Privacy Policy
This policy describes the information MaxAPI processes to operate accounts, API requests, billing, generated assets, support, and platform security.
Last updated:
Information processed
- Account identifiers such as email address, display name, avatar, and authentication-provider identifiers.
- API keys in protected form, session information, request metadata, usage records, balances, and billing transactions.
- Prompts, reference media, generated outputs, and related task metadata when required to perform a request.
- Operational logs such as IP address, user agent, request ID, error details, and security events.
- Support communications sent to MaxAPI.
How information is used
Information is used to authenticate users, route and complete requests, calculate charges, deliver generated assets, prevent abuse, investigate incidents, provide support, and improve service reliability.
Providers and infrastructure
Requests may be processed by the model provider or route selected for the request and by infrastructure providers used for hosting, storage, email, authentication, monitoring, and payments. Their handling is governed by their own terms and privacy policies.
Retention and security
Generated media is normally retained for seven days unless a different delivery path or operational requirement applies. Account, billing, fraud-prevention, support, and security records may be retained longer when needed to operate the service, resolve disputes, or meet legal obligations.
MaxAPI applies access controls and operational safeguards, but no internet service can guarantee absolute security. Users must keep API keys and sessions confidential.
Questions and requests
Contact MaxAPI to ask about account information or request an applicable correction or deletion. Some records may need to be retained for billing, fraud prevention, security, or legal reasons.
Contact: support@maxapi.dev