Privacy Policy
Last updated: July 25, 2026
1. Overview
Token Hub ("we", "us", or "our") operates an AI model API relay service at https://124.156.169.253 ("the Service"). We are committed to protecting your privacy and being transparent about how we handle your data.
2. Data We Collect
We collect the following data when you use our Service:
- API Keys: Your API key identifiers (hashed) for authentication purposes
- Usage Data: Token counts, model selections, request timestamps, and response status codes
- Technical Logs: IP addresses, error logs, and performance metrics for debugging and service improvement
3. Data We Do NOT Collect
- Prompt Content: We do NOT log, store, or inspect the content of your prompts or completions
- Response Content: We do NOT log, store, or inspect the content of AI model responses
- Personal Information: We do not collect names, addresses, or personal identifiers beyond what is necessary for billing
4. Data Retention
- Usage logs (token counts, timestamps): retained for 90 days
- Error logs: retained for 30 days
- API key records: retained until account deletion is requested
- Billing records: retained for 7 years as required by applicable tax regulations
5. Data Training Policy
We do NOT use your data for model training, fine-tuning, or any machine learning purpose. Your prompts and completions are forwarded to upstream model providers and are not stored on our servers.
6. Third-Party Data Sharing
We share only the necessary request data with our upstream inference provider (SiliconFlow) to fulfill your API requests. This includes:
- Your prompt content (transmitted in real-time, not stored)
- Model selection and parameters
- Authentication credentials for upstream API access
We do NOT share your usage data, logs, or personal information with any other third parties.
7. Zero Data Retention (ZDR)
Our upstream provider, SiliconFlow, is configured with Zero Data Retention. This means your prompt and response data is processed in memory only and is not persisted to disk by the upstream provider.
8. Data Security
- All API keys are stored using SHA-256 hashing
- All API traffic is authenticated via Bearer token
- Server access is restricted to authorized personnel only
- Security patches are applied regularly to all server components
9. Your Rights
- Access: You can view your usage data through the admin dashboard
- Deletion: You can request deletion of your account and associated data at any time
- Export: You can export your usage logs in JSON format
- Opt-out: You can disable usage logging by contacting us
10. Contact Us
If you have questions about this Privacy Policy, please contact us at: contact@tokenhub.example
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date.