RelayProxyStacks

ProxyStacks Relay

Privacy Policy

This policy explains the information ProxyStacks processes when you visit our website, create a Relay account, use the API gateway, or purchase a subscription or credit pack.

Effective July 13, 2026

1. Who is responsible for your data

ProxyStacks operates Relay and is responsible for the personal data described in this policy. Privacy questions and requests can be sent to [email protected].

Waffo Pancake separately acts as merchant of record for purchases and processes checkout, tax, invoice, and payment data under its own privacy and platform notices (see waffo.ai).

2. Information we process

  • Account information: name, email address, profile image, account identifiers, and sign-in provider details.
  • API content: prompts, messages, tool inputs, attachments, and model responses needed to complete API requests.
  • Usage and diagnostic data: API key prefix, request ID, model route, provider path when recorded, token counts, cost, latency, status, errors, timestamps, device, and network data.
  • Billing references: plan, subscription status, renewal dates, credit balance transactions, and identifiers returned by Waffo. We do not receive full card details.
  • Support communications: messages, attachments, and account or request details you provide when asking for help.

3. How we use information

  • Provide authentication, API gateway routing, model responses, usage records, billing, and customer support.
  • Measure token usage, deduct credits, detect errors, secure accounts, and prevent fraud or abuse.
  • Maintain and improve reliability, compatibility, and product performance.
  • Comply with legal obligations and enforce our Terms and Acceptable Use Policy.
  • Send essential service, security, billing, and policy notices.

4. API request content and backend providers

Relay must send API request content to the backend model service selected or routed for your request. That provider processes the content under its own terms, privacy policy, and data controls. Provider availability can change, and the route used for a request is recorded in your usage logs when available.

Standard Relay usage logs are designed to record billing and diagnostic metadata rather than the full prompt and response. Request content may still be processed transiently, retained by an upstream provider, or preserved when reasonably necessary for security, abuse investigation, support you request, or legal compliance.

API request content may be transmitted to commercial cloud and AI API services used as backend infrastructure (including channels such as Qiniu Cloud services, commercial API routing platforms, and Tencent Cloud TokenHub-related services) when required to process a request. Do not submit sensitive personal data, regulated data, secrets, credentials, or confidential information unless you have the right to do so and the selected workload is appropriate for that content. Relay is not designed to be used as a system of record for protected health information, payment card data, government identifiers, or other highly regulated data unless we separately agree in writing.

5. Cookies and local storage

We use essential cookies to keep you signed in, protect authentication flows, and remember language preferences. These are needed for the service to work. We do not currently use third-party advertising cookies.

6. When information is shared

We share information only as needed with service providers that help operate Relay, including:

  • Google for optional account authentication;
  • the AI model / API provider handling a routed request;
  • hosting, database, network, monitoring, and security vendors;
  • Waffo Pancake for checkout, subscriptions, credit-pack payments, tax, invoices, refunds, and fraud prevention;
  • professional advisers, authorities, or other parties when required by law or needed to protect rights and safety.

We do not sell personal information or share it for cross-context behavioral advertising.

7. Retention

We retain account data while your account is active and for a reasonable period afterward. Billing and transaction records are kept as required for tax, accounting, fraud prevention, and dispute handling. Usage and security logs are kept only as long as reasonably necessary for billing, reliability, security, and legal obligations. Support messages are retained while needed to resolve the issue and maintain an appropriate business record.

8. Security

We use administrative and technical safeguards appropriate to the service. Relay stores customer API keys as one-way hashes and shows the full key only when it is created. No online service can guarantee absolute security, so you should protect your account, rotate exposed keys, and avoid sending information a model provider does not need.

9. International processing

Relay and its providers may process information in countries other than yours. Where required, we use appropriate contractual or legal safeguards for international transfers.

10. Your choices and rights

Depending on where you live, you may have rights to access, correct, delete, restrict, object to, or receive a copy of your personal data, and to withdraw consent where processing is based on consent. You may also lodge a complaint with your local data protection authority. To make a request, email us from the address connected to your Relay account.

11. Children and policy updates

Relay is not directed to children under 13, and we do not knowingly collect their personal data. We may update this policy as Relay or legal requirements change. The effective date above shows when the current version began to apply.

Questions about this policy? Email [email protected]. You can also visit our support page.