Token Harbor PTE. LTD. (“Token Harbor”, “we”, “us”, “our”) operates tokenharbor.ai and its related web, mobile applications, and API services. As a foundational economic and routing infrastructure for AI models, privacy and data control are central to our platform.
This policy explains what information we collect, how it is routed, and your rights regarding your data. By using Token Harbor, you agree to the collection and use of information as described below.
1. How We Process AI Data (Model Routing)
Because Token Harbor acts as a universal router to various AI models, how we treat your API request (prompts) and response content (completions) depends strictly on the model tier you choose.
Paid Models & Zero Data Retention (ZDR)
For paid model routes, Token Harbor enforces a Zero Data Retention policy. We do not use request or response content for training and route paid requests through provider arrangements intended to prevent provider training and persistent content retention. Only required operational and billing metadata, such as token counts and timestamps, is retained. A model may also have a separately identified free route governed by the free-route policy below.
Free Models & Data Sharing
Selected models are offered through explicitly identified permanent free routes; the models included at any given time are listed as “Free” on the Models page and in the model list returned by the API. Free models are disabled by default. If you opt in through the dashboard, Token Harbor may retain free-route prompts and responses for service diagnostics, safety, optimization, and model or product improvement. Existing consent is not expanded retroactively when a new permanent free model is added; the newly added model remains disabled until you accept the expanded scope. Upstream providers also process the content under their own policies, which differ by provider. Turning free models off stops future collection under this program and disables free routes, but data already collected while consent was active may be retained. Limited-time routes may be offered under separately displayed terms and may follow the paid-route zero-data-retention policy. Paid routes remain governed by the paid-route policy above.
Observability & Conversation History
If you use our web or mobile chat interfaces, Token Harbor retains your conversation history on our secure servers purely so you can resume previous chats across sessions. You may delete this history or export it at any time.
2. Information We Collect
To operate our services and maintain a secure payment ecosystem, we collect the following:
- Account & Identity Information: Your email address and password (passwords are stored only as a salted one-way hash; we never see them). If you use Single Sign-On (SSO), we receive basic profile details.
- Wallet and Transaction Data: Your credit balance, top-up history, token consumption, cashback, and referral rewards. This is maintained as an append-only ledger on our servers.
- Telemetry & Metadata: We log routing metadata—such as the number of prompt/completion tokens, latency, and model selection—to power billing, rate-limiting, and model performance rankings. This metadata never contains the actual content of your messages.
- Device & Security Information: A persistent device identifier generated in your browser's local storage and your IP address at signup to prevent coordinated fraud and duplicate account abuse.
3. Google User Data Policy
If you choose to sign in with Google (“Sign in with Google”), Token Harbor accesses Google user data through Google's OAuth 2.0 flow. In accordance with the Google API Services User Data Policy, we adhere to the following strict guidelines:
- What we access: We request only the minimum OAuth scopes: openid (unique identifier), email (login identifier), and profile (name and avatar for UI personalization). We cannot and do not access Gmail, Drive, Calendar, Contacts, or any other Google data.
- How we use it: We use this data exclusively to authenticate your session, link existing accounts, send transactional emails, and prevent abuse. We do not use Google user data to train AI models, nor do we sell, trade, or use it for advertising.
- How it is protected: Your Google data is encrypted in transit (TLS 1.2+) and at rest (AES-256). Row-level access controls ensure only you can access your data, and secret keys are held in encrypted, access-restricted storage.
- Retention and Deletion: Google user data is retained only while your account exists. You can revoke access anytime via your Google Account Permissions or email us for complete account deletion.
4. Third Parties & Data Sharing
Token Harbor does not sell your personal data. To provide borderless AI access, we share necessary data strictly with trusted infrastructure vendors:
- AI Model Providers: Your message content is securely routed to the provider that powers your selected model. For paid tiers, we mandate enterprise terms prohibiting data retention for training.
- Supabase: Manages our authentication and database hosting securely.
- Vercel & Cloudflare: Provides web hosting, edge infrastructure, DNS, edge caching, and bot mitigation.
- PayPal Hong Kong (Licence SVF0008): Processes payments for credit top-ups. We do not store your card number or PayPal credentials; we only store order and capture identifiers for reconciliation.
5. Data Retention & Security
We retain your account data for as long as your account is active. Financial transaction records and anonymized telemetry data may be retained for up to seven (7) years to comply with international accounting, tax, and anti-money laundering (AML) laws, even after an account is deleted.
All user data is protected by industry-standard administrative, technical, and physical safeguards. However, no internet transmission is universally secure; you are responsible for maintaining the confidentiality of your account credentials.
6. Your Rights & Controls
You maintain total control over your data. At any time, you can:
- Access & Export: View your data in the in-app Activity view, or email us to export your complete conversation history.
- Correct: Update the email or profile details associated with your account.
- Delete: Request full account deletion. We will purge your personal and conversational data within 30 days, exempting legally required financial records.
- Opt-Out: Unsubscribe from non-transactional or product-update emails at any time.
7. Cookies & Tracking
We use a minimal footprint of essential cookies required for site functionality: an authenticated session cookie, a temporary preview-access gate cookie, and a CDN routing cookie. We do not use third-party advertising cookies.
We utilize first-party analytics to understand site usage. These analytics are entirely optional. We record no tracking data until you explicitly accept our consent banner. Choosing “Essential only”, or not answering the banner, means no analytics events and no marketing cookies are recorded at all. You can revoke this choice at any time by clearing the site's consent cookie in your browser.
If you accept optional cookies, we also record marketing attribution: which link brought you to the site. This uses a first-party campaign cookie retained for 90 days (the campaign you first arrived from), a second retained for 30 days (the campaign you most recently arrived from), a creator-referral cookie retained for 90 days, and a short-lived session identifier retained for 24 hours so that a visit and a later sign-up on the same browser can be connected. We store only the five standard campaign parameters (utm_source, utm_medium, utm_campaign, utm_content, utm_term), the page path you landed on with any query string removed, and the hostname — never the full address — of the site that referred you. We do not store the remainder of any web address, and we do not use third-party advertising or cross-site tracking cookies.
8. International Data Transfers & Children
Global Transfers: Our core servers are located in the United States. By using Token Harbor from outside the US, you acknowledge that your data will be transferred to, and processed in, the United States.
Age Requirements: Token Harbor is not intended for children under 13. If you believe a minor has provided us with personal information without parental consent, please contact us immediately for deletion.
9. Changes to this Policy
We may update this Privacy Policy as regulatory landscapes and AI industry standards evolve. Material changes will be communicated via email to your registered address and updated on this page.
10. Contact Us
For questions regarding your data, privacy, or this policy, please reach out to our legal team:
Email: legal@tokenharbor.ai