Privacy Policy
Effective date: August 9, 2026. This policy explains how Geoduck handles information when you use the service.
Information we process
We process account and workspace details, catalog and prompt inputs, model-response evidence, billing identifiers, support communications, and limited technical/security logs. We use this information to provide controlled API-response measurement, operate subscriptions, prevent abuse, and improve reliability.
Model requests
Geoduck requires downstream zero-data-retention routing for eligible model requests and does not opt customer content into model training or product-improvement programs. Provider availability and contractual controls can change; a response without required provenance is not eligible for visibility reporting.
Retention and deletion
Free-plan evidence is retained for up to 30 days. Paid-plan evidence is retained for up to 13 months. Following cancellation, evidence is kept for a 30-day export/reactivation window before purge. Workspace-deletion requests enter a purge workflow targeted for completion within 30 days, subject to legal, fraud-prevention, and billing-record obligations.
Service providers
We use Firebase, MongoDB, OpenRouter and selected model providers, Stripe, and Resend as described on our Subprocessors page.
Contact
For privacy or deletion requests, email admin@a2z-soft.co.