We may ask for verification and will not discriminate against you for exercising rights permitted by law.
12) Children
The Service is intended for users 16 and older. We do not knowingly collect personal information from children under 16. If you believe a minor provided data, contact us and we will delete it.
13) Do Not Track & automated decisions
We do not respond to "Do Not Track" signals. We do not make solely automated decisions that produce legal or similarly significant effects without human oversight.
14) Changes to this Policy
We may update this Policy from time to time. Material changes will be announced through the dashboard or in-product notices. Continued use after the effective date signifies acceptance.
15) Contact
Legal entity: Dijstrai Limited. Registered address: Room B53, 2/F, Phase 1, Kwai Shing Industrial Building, 36-40 Tai Lin Pai Road, Kwai Chung, New Territories, Hong Kong.
If this Policy is provided in multiple languages, the English version controls in case of conflict unless a law in your jurisdiction requires otherwise.