Privacy Policy
This Privacy Policy explains how CacheLayer (“CacheLayer,” “we,” “us”) collects, uses, and shares information when you use cachelayer.org, www.cachelayer.org, api.cachelayer.org, our console, plugins, SDKs, and related services (the “Service”), including when you connect third-party business systems for agent outcome measurement and valuation.
1. Information we collect
- Account information: name, email, workspace/organization details, and authentication data (including Google sign-in if you choose it).
- Billing information: processed by Stripe. We do not store full payment card numbers; we store customer identifiers, plan, and billing status.
- Agent and usage data: traces, spans, flow metadata, model/provider usage, spend estimates, latency, hit/miss or reuse metrics, and similar operational telemetry you send to the Service.
- Connected system data: when you authorize an integration via OAuth or API token, we receive access credentials and may read business objects needed to value outcomes (for example tickets, deals, issues, pages, invoices, payments, PRs, or meetings), plus webhook event payloads you configure.
- Technical data: IP address, user agent, timestamps, request IDs, and diagnostic logs.
2. How we use information
- Provide outcome detection, valuation, attribution, dashboards, and cost/ROI insights.
- Operate OAuth connections, refresh or store tokens securely, and process webhooks.
- Authenticate users, enforce plan limits, and process billing.
- Secure the Service, prevent abuse, and debug failures.
- Communicate about the Service, security, and account matters.
- Comply with law and enforce our Terms.
3. Connected systems & OAuth
When you connect a third-party system, we only request access needed for the features you enable. Typical uses include:
- Confirming your workspace/tenant identity.
- Reading objects and events that represent agent outcomes (for example closed tickets, won deals, merged PRs, completed issues, paid invoices).
- Subscribing to webhooks so valuations stay up to date.
You can disconnect an integration in the CacheLayer console. After disconnect, we stop new pulls/webhooks and delete or deactivate stored tokens according to our retention practices. Third-party platforms also let you revoke access in their own admin settings.
4. How we share information
- Service providers (hosting, databases, email, analytics infrastructure, Stripe) under agreements limiting their use of data.
- AI providers you configure us to call, solely to fulfill your requests.
- Connected systems you authorize (to complete OAuth and API calls you initiate).
- Legal and safety when required by law or to protect rights and security.
- Business transfers in a merger, acquisition, or asset sale, subject to this Policy.
We do not sell your personal information. We do not use connected-system data to train public foundation models.
5. Security
We use reasonable technical and organizational measures, including encryption in transit, access controls, and encrypted storage of OAuth tokens where implemented. No method of transmission or storage is perfectly secure. You are responsible for protecting your account credentials and for configuring least-privilege scopes on connected apps.
6. Retention
We retain account, measurement, and integration data while your account is active and as needed to provide the Service, resolve disputes, and meet legal obligations. You may request deletion of your account or specific integration data by contacting us.
7. Your rights
Depending on your location, you may have rights to access, correct, delete, or export personal data, or to object to / restrict certain processing. Contact etonchan79@gmail.com. If we process data only as your processor, we will route end-user requests to you where appropriate.
8. International transfers
We operate primarily in the United States and may process data there and in other locations. Where required, we use appropriate transfer safeguards.
9. Children
The Service is not directed to individuals under 18, and we do not knowingly collect their personal information.
10. Changes
We may update this Policy from time to time. The “Last updated” date will change when we do. Continued use after an update constitutes acceptance of the revised Policy.
11. Contact
CacheLayer
Email: etonchan79@gmail.com
Web: https://www.cachelayer.org/