Legal

Privacy Policy

Last updated: April 16, 2026

This policy explains what data QuickSilverPro (operated by MachineFi Inc.) collects when you use our API, how we use it, and your rights. We aim to collect the minimum needed to operate the service.

1. What we collect

Account data: email address you provide on sign-up.

API keys: we store only a cryptographic hash; the raw secret is shown once at creation and not recoverable.

Usage metadata: timestamps, model name, token counts (prompt and completion), request duration, and per-request cost — for billing and abuse detection.

Payment data: handled by Stripe. We see the last four digits of the card and the billing email; we do not see full card numbers.

2. What we do NOT store

We do not persist the contents of your API prompts or model completions. Requests are processed in memory during the call and discarded on completion. Infrastructure partners we use for compute may have their own retention policies — see Section 5.

3. How we use it

We use collected data to: operate and bill the service, enforce usage limits, investigate abuse, send transactional emails (receipts, security notices), and comply with legal obligations. We do not sell your data to third parties, and we do not train machine-learning models on your prompts or completions.

4. Retention

Account metadata is kept while your account is active and for 12 months after closure (for tax and accounting records). Usage logs are kept for 90 days. You can request earlier deletion by emailing hello@quicksilverpro.io; we will honor verified requests within 30 days subject to legal retention requirements.

5. Sub-processors

We share data only with the providers required to operate the service.

ProviderPurposeData
Stripe (USA)Payment processingEmail, card last4, billing address
Cloudflare (USA)Edge / DDoS / DNSIP addresses, request metadata
Railway (USA)Application hostingAccount data, usage logs
Compute partnersModel executionPrompt/completion contents for each call

Compute partner selection may vary by model and region; we publish a current list on request for enterprise customers under NDA. Each partner has its own privacy and retention policy.

6. Security

Data in transit is protected with TLS 1.2+. API keys are stored as SHA-256 hashes. Stripe webhook signatures are verified against an HMAC secret. Our backend runs on Railway (SOC 2 Type II baseline). We do not persist prompt content.

7. Your rights

You can request access to, correction of, export of, or deletion of your personal data by emailing hello@quicksilverpro.io. California residents have additional rights under the CCPA, and EU/UK residents under the GDPR, including the right not to be subject to unlawful automated decision-making. We will verify your identity before acting on requests.

8. Cookies

We use localStorage only, to remember your signed-in API key across visits. We do not use tracking cookies, analytics cookies, or ad networks.

9. Children

The service is not intended for use by anyone under 18.

10. Changes

We will announce material changes to this policy by email at least 30 days before taking effect.

11. Contact

MachineFi Inc., 68 Willow Road, Menlo Park, CA 94205, USA — hello@quicksilverpro.io