1. Overview
This policy explains what information Keyino collects, how we use it and the choices you have.
2. Information we collect
- Account: email address, username, password (stored only as a salted hash) and your chosen display language.
- Usage records: for each API call — time, model, token counts, cost, status, the key used and the request IP. We need these for billing and abuse prevention.
- Payments: order amount and time, the receiving address and the blockchain transaction hash. Blockchain transactions are public by nature.
- Technical data: IP address, browser and device information, and the cookies described below.
3. Prompts and responses
We do not store the content of your prompts or of model responses. Content is processed in memory only to forward your request to the upstream provider and return the result.
Upstream providers process content under their own policies and may retain it as those policies allow. Do not send personal or confidential data you are not authorized to share.
4. How we use information
- to provide the Service and bill your usage;
- to send verification, password-reset and service emails;
- to prevent fraud, abuse and attacks;
- to troubleshoot and improve the Service, and to meet legal obligations.
We do not sell personal data and do not use it for third-party advertising.
5. Service providers
We share only what each provider needs: upstream AI model providers (to process your requests), Cloudflare (Turnstile human verification), Resend (transactional email) and our hosting provider.
6. Cookies and local storage
- Essential cookies keep you signed in.
- A language preference (the kino_ui_lang cookie and browser local storage) lets pages and emails use your language.
- Cloudflare Turnstile may set cookies to verify that you are human.
We do not use advertising or cross-site tracking cookies.
7. Retention
Account data is kept while your account is active. Usage and payment records are kept as long as needed for billing, accounting and dispute handling, then deleted or anonymized. Backups are kept for up to 14 days.
8. Security
We use HTTPS throughout, hashed passwords and restricted server access. No system is perfectly secure: keep your API keys safe and delete any key that may have leaked.
9. Your rights
You can view and update your account information in the console. To request a copy or deletion of your data, email us; we will respond within 30 days. Some records may be kept where the law requires.
10. Children
The Service is not directed to anyone under 18, and we do not knowingly collect their data.
11. Changes
We may update this policy. The new version will be posted on this page with a new effective date.
12. Contact
Privacy questions and requests: support@keyino.cc

