ModelHive Legal Center

Privacy PolicyOfficial platform policies, privacy commitments, and service terms.
modelhive.ai/Enterprise AI gateway

Privacy Policy – modelhive.ai

Last updated: April 7, 2026

1. Introduction

ModelHive AI ("ModelHive", "we", "us", "our") provides an API platform that routes user requests to third-party AI model providers.

This Privacy Policy explains how we collect, use, and protect personal data when you use our website, APIs, and services (the "Service").

By using the Service, you agree to this Privacy Policy.


2. Roles and Responsibilities

Depending on the type of data processed:

  • ModelHive acts as a data controller for account, billing, and operational data
  • ModelHive acts as a data processor for any data contained in API requests (e.g. prompts), which are processed on behalf of the user

3. Data We Collect

3.1 Account Data

  • Email address
  • Account credentials
  • Organization or company information (if provided)

3.2 Billing Data

Payments are processed by third-party providers such as Stripe. We do not store full payment details.

We may store:

  • Transaction IDs
  • Billing status
  • Credit balances / usage

3.3 Usage and Operational Logs

We collect limited operational data necessary to run the Service:

  • Login activity
  • API access logs (timestamps, request metadata)
  • Credit top-ups and transactions

We do not log or store the content of prompts or model responses.

3.4 AI Request Handling (Prompts & Outputs)

ModelHive acts purely as a routing layer.

  • Prompts and responses are processed in real-time only
  • Prompts are not stored, logged, or retained
  • Responses are not stored

3.5 HiveGuard Preprocessing

We may apply automated preprocessing (e.g. "HiveGuard") to user inputs before routing them to model providers.

This may include:

  • Detection and removal of personal data (PII)
  • Security filtering
  • Policy enforcement

This processing happens in-memory only and is not persisted.


4. How We Use Data

We use personal data strictly to:

  • Provide and operate the Service
  • Manage accounts and authentication
  • Process payments and credits
  • Ensure system security and prevent abuse
  • Monitor system performance

We do not use prompts or outputs for training models or analytics.


5. Third-Party Model Providers

Requests are forwarded to third-party AI providers (e.g. OpenAI, Anthropic, Google).

These providers may process data independently under their own privacy policies.

ModelHive does not control how third-party providers use or retain data once a request is forwarded.


6. Data Retention

  • Account data: retained until account deletion
  • Billing and transaction data: retained as required for legal and accounting purposes
  • Operational logs: retained for a limited period (90 days)

Prompts and model outputs are not retained.


7. Legal Basis (GDPR)

We process personal data under the following legal bases:

  • Contract performance (providing the Service)
  • Legitimate interest (security, fraud prevention, system monitoring)
  • Legal obligations (accounting, compliance)

8. Data Sharing

We may share data with:

  • Payment processors (e.g. Stripe)
  • Cloud infrastructure providers
  • Security and monitoring providers

We do not sell personal data.


9. International Data Transfers

ModelHive is designed to support data sovereignty and EU-only data processing by default.

When users select AI models hosted within the European Union, requests are routed exclusively to providers operating within the EU, and no international data transfer occurs.

International data transfers may occur only if the user explicitly selects or enables non-EU model providers.

In such cases:

  • Data may be transferred outside the European Economic Area (EEA)
  • Transfers are performed under appropriate safeguards, such as Standard Contractual Clauses (SCCs), where applicable

ModelHive provides controls (e.g. "EU Sovereignty Guard") that allow users to restrict processing to EU-based providers only.

Users are solely responsible for selecting model providers in accordance with their data protection requirements.


10. Your Rights

Under GDPR, you have the right to:

  • Access your data
  • Request correction
  • Request deletion
  • Object to or restrict processing
  • Data portability

To exercise your rights, contact: [email protected]


11. Security

We implement appropriate technical and organizational measures to protect data, including:

  • Access controls
  • Encryption in transit
  • Minimal data retention

12. Changes to This Policy

We may update this Privacy Policy from time to time. Continued use of the Service constitutes acceptance of the updated policy.


13. Contact

IT Company Zug GmbH An der Lorze 3, 6300 Zug Switzerland

Email: [email protected]