Privacy Policy

Last updated: January 2025

Introduction

AI Consensus ("we", "our", or "us") respects your privacy. This Privacy Policy explains how we collect, use, and protect your information when you use our service.

Information We Collect

Account Information

When you sign in using Google or Discord, we receive and store:

  • Email address
  • Display name
  • Profile picture URL

API Keys

If you choose to store your AI provider API keys (OpenRouter, Anthropic, OpenAI, Google, etc.), we encrypt them before storing in our database. These keys are used solely to make API calls to your chosen AI providers on your behalf.

Usage Preferences

Settings like theme preferences and model selections are stored locally in your browser (localStorage) and are not transmitted to our servers.

Analytics Data

We use PostHog for analytics to understand how the service is used. This includes page views, feature usage, and anonymous session data. No personal information or conversation content is included in analytics.

What We Do NOT Collect

We do not store your prompts, questions, or the AI-generated responses. Conversations are processed in real-time and are not retained on our servers.

How We Use Your Information

  • To authenticate you and provide access to the service
  • To make API calls to AI providers using your stored API keys
  • To improve and maintain the service

Third-Party Services

We use the following third-party services:

  • Google and Discord - For authentication. Their privacy policies apply to data they collect during sign-in.
  • AI Providers (OpenRouter, Anthropic, OpenAI, Google AI) - Your prompts are sent directly to these providers using your API keys. Their privacy policies govern how they handle your data.
  • Vercel - For hosting and database services.
  • PostHog - For privacy-friendly analytics and error monitoring. PostHog does not sell your data and is GDPR compliant.

Data Security

We implement industry-standard security measures including:

  • Encryption of API keys at rest
  • HTTPS for all data transmission
  • Secure authentication via OAuth 2.0
  • Rate limiting and security headers

Your Rights

You can:

  • Delete your stored API keys at any time from the Settings page
  • Request deletion of your account and all associated data by contacting us
  • Access the source code (this project is open source under AGPL-3.0)

Data Retention

We retain your account information and encrypted API keys until you delete them or request account deletion. We do not retain conversation data.

Children's Privacy

AI Consensus is not intended for children under 13. We do not knowingly collect information from children under 13.

Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new policy on this page and updating the "Last updated" date.

Contact Us

If you have questions about this Privacy Policy, please open an issue on our GitHub repository.