Privacy Policy

Last updated: January 2, 2026

1. Introduction

SilentLayer ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website, mobile application, and services (collectively, the "Services").

By using our Services, you agree to the collection and use of information in accordance with this Privacy Policy.

2. Information We Collect

2.1 Account Information

When you create an account, we collect:

  • Email address
  • Name
  • Password (encrypted)
  • Payment information (processed by Paddle, not stored by us)

2.2 Service Usage Data

When you use our Services, we collect:

  • API request metadata (timestamps, request counts, status codes, error types)
  • Authentication tokens and session identifiers
  • Device information (SDK version, platform, OS version)
  • Usage patterns and feature interactions

2.3 Data We Do NOT Collect or Store

  • API request contents - We do not log or store the actual data you send through our proxy
  • AI model responses - We do not retain responses from third-party AI providers
  • Your end users' data - We do not collect information about your application's users
  • Payment card details - All payment processing is handled by Payment Provider

2.4 Cookies and Tracking Technologies

We use cookies and similar technologies to:

  • Maintain your session when logged in
  • Remember your preferences
  • Analyze how you use our Services
  • Improve performance and user experience

You can control cookies through your browser settings.

3. How We Use Your Information

We use your information to:

  • Provide, maintain, and improve our Services
  • Process your transactions through Paddle
  • Send you service updates, security alerts, and administrative messages
  • Monitor and prevent fraud, abuse, and security incidents
  • Respond to your support requests
  • Analyze usage patterns to improve performance
  • Comply with legal obligations

4. How We Share Your Information

We share your information only in these circumstances:

4.1 Service Providers

  • Paddle - Payment processing (subject to Paddle's privacy policy)
  • Third-party AI Providers - Your API requests are routed to OpenAI, Anthropic, or other providers you configure (subject to their privacy policies)
  • Infrastructure Providers - AWS/hosting services that store our data (under strict data processing agreements)

4.2 Legal Requirements

We may disclose your information if required to:

  • Comply with legal obligations, court orders, or government requests
  • Enforce our Terms and Conditions
  • Protect our rights, property, or safety
  • Prevent fraud or security threats

4.3 Business Transfers

If SilentLayer is involved in a merger, acquisition, or asset sale, your information may be transferred. We will notify you before your information is transferred and becomes subject to a different privacy policy.

We do NOT:

  • Sell your personal information to third parties
  • Use your data for advertising purposes
  • Share your data with data brokers

5. Data Retention

  • Account data - Retained while your account is active
  • Usage logs - Retained for 30 days for monitoring and support
  • Post-termination - Usage logs retained for 30 days after account closure for billing disputes, then permanently deleted
  • Authentication tokens - Immediately invalidated upon logout or session expiration
  • Payment records - Retained by Paddle according to their policies and legal requirements

6. Data Security

We implement industry-standard security measures including:

  • Encryption in transit (TLS 1.3)
  • Encryption at rest for sensitive data
  • JWT-based authentication with secure token management
  • HMAC request signing for API integrity
  • Regular security audits and monitoring
  • Access controls and logging

However, no method of transmission or storage is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.

7. Your Rights and Choices

Depending on your location, you may have the following rights:

7.1 Access and Portability

  • Request a copy of your personal data
  • Export your usage data

7.2 Correction and Deletion

  • Update your account information at any time
  • Request deletion of your account and associated data
  • Data deletion requests are processed within 30 days

7.3 Opt-Out Rights

  • Unsubscribe from marketing emails (service emails cannot be disabled)
  • Disable non-essential cookies through browser settings
  • Revoke API access at any time through your dashboard

7.4 Do Not Sell My Personal Information (CCPA)

We do not sell personal information. If you are a California resident, you have the right to request information about data sharing practices.

To exercise any of these rights, contact us at privacy@silentlayer.ai.

8. International Data Transfers

Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for international transfers, including:

  • Standard contractual clauses
  • Data processing agreements with service providers
  • Compliance with applicable data protection laws

9. Children's Privacy

Our Services are not intended for users under 18 years of age. We do not knowingly collect information from children. If you believe we have collected information from a child, contact us immediately at privacy@silentlayer.ai.

10. Third-Party Services

Our Services integrate with third-party AI providers (OpenAI, Anthropic, etc.). When you use these integrations:

  • Your API requests are subject to the third party's privacy policy
  • We do not control how third parties process your data
  • You are responsible for reviewing and accepting third-party privacy policies

We are not responsible for the privacy practices of third-party services.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by:

  • Posting the new Privacy Policy on this page
  • Updating the "Last updated" date
  • Sending you an email notification (for significant changes)

Your continued use of the Services after changes take effect constitutes acceptance of the updated Privacy Policy.

12. Contact Us

If you have questions about this Privacy Policy or want to exercise your privacy rights, contact us:

13. Legal Basis for Processing (GDPR)

If you are in the European Economic Area (EEA), we process your personal data based on:

  • Contract performance - Providing the Services you requested
  • Legitimate interests - Improving our Services, preventing fraud, and maintaining security
  • Legal obligations - Complying with applicable laws
  • Consent - Where explicitly obtained (e.g., marketing communications)

You have the right to withdraw consent at any time without affecting the lawfulness of processing based on consent before withdrawal.

14. Region-Specific Information

14.1 California Residents (CCPA)

You have the right to:

  • Know what personal information is collected
  • Request deletion of personal information
  • Opt-out of the sale of personal information (we do not sell data)
  • Non-discrimination for exercising your rights

14.2 European Residents (GDPR)

You have additional rights including:

  • Right to restriction of processing
  • Right to object to processing
  • Right to lodge a complaint with a supervisory authority

14.3 Other Jurisdictions

We comply with applicable data protection laws in all jurisdictions where we operate.