Legal

Privacy Policy

Last updated: 26 July 2026

This is a product privacy notice for AgentBI. It is not a substitute for legal advice. Contact and controller details marked “TBD” should be completed by the operator.

1. Who we are

AgentBI (“we”, “us”) is a business analytics service for AI agents, available at agentbi.online and the demo host demo.agentbi.online.

Data controller: TBD (legal entity / individual name)
Contact: TBD (privacy@… or support email)

2. Data we process

  • Account data — name, email, password hash, role, tenant membership.
  • Usage & agent analytics — agent identifiers, event metrics (cost, value, tokens, timestamps), reports you generate.
  • Billing — handled by Stripe; we store Stripe customer/subscription identifiers and plan status. Card numbers are not stored by AgentBI.
  • Technical data — IP address and user-agent on login/session records where enabled; application logs.
  • Local device data — browser localStorage for session token, theme preference, and demo-mode flag.
  • Usage analytics — Google Analytics 4 (measurement ID via site config) for aggregated page views and traffic; Google may set cookies / collect device and IP-related data per their terms.

3. Why we process data

  • Provide the Service (accounts, dashboards, ingest, reports).
  • Authenticate users and enforce plan limits.
  • Process subscriptions and prevent abuse.
  • Operate the public read-only demo (seeded sample data, not your production data).
  • Maintain security and troubleshoot incidents.

4. Legal bases (where GDPR applies)

Contract performance (providing the Service you signed up for), legitimate interests (security, product improvement on aggregated/technical data), and legal obligation where required. Where consent is required for optional cookies/marketing, we will request it separately.

5. Sharing

We share data with processors only as needed to run AgentBI, for example:

  • Hosting / VPS providers
  • Stripe (payments)
  • Optional SSO identity providers you configure (Google, Microsoft, Okta, etc.)
  • Optional error monitoring (e.g. Sentry) if enabled

We do not sell personal data.

6. International transfers

Servers and processors may be located outside your country. Where required, we use appropriate safeguards (TBD — document SCCs / processor terms for your stack).

7. Retention

  • Account and tenant data — while the account is active, then deleted or anonymized within a reasonable period after closure (TBD: e.g. 30–90 days).
  • Agent events and reports — retained for the life of the tenant unless you delete them or request erasure.
  • Demo environment — reset/seeded periodically; not for production customer data.

8. Your rights

Depending on your location, you may have rights to access, correct, delete, export, or object to certain processing. Contact us at the address above. You may also lodge a complaint with a supervisory authority.

9. Security

We use industry-standard measures including TLS in production, hashed passwords, API keys, and access controls. No method of transmission or storage is 100% secure.

10. Children

AgentBI is a B2B service and is not directed at children under 16.

11. Changes

We may update this policy. The “Last updated” date will change when we do.

Home · Terms of Service · Documentation