Privacy Policy – modelhive.ai
Last updated: April 7, 2026
1. Introduction
ModelHive AI ("ModelHive", "we", "us", "our") provides an API platform that routes user requests to third-party AI model providers.
This Privacy Policy explains how we collect, use, and protect personal data when you use our website, APIs, and services (the "Service").
By using the Service, you agree to this Privacy Policy.
2. Roles and Responsibilities
Depending on the type of data processed:
- ModelHive acts as a data controller for account, billing, and operational data
- ModelHive acts as a data processor for any data contained in API requests (e.g. prompts), which are processed on behalf of the user
3. Data We Collect
3.1 Account Data
- Email address
- Account credentials
- Organization or company information (if provided)
3.2 Billing Data
Payments are processed by third-party providers such as Stripe. We do not store full payment details.
We may store:
- Transaction IDs
- Billing status
- Credit balances / usage
3.3 Usage and Operational Logs
We collect limited operational data necessary to run the Service:
- Login activity
- API access logs (timestamps, request metadata)
- Credit top-ups and transactions
We do not log or store the content of prompts or model responses.
3.4 AI Request Handling (Prompts & Outputs)
ModelHive acts purely as a routing layer.
- Prompts and responses are processed in real-time only
- Prompts are not stored, logged, or retained
- Responses are not stored
3.5 HiveGuard Preprocessing
We may apply automated preprocessing (e.g. "HiveGuard") to user inputs before routing them to model providers.
This may include:
- Detection and removal of personal data (PII)
- Security filtering
- Policy enforcement
This processing happens in-memory only and is not persisted.
4. How We Use Data
We use personal data strictly to:
- Provide and operate the Service
- Manage accounts and authentication
- Process payments and credits
- Ensure system security and prevent abuse
- Monitor system performance
We do not use prompts or outputs for training models or analytics.
5. Third-Party Model Providers
Requests are forwarded to third-party AI providers (e.g. OpenAI, Anthropic, Google).
These providers may process data independently under their own privacy policies.
ModelHive does not control how third-party providers use or retain data once a request is forwarded.
6. Data Retention
- Account data: retained until account deletion
- Billing and transaction data: retained as required for legal and accounting purposes
- Operational logs: retained for a limited period (90 days)
Prompts and model outputs are not retained.
7. Legal Basis (GDPR)
We process personal data under the following legal bases:
- Contract performance (providing the Service)
- Legitimate interest (security, fraud prevention, system monitoring)
- Legal obligations (accounting, compliance)
8. Data Sharing
We may share data with:
- Payment processors (e.g. Stripe)
- Cloud infrastructure providers
- Security and monitoring providers
We do not sell personal data.
9. International Data Transfers
ModelHive is designed to support data sovereignty and EU-only data processing by default.
When users select AI models hosted within the European Union, requests are routed exclusively to providers operating within the EU, and no international data transfer occurs.
International data transfers may occur only if the user explicitly selects or enables non-EU model providers.
In such cases:
- Data may be transferred outside the European Economic Area (EEA)
- Transfers are performed under appropriate safeguards, such as Standard Contractual Clauses (SCCs), where applicable
ModelHive provides controls (e.g. "EU Sovereignty Guard") that allow users to restrict processing to EU-based providers only.
Users are solely responsible for selecting model providers in accordance with their data protection requirements.
10. Your Rights
Under GDPR, you have the right to:
- Access your data
- Request correction
- Request deletion
- Object to or restrict processing
- Data portability
To exercise your rights, contact: [email protected]
11. Security
We implement appropriate technical and organizational measures to protect data, including:
- Access controls
- Encryption in transit
- Minimal data retention
12. Changes to This Policy
We may update this Privacy Policy from time to time. Continued use of the Service constitutes acceptance of the updated policy.
13. Contact
IT Company Zug GmbH An der Lorze 3, 6300 Zug Switzerland
Email: [email protected]