LEGAL

Privacy Policy

Last updated: 3 August 2026.

Data we process

We process account details, company details, billing records, API usage metadata, security logs, support messages and information required to operate customer accounts and token balances.

Request content

UVOX processes request payloads transiently to authenticate, classify, optionally optimise, cache-route and forward them to the customer-selected AI provider. In Auto and Maximum Savings modes, UVOX may create a reduced provider-bound request by omitting historical messages. Zero-Loss Cache preserves complete request content. Normal production logs store operational usage information, selected route, fallback reason, status, timing, model, token and cost evidence—not prompt or generated-answer content.

Local testing

Customer dashboard provider credentials are encrypted at rest and are excluded from normal request logs.

Direct production gateway

OpenAI and Anthropic credentials supplied for a direct gateway request are transmitted securely through UVOX for forwarding to the selected provider. They are not stored in normal production request logs or displayed in the customer dashboard.

Purposes and legal bases

We process data to perform the service contract, secure accounts, calculate usage, provide support, prevent abuse, comply with legal obligations and pursue legitimate interests in service reliability and fraud prevention.

Providers and subprocessors

Customer-selected AI providers, infrastructure providers, email services and payment processors may process data as necessary to provide the service. Provider-bound content may be the complete request or a context-optimised request according to the selected engine mode. Customers remain responsible for their own provider accounts, provider terms and lawful use of submitted data.

Retention

Operational metadata, including engine mode, route, token counts, content hashes, fallback status and cost evidence, is retained according to configured service settings and security requirements. Billing, fraud-prevention and legal records may be retained where required. Provider credentials are not intentionally retained in normal request logs.

International transfers

Infrastructure and AI providers may process data outside the European Economic Area under their applicable transfer safeguards.

Your rights

Eligible individuals may request access, correction, deletion, restriction, portability or objection by contacting privacy@uvox.tech. A supervisory-authority complaint may also be available.

Security

UVOX uses HTTPS, access controls, hashed UVOX API keys, security headers, tenant isolation and verified deployment restore points. No service can guarantee absolute security.

Terms · DPA · Cookies · Acceptable Use

REFERRAL PROGRAM DATA

Affiliate and referral processing

When the Referral Program is used, UVOX processes affiliate account details, referral codes, campaign identifiers, attribution timestamps, masked customer references, commission and payout records, and limited fraud-prevention signals. Customer API keys, provider credentials and prompt content are never shown to affiliates.

Affiliate payout details are encrypted and accessible only to authorised administrators for payment and accounting purposes. Financial and audit records may be retained where required by law.

Zero-Risk and verification disclosure: “Zero-risk” applies only to Zero-Loss Cache Mode and means prompt content is not rewritten or deleted, provider/model are not switched, and generated responses are not substituted from a semantic answer cache. Provider-supported cache metadata may be added. Proof Lab requests are sent to the selected provider and UVOX using customer-supplied keys held in process memory. Reports exclude API keys and full prompt content by default. Savings and exclusivity claims are workload- and evidence-dependent and are not guarantees.