Privacy Policy
Last updated: September 19, 2026
Information we collect
We may collect account details such as display name, email, account identifiers, authentication events, API key metadata, billing records, balances, usage logs, settings, support messages, and technical data such as IP address, device, browser, timestamps, request IDs, model IDs, token counts, latency, and error status.
Data minimization
We collect only the data needed to operate accounts, bill usage, secure the service, and meet legal obligations. We do not collect data for advertising, we do not sell personal information, and we do not use prompts or account content for advertising profiling.
Prompts, files, and outputs
When you use models through Boltch, prompts, uploaded content, generated outputs, and related metadata may be processed to provide the requested service, meter usage, detect abuse, troubleshoot problems, and improve reliability.
How we use information
We use information to operate the service, authenticate users, bill usage, show dashboards, provide support, secure accounts, prevent fraud and abuse, comply with legal obligations, and maintain service quality.
Third-party services
We share information only with the services needed to run Boltch: Cloudflare (hosting, content delivery, and bot protection via Turnstile on sign-up), payment processors (PayGate for card and cryptocurrency checkouts), email delivery for account and billing messages, and the upstream AI model providers that process your prompts when you call a model. AI model providers receive the prompt content needed to generate a response. We may also disclose information if required by law or to protect Boltch, users, or others. We use no third-party advertising or cross-site tracking SDKs.
Cookies
Boltch sets only strictly necessary, first-party cookies: a session cookie to keep you signed in, a CSRF token to protect forms, and a device identifier used for account security and abuse prevention. These cookies are required for the service to work and cannot be disabled. See the Cookie Policy for the full list, purposes, and durations.
Retention and security
We keep information for as long as needed for service operation, billing, security, legal compliance, and dispute resolution. We use reasonable technical and organizational safeguards, but no online service can guarantee perfect security.
Your choices
You can update account information in settings, revoke API keys, manage sessions, request a data export, and delete your account and personal data at any time from dashboard settings. Account deletion permanently wipes keys, usage history, balances, and personal data, subject only to billing, security, and legal retention needs.
Changes
We may update this policy as Boltch changes. The updated date on this page shows when the current version took effect.