Legal
Privacy Policy
Last updated: April 16, 2026
This policy explains what data QuickSilverPro (operated by MachineFi Inc.) collects when you use our API, how we use it, and your rights. We aim to collect the minimum needed to operate the service.
1. What we collect
- Account data: email address you provide on sign-up.
- API keys: we store only a cryptographic hash; the raw secret is shown once at creation and not recoverable.
- Usage metadata: timestamps, model name, token counts (prompt and completion), request duration, and per-request cost — for billing and abuse detection.
- Payment data: handled by Stripe. We see the last four digits of the card and the billing email; we do not see full card numbers.
2. What we do NOT store
We do not persist the contents of your API prompts or model completions. Requests are processed in memory during the call and discarded on completion. Infrastructure partners we use for compute may have their own retention policies — see Section 5.
3. How we use it
We use collected data to: operate and bill the service, enforce usage limits, investigate abuse, send transactional emails (receipts, security notices), and comply with legal obligations. We do not sell your data to third parties, and we do not train machine-learning models on your prompts or completions.
4. Retention
Account metadata is kept while your account is active and for 12 months after closure (for tax and accounting records). Usage logs are kept for 90 days. You can request earlier deletion by emailing hello@quicksilverpro.io; we will honor verified requests within 30 days subject to legal retention requirements.
5. Sub-processors
We share data only with the providers required to operate the service. The current list:
| Provider | Purpose | Data |
|---|---|---|
| Stripe (USA) | Payment processing | Email, card last4, billing address |
| Cloudflare (USA) | Edge / DDoS / DNS | IP addresses, request metadata |
| Railway (USA) | Application hosting | Account data, usage logs |
| Compute partners | Model execution | Prompt/completion contents for each call |
Compute partner selection may vary by model and region; we publish a current list on request for enterprise customers under NDA. Each partner has its own privacy and retention policy.
6. Security
Data in transit is protected with TLS 1.2+. API keys are stored as SHA-256 hashes. Stripe webhook signatures are verified against an HMAC secret. Our backend runs on Railway (SOC 2 Type II baseline). We do not persist prompt content.
7. Your rights
You can request access to, correction of, export of, or deletion of your personal data by emailing hello@quicksilverpro.io. California residents have additional rights under the CCPA, and EU/UK residents under the GDPR, including the right not to be subject to unlawful automated decision-making. We will verify your identity before acting on requests.
8. Cookies
We use localStorage only, to remember your signed-in API key across visits. We do not use tracking cookies, analytics cookies, or ad networks.
9. Children
The service is not intended for use by anyone under 18.
10. Changes
We will announce material changes to this policy by email at least 30 days before taking effect.
11. Contact
MachineFi Inc., 68 Willow Road, Menlo Park, CA 94205, USA — hello@quicksilverpro.io
See also: Terms of Service · Data Processing Addendum