TRUST & PRIVACY
Privacy Policy
Effective August 26, 2026.
1. Information we collect
Information provided
We may collect your name, business email, organization, role, credentials handled through WorkOS, billing contact, Services purchased, usage charges, invoices or payment status, communications, and feedback.
Information collected automatically
terminal.fyi does not use analytics, advertising, pixels, or session recording. Website hosting may process basic delivery and security request information, such as IP address, browser type, requested page, and timestamp. The authenticated console may use strictly necessary authentication and security storage only.
Billing metadata
Terminal retains only account ID, model, token counts, price, and billing timestamp. Billing metadata never includes prompts, outputs, cache content, IP address, latency, error data, request ID, or other inference metadata.
Inference content
All synchronous, streaming, flex, and queued Inputs and Outputs exist transiently in memory only. They are not written to logs, databases, or backups and are not used for training, evaluation, improvement, support, debugging, or opt-in capture.
Information from other sources
Business contact data may come from Customer’s organization, a referral, an event, or a professional source.
For exact inference-content commitments, see the Zero Data Retention policy.
2. How we use information
Purpose of processing
Terminal uses information to operate accounts and Services, authenticate users, process inference, calculate billing, invoice and collect payment, communicate about accounts, support, security, and product changes, comply with law, and complete corporate transactions. Billing metadata is used only for billing, invoicing, taxes, and accounting.
3. How we disclose information
Service providers and other recipients
Terminal may disclose information to GCP and Verda for inference infrastructure, Tailscale for encrypted transport, WorkOS for authentication, Stripe for billing, advisers, auditors, and insurers under confidentiality duties, authorities when legally required, corporate-transaction successors, and others at Customer’s direction or with Customer’s consent. Terminal does not sell personal information or share it for cross-context behavioral advertising, and has not done so in the preceding 12 months.
See Subprocessors for current provider information.
4. Cookies and online tracking
No advertising or analytics tracking
terminal.fyi uses no analytics, advertising pixels, retargeting, cross-site advertising, or session recording. The console may use strictly necessary authentication and security storage. A Global Privacy Control signal has no effect on Terminal’s present practices because Terminal does not sell or share personal information.
5. Retention
Retention periods
Terminal retains account, organization, and communications data as necessary for the relationship and legal duties. Billing, invoice, and tax records, including the exact billing metadata described above, are retained as legally required. Inference content is never persisted or included in backups. Custom weights and adapters remain in customer-specific encrypted Google Cloud Storage until a deletion request; active and backup copies are deleted within one day of written notice.
6. Security
Safeguards
Terminal maintains administrative, technical, and organizational safeguards, including TLS 1.2+, encryption at rest, internal private networking, and logical request and cache isolation on shared GPUs. Independent penetration testing has been completed. A SOC 2 Type I examination for Terminal Inference was completed as of May 31, 2026, and Type II is in progress. The report is available to qualified customers under NDA. No security program can guarantee absolute security.
7. Choices and requests
Your requests
You may update account data and opt out of promotional email if it is sent. Where applicable, you may request access, correction, deletion, a copy, portability, objection, or restriction by emailing help@terminal.fyi. Terminal may verify identity and apply lawful exceptions before responding.
8. California privacy disclosures
California rights
California residents may request access, correction, deletion, and information about disclosures, use an authorized agent, and exercise rights without discrimination. Terminal does not sell or share personal information as those terms are defined by California law.
Category | Examples | Why used | Typical disclosures |
|---|---|---|---|
Identifiers and business contacts | Name, business email, organization, role | Account administration and communications | WorkOS, advisers, authorities when required |
Customer records | Account and Services relationship | Provide and administer Services | WorkOS, Customer-directed recipients |
Commercial and billing information | Services purchased, charges, invoices, payment status | Billing, invoicing, taxes, accounting | Stripe, advisers, authorities when required |
Account credentials | Authentication credentials handled through WorkOS | Authenticate and secure account access | WorkOS |
Transient Customer Content | Inputs and Outputs only | Process inference and provide Services | GCP, Verda, Tailscale as needed to provide Services |
Basic website delivery data | IP address, browser type, requested page, timestamp | Deliver and secure terminal.fyi | Hosting providers |
Custom model assets | Custom weights and adapters | Host Customer models in customer-specific encrypted GCS until deletion request | Google Cloud Platform |
9. Children
Business use only
The Services are B2B and professional services for individuals 18 and older. Terminal does not knowingly collect personal information directly from children.
10. Regional and international processing
Processing locations
Customers choose US or EU processing for inference, and inference content stays in the selected region. Account, authentication, and billing metadata are centrally processed in the US.
Transfer safeguards
If Terminal and Customer execute a data processing addendum, that addendum governs covered processing and may include the European Commission Standard Contractual Clauses or UK Addendum where applicable. Customers requiring a DPA or transfer terms may contact help@terminal.fyi.
11. Third-party sites and services
External services
The Services may link to or interoperate with third-party sites and services. Their privacy practices are governed by their own notices, and Terminal is not responsible for those practices.
12. Changes to this Policy
Updates
Terminal may update this Privacy Policy prospectively as its Services or legal requirements change. The posted effective date identifies the current version.
13. Contact
Contact information
For privacy questions or requests, contact help@terminal.fyi. Terminal is Black Arrow Labs, Inc., 1881 Page Mill Road, Office 120, Palo Alto, CA 94304, United States.