Legal
Privacy policy
Effective August 29, 2026. This policy covers the API Foundry experiment.
Information the experiment handles
When an account is provisioned, API Foundry may store an email address, account and plan state, credit balance, and named API-key records. Secret API keys are stored as one-way hashes where technically practical; the plain secret is shown only when created.
Requests and operational logs
The gateway records request identifiers, account and key identifiers, dataset and endpoint, method, response status, credits used, duration, time, and a one-way network-address hash for metering, debugging, security, and abuse prevention. Hosting infrastructure may retain standard web-server logs.
Playground
The playground keeps a key only in the current page's memory and does not intentionally save it in browser storage. An authenticated playground request creates the same operational record as any other API request. Fixed example previews require no key and consume no credits.
Use, sharing, and retention
Information is used to operate, secure, measure, and improve API Foundry and, if billing is enabled later, to administer subscriptions. Personal information is not sold. Hosting, security, email, and future payment providers may process limited information needed to provide their services. Records are retained as reasonably needed for operations, security, accounting, disputes, and legal obligations.
Current experiment limits
Public registration, email verification, and Stripe billing are currently disabled. This policy will be revised before those systems become available.
Contact
Questions or requests may be sent through the Logan Pendragon Forge contact page. Do not send an API secret in a message.