Privacy Policy

Last Updated: January 2025

1. Introduction

At AgentCodeFactory ("we," "our," or "us"), we respect your privacy and are committed to protecting your personal data. This privacy policy explains how we collect, use, and safeguard your information when you use our platform.

2. Information We Collect

2.1 Information You Provide

  • Account Information: Name, email address, password
  • Company Information: Company name (optional)
  • Payment Information: Processed securely through Stripe
  • API Keys: Your LLM provider keys (encrypted at rest)
  • Communications: When you contact support or provide feedback

2.2 Automatically Collected Information

  • Usage Data: Features used, generation requests, API calls
  • Device Information: Browser type, IP address
  • Cookies: Essential session cookies and preferences

2.3 Code Generation Data

  • Prompts: Your code generation requests
  • Generated Code: Output from our AI agents
  • Job History: Record of your generation jobs

3. How We Use Your Information

We use your information to:

  • Provide and maintain our code generation service
  • Process your payments and manage your subscription
  • Send you service-related communications
  • Improve our AI agents and platform features
  • Detect and prevent fraud or abuse
  • Comply with legal obligations

4. Data Security

We implement industry-standard security measures:

  • Encryption: All API keys are encrypted at rest
  • HTTPS: All data in transit is encrypted
  • Password Hashing: Passwords are securely hashed and never stored in plain text
  • Access Controls: Limited employee access to user data
  • Regular Audits: Security practices reviewed periodically

5. BYOK (Bring Your Own Key) Privacy

Pro Tier Users: When you use your own API keys, your prompts and generated code are sent directly to your chosen LLM provider. We do not store or process this data on our servers beyond what's necessary to facilitate the request.

6. Data Sharing

We may share your data with:

  • LLM Providers: Your prompts are sent to AI providers (Anthropic, OpenAI, etc.)
  • Payment Processors: Stripe for payment processing
  • Infrastructure Providers: Render.com for hosting
  • Legal Requirements: When required by law or legal process

We do NOT sell your personal data to third parties.

7. Data Retention

  • Account Data: Retained while your account is active
  • Generated Code Files: Full access for 24 hours, compressed storage for 7 days, then permanently deleted
  • Generation Metadata: Prompts, timestamps, and usage data retained for billing purposes
  • Payment Records: Retained as required by law (typically 7 years)
  • Deleted Accounts: Data removed within 30 days of deletion request

Note: We recommend downloading generated code immediately. After 7 days, file content cannot be recovered.

8. Your Rights (GDPR)

Under GDPR, you have the right to:

  • Access: Request a copy of your personal data
  • Rectification: Correct inaccurate personal data
  • Erasure: Request deletion of your data ("right to be forgotten")
  • Portability: Receive your data in a portable format
  • Object: Object to certain processing of your data
  • Withdraw Consent: Withdraw consent at any time

To exercise these rights, contact us at privacy@agentcodefactory.com

9. Cookies

We use cookies for:

  • Essential Cookies: Session management and authentication
  • Preference Cookies: Dark mode and UI preferences
  • Analytics: Anonymous usage statistics (if enabled)

You can control cookies through your browser settings.

10. International Transfers

Your data may be processed in countries outside the EU/EEA. When transferring data, we ensure appropriate safeguards are in place (Standard Contractual Clauses).

11. Changes to This Policy

We may update this policy periodically. We'll notify you of significant changes via email or platform notification. Continued use after changes constitutes acceptance.

12. Contact Us

For privacy-related questions:

13. Data Protection Authority

If you have concerns about our data practices, you have the right to lodge a complaint with the French data protection authority (CNIL) or your local supervisory authority.