1. Overview
NovAI ("we", "us", "our") is committed to protecting your privacy. This policy explains what data we collect, how we use it, and your rights regarding your information.
๐ Key Commitment
We do NOT store, log, or train on the content of your API requests and responses. Your AI conversations stay private.
2. Information We Collect
Account Information:
- Email address (required for registration)
- Password (hashed, never stored in plain text)
- Account creation date
Usage Data:
- API request count and token usage
- Models used
- Request timestamps for billing
- Error logs (without request content)
Payment Information:
- Transaction history (amounts, dates)
- PayPal transaction IDs (we don't store credit card numbers)
- Crypto wallet addresses (for USDT payments)
Technical Data:
- IP addresses (for security and rate limiting)
- User agent strings
- Referrer information
3. What We DON'T Collect
- API Request Content: We do not log or store your prompts or AI responses
- Training Data: We do not use your data to train models
- Credit Card Numbers: Payments processed via PayPal
- Government IDs: No KYC required for standard accounts
4. How We Use Your Data
- Service Delivery: Process API requests and calculate billing
- Account Management: Authenticate users and manage accounts
- Security: Detect fraud, abuse, and protect our infrastructure
- Communication: Send important service updates
- Analytics: Improve our services (aggregate, anonymized data)
5. Data Sharing
We do not sell your data. We may share data with:
- AI Providers: Your prompts are sent to upstream AI providers (DeepSeek, Alibaba, etc.) to fulfill your requests. Their privacy policies apply.
- Payment Processors: PayPal for processing payments
- Legal Requirements: If required by law or to protect our rights
6. Data Retention
- Account data: Retained while your account is active
- Usage logs: 90 days for billing disputes
- Payment records: 7 years for legal compliance
- Request content: NOT stored
7. Your Rights
- Access: Request a copy of your personal data
- Correction: Update or correct your information
- Deletion: Request account deletion (unused balance refunded)
- Export: Download your usage history
To exercise these rights, contact novaiapi.haohao@gmail.com.
8. Security
We implement industry-standard security measures:
- HTTPS encryption for all communications
- Hashed passwords (bcrypt)
- Encrypted API keys in storage
- Regular security audits
9. Cookies
We use minimal cookies for:
- Session authentication
- Basic analytics (page views)
No third-party tracking cookies.
10. International Users
Our servers are in Hong Kong SAR. By using our services, you consent to data transfer to and processing in Hong Kong.
11. Children's Privacy
Our services are not intended for users under 18. We do not knowingly collect data from children.
12. Policy Changes
We may update this policy periodically. Material changes will be announced via email. Continued use constitutes acceptance.
13. Contact
For privacy questions or concerns: novaiapi.haohao@gmail.com