Legal

Privacy Policy

How Prism handles account data, service metadata, and API content—including our zero-data-retention and no-training commitments.

Last updated: September 9, 2026

1. Scope

This Privacy Policy describes how Prism Technologies Inc ("Prism," "we," "us," or "our") handles information when you visit our websites, create an account, use our dashboards, or call our model inference APIs and related services (collectively, the "Services").

This policy applies to individual users and to people who use the Services for an organization. If an organization has entered into a separate agreement with Prism, that agreement may contain additional data-protection terms.

2. Information We Collect

Account information. We collect information you provide when you register or manage an account, such as your name, email address, authentication identifiers, organization membership, plan, API-key records, and support communications.

Billing information. Our payment and billing providers process payment instruments and billing details. Prism receives records such as your plan, credit balance, transaction amount, billing contact, payment status, and invoice history.

Service metadata. We collect limited technical records needed to authenticate requests, meter and bill usage, secure the Services, and maintain reliability. These records may include an account or organization identifier, API-key identifier, requested endpoint and model, request time, token counts, response status, latency, rate-limit information, and source IP address. Service metadata does not include the text or other content of your API inputs or outputs.

Website and device information. When you use our websites or dashboards, we and our analytics providers may collect pages viewed, features used, referral information, cookie or device identifiers, browser and device details, and approximate location derived from your IP address.

3. Zero Data Retention for API Content

The prompts, messages, code, tool definitions, files, and other content you submit to an inference endpoint are your "Inputs." Model-generated text, code, tool calls, and other results returned by that endpoint are your "Outputs."

Prism follows a zero-data-retention policy for Inputs and Outputs. We process API content only for the time needed to complete and return your request. We do not write API content to persistent storage, application logs, analytics systems, or backups, and we discard it after processing finishes.

We do not use Inputs or Outputs to train, fine-tune, evaluate, or otherwise improve our models. This commitment applies to every service tier.

Service metadata described in Section 2 is not API content and may be retained for authentication, billing, rate limiting, security, abuse prevention, capacity planning, and reliability. Metadata is designed not to contain the substance of your Inputs or Outputs.

If you voluntarily include an Input, Output, or other content in a support request, that copy becomes part of the support communication and may be retained with the support record. Sending content to support does not authorize Prism to use it for model training.

4. How We Use Information

We use information other than API content to provide and administer accounts, issue and verify API keys, route inference requests, calculate usage, process payments, provide customer support, and communicate about the Services.

We also use limited metadata to enforce rate limits and our Terms of Service, detect fraud or abuse, investigate outages, improve infrastructure performance, plan capacity, and comply with legal obligations.

We may create aggregate or deidentified statistics that do not identify an individual or reveal API content. We may use those statistics for analytics, research, reporting, and service improvement.

5. Cookies and Analytics

Our websites and dashboards use cookies, local storage, pixels, and analytics technologies to authenticate users, preserve preferences, measure traffic, understand product usage, and evaluate marketing performance.

You can limit cookies through your browser settings. Disabling required storage may prevent account or dashboard features from working. Our website analytics do not change our zero-data-retention treatment of API Inputs and Outputs.

6. How We Share Information

We disclose account information and service metadata to vendors that provide infrastructure, networking, authentication, analytics, billing, payment processing, communications, customer support, and security services. They may process that information only to perform services for Prism and subject to their contractual obligations.

We may disclose information when reasonably necessary to comply with law or valid legal process, protect the rights and safety of Prism or others, investigate misuse, enforce our agreements, or complete a financing, merger, acquisition, reorganization, or sale of assets.

Prism does not sell API Inputs or Outputs or provide them to advertisers. Because Prism does not retain API content, it cannot later disclose stored API content that it does not possess.

7. Retention of Non-Content Information

API Inputs and Outputs are not retained, as described in Section 3.

We retain account information while your account remains active and for a reasonable period afterward. Billing, tax, transaction, security, and dispute records may be kept for longer when required for legal compliance or legitimate business purposes.

We keep service metadata only for as long as reasonably needed for metering, billing, security, abuse prevention, reliability, and enforcement. We may preserve particular non-content records when required by law or a valid legal hold.

8. Security

We use administrative, technical, and organizational safeguards designed to protect information from unauthorized access, alteration, disclosure, and loss. These safeguards include access controls and encryption in transit.

No online service is completely secure. You are responsible for protecting your account credentials and API keys, limiting key permissions where available, rotating exposed keys, and promptly notifying us of suspected unauthorized use.

9. Your Choices and Rights

You may review or update certain account information through the dashboard and may unsubscribe from marketing email using the link in those messages.

Depending on your location, you may have rights to request access to, correction of, deletion of, or a portable copy of personal information, or to object to or restrict certain processing. These rights are subject to applicable exceptions and identity verification.

Prism cannot retrieve or export past API Inputs or Outputs because it does not retain them.

10. International Users

Prism is based in the United States. We and our providers may process information in the United States and other countries whose privacy laws may differ from those where you live.

Where applicable law requires a transfer mechanism, we use contractual or other recognized safeguards for cross-border transfers.

11. Children

Prism is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided personal information to Prism, please contact us so we can take appropriate action.

12. Changes to This Policy

We may update this Privacy Policy from time to time. If changes are material, we will take reasonable steps to notify users. Your continued use of Prism after changes become effective means you acknowledge the updated policy.

13. Contact

Questions, requests, or concerns about this Privacy Policy may be sent to founders@prismvideos.com or through Prism support.