Privacy Policy
Last updated: 2026-08-15
This policy explains what data onagent collects when you use our platform —
the console, the CLI, the backend API, and the @onagent/bridge SDK
embedded on a developer's website — and how that data is used and stored.
What we collect
onagent collects the following categories of data:
- Account data. When you sign up, we store your email address and a bcrypt hash of your password. We never store your password in plain text.
- Conversation and prompt content. When an end user interacts with an AI-powered feature built on onagent, the prompt text and the resulting conversation are sent to the configured LLM provider (for example Anthropic or Google) to generate a response, and may be retained by onagent for debugging, session continuity (so a conversation can resume after a server restart), and service operation.
- Usage and billing data. We record usage events (for example, the number of prompts processed per app per billing period) to enforce plan quotas and, where applicable, calculate billing.
- Website analytics. Our marketing site uses Google Analytics (gtag.js) to understand aggregate traffic patterns, such as which pages are visited and from where.
How we use this data
- To authenticate you and maintain your session.
- To process AI requests and return a response to the app that sent them.
- To enforce usage quotas and, where applicable, calculate billing.
- To diagnose and fix bugs in the platform.
- To understand aggregate usage of our marketing site.
Third-party sharing
We share data with the following categories of third parties, only as necessary to operate the service:
- LLM providers (for example Anthropic, Google) — to generate a response to a prompt, the prompt and relevant conversation context are sent to the provider configured for your app. Each provider's own privacy policy governs how they handle that data.
- Cloud infrastructure providers (for example Google Cloud) — to host the database and backend services that store the data described above.
- Google Analytics — for aggregate website traffic analysis on our marketing site only.
We do not sell your personal data to third parties.
Data retention
Account data is retained for as long as your account exists. Conversation history is retained to support session continuity and debugging; usage/billing records are retained as needed for billing and quota enforcement. You may request deletion of your account and associated data by contacting us at the address below.
Your choices
You can request access to, correction of, or deletion of your account data at any time by contacting us. If you are a developer embedding onagent in your own product, you are responsible for informing your end users about this processing in your own privacy policy.
Changes to this policy
We may update this policy from time to time. Material changes will be reflected by updating the "Last updated" date above.
Contact
Questions about this policy can be sent to onagent 團隊 at tim72117@gmail.com.