Legal
Privacy notice
This notice covers models.sylphx.ai/ and the API at https://api.models.sylphx.ai/v1: what we process to run the service, why, and how to reach us about it.
Last updated 11 September 2026
What we process
- Account details: your name, email address, organization membership, and the authentication data needed to sign you in and to mint or revoke
sk-sx-keys. - Request metadata: timestamps, the model you named, token counts, status, and the rate and idempotency identifiers we need to accept, refuse, meter, and retry safely.
- Request content: the prompts, inputs, and outputs of the calls you make. We process them to produce the response you asked for, and to operate safety, abuse prevention, and metering.
- Billing quantities: the token counts that your usage is priced from, and the plan and entitlement records that govern your workspace.
Why we process it
- To deliver the response you requested and to keep the service working.
- To meter usage, produce your usage view, and settle what you owe.
- To prevent abuse, enforce the terms of use, and meet legal and security obligations.
Model data posture
Every model in the catalog publishes its training posture and whether zero-data-retention is available, so you can pick a model that matches your own commitments. If a model does not publish a field, we show it as unpublished rather than assuming a value.
What we do not do
- We do not sell your prompt text as a dataset.
- We do not publish which model provider served a request. That routing is ours, and the public catalog describes the product we sell rather than a directory of subprocessors.
- We do not ask for, or accept, another Sylphx product’s credentials in place of an AI API key, and we do not treat one as your identity here.
Keys and retention
- A key secret is shown once when you create it. We then store only a prefix so you can recognize the key in the console. Revoke a key any time from your console.
- We keep account, key, and usage records for as long as we need them to run the service, settle metering, and satisfy a legal obligation, then delete or constrain them.
Your requests
Use your console for account access and key revocation. For a data-protection request about your account, write from the email address on that account to [email protected]. Security issues go to [email protected] — please do not include secrets or customer content in a first message.