Agent Product Graph

Privacy

What the service collects, why it collects it, and how long it keeps it.

What we collect

  • Account email, profile details, a password hash and terms-acceptance evidence.
  • API key metadata and usage counts, so we can enforce quotas and show usage.
  • Search queries and outcomes for operating and improving the service. Demand products use query fingerprints and counts, not free text.
  • Outbound click events: which offer, which API key, coarse country and a random click reference.
  • Consent evidence such as the decision, document hash, time, IP address and user agent.

What we do not collect

  • Full postcodes. The API accepts only a coarse postal area.
  • Device fingerprints, cross-site behavioural profiles or advertising identifiers.
  • Free-text query content in the aggregate demand products.

Retention

Account and consent records are kept while the account is open and for 7 years after closure where needed to establish the contract or consent history. API usage and query fingerprints are kept for 24 months. Source artefacts are retained only where the source’s rights permit it, and click events only as long as needed to reconcile a conversion.

Separate consent and withdrawal

Aggregate non-personal derivatives may be sold as data products. Account-attributed usage is included only after a separate optional opt-in. It is not needed to provide the API, and withdrawal is made through the same account consent endpoint as granting consent. Service emails needed to operate the account are sent under contract, not consent.

Your rights

The terms record is versioned as terms-2026-08-31. Create an account and contact us through the developer support form to request access, correction, export or deletion.