SylphxModels

Legal

Privacy notice

This notice covers models.sylphx.ai/ and the API at https://api.models.sylphx.ai/v1: what we process to run the service, why, and how to reach us about it.

Last updated 11 September 2026

What we process

  • Account details: your name, email address, organization membership, and the authentication data needed to sign you in and to mint or revoke sk-sx- keys.
  • Request metadata: timestamps, the model you named, token counts, status, and the rate and idempotency identifiers we need to accept, refuse, meter, and retry safely.
  • Request content: the prompts, inputs, and outputs of the calls you make. We process them to produce the response you asked for, and to operate safety, abuse prevention, and metering.
  • Billing quantities: the token counts that your usage is priced from, and the plan and entitlement records that govern your workspace.

Why we process it

  • To deliver the response you requested and to keep the service working.
  • To meter usage, produce your usage view, and settle what you owe.
  • To prevent abuse, enforce the terms of use, and meet legal and security obligations.

Model data posture

Every model in the catalog publishes its training posture and whether zero-data-retention is available, so you can pick a model that matches your own commitments. If a model does not publish a field, we show it as unpublished rather than assuming a value.

What we do not do

  • We do not sell your prompt text as a dataset.
  • We do not publish which model provider served a request. That routing is ours, and the public catalog describes the product we sell rather than a directory of subprocessors.
  • We do not ask for, or accept, another Sylphx product’s credentials in place of an AI API key, and we do not treat one as your identity here.

Keys and retention

  • A key secret is shown once when you create it. We then store only a prefix so you can recognize the key in the console. Revoke a key any time from your console.
  • We keep account, key, and usage records for as long as we need them to run the service, settle metering, and satisfy a legal obligation, then delete or constrain them.

Your requests

Use your console for account access and key revocation. For a data-protection request about your account, write from the email address on that account to [email protected]. Security issues go to [email protected] — please do not include secrets or customer content in a first message.