Privacy Policy

Privacy Policy

Last updated September 2026

1. Who we are

AICP (AI Inference Control Plane) is operated by Amit Gupta, Eichendorffstraße 17, 10115 Berlin, Germany (see our Imprint for full details). We are the data controller for the account, billing, and service-usage data described below. If your organisation is subject to the EU General Data Protection Regulation (GDPR), this policy explains how we process personal data as required by Art. 13/14 GDPR.

2. What we collect

Account data. Name, email address, organisation name, and role, provided when you or your organisation signs up.

Billing data. Invoicing details and usage/spend records needed to calculate and send invoices for the Cloud plan (cost-plus billing).

Provider API keys. If you connect your own AI provider credentials (BYOK), we store them AES-256-GCM encrypted at rest and never return them in plaintext through any interface, including to your own organisation.

Prompt and completion content. Requests you send through AICP, and the responses returned, are logged (Request Explorer) so routing decisions are replayable and your usage is auditable. If you enable PII redaction, detected personal data is replaced with placeholders before the request leaves AICP and restored only in the response shown back to you.

Technical data. IP address, timestamps, and request metadata, used for security, abuse prevention, and latency/quality monitoring.

Cookies. The dashboard sets a single essential session cookie to keep you signed in. It is required for the service to function and is not used for advertising or cross-site tracking. Our marketing website (this site) does not set any analytics or advertising cookies.

3. Why we process it, and on what legal basis

Performance of a contract (Art. 6(1)(b) GDPR): creating and running your account, routing your requests, generating invoices.

Legitimate interest (Art. 6(1)(f) GDPR): detecting abuse, securing the service, and improving routing quality using aggregated usage patterns.

Legal obligation (Art. 6(1)(c) GDPR): retaining invoicing records as required by German commercial and tax law.

4. Who we share it with

AICP routes your requests to the AI model provider(s) your organisation has connected or selected (for example OpenAI, Anthropic, Google, Mistral, AWS, Azure, or another provider you've added). Those providers process the prompt content of that specific request as an independent data processor or controller under their own terms, which you accept when you connect them. AICP itself does not sell personal data, and does not share it with any party outside of what is needed to run the service (model providers you've chosen, and infrastructure providers such as our hosting and database vendors, acting as our processors).

5. International transfers

Several major model providers are based outside the EU/EEA, most commonly in the United States. Where we or you route a request to such a provider, the prompt content is transferred internationally under that provider's own data processing terms, typically relying on the EU Standard Contractual Clauses. If your organisation needs to keep requests within the EU, use AICP's data residency and region-aware routing controls to restrict routing to compliant providers, or connect only EU-hosted providers via BYOK.

6. Retention

Account and billing data is kept for as long as your organisation has an active account, and afterwards only as long as required by German commercial and tax retention law. Request/response logs are retained according to your plan's configured retention period. You can request earlier deletion of your account and associated data at any time; see §7.

7. Your rights

Under the GDPR you have the right to access, correct, delete, or export your personal data, to restrict or object to certain processing, and to withdraw consent where processing is based on it. To exercise any of these rights, contact us at amit.gupta@aictrlplane.io. You also have the right to lodge a complaint with a supervisory authority, including the Berlin Commissioner for Data Protection and Freedom of Information (Berliner Beauftragte für Datenschutz und Informationsfreiheit).

8. Security

Provider API keys are encrypted at rest with AES-256-GCM, per organisation. Customer API keys used to authenticate to AICP are SHA-256 hashed, not stored in reversible form. Access to production data is limited to what is operationally necessary to run the service.

9. Children

AICP is a business-to-business developer tool and is not directed at, or knowingly used by, individuals under 16.

10. Changes to this policy

We may update this policy as the service evolves. Material changes will be reflected by updating the date at the top of this page.

11. Contact

Questions about this policy or your data: amit.gupta@aictrlplane.io. See also our Imprint for our full legal identity and address.