Legal

Privacy Policy.Plain English.

Last updated: May 26, 2026.

AgentForge helps founders ship AI agents on their own sites. This page explains what we collect, why we collect it, and the choices you have. We keep it short on purpose.

Who this covers

This policy applies to AgentForge customers (the founders who sign up to build agents) and to end users who chat with an agent embedded on a customer's site.

If you reached this page through an agent embedded on a third-party site, the site you're visiting is the data controller for that conversation. AgentForge processes the data on their behalf.

What we collect

Account data: name, email, workspace name, billing details. Product data: agents you create, instructions you write, files you upload, conversations your agents have with end users.

Operational data: IP address, browser, device, and basic usage events. We do not sell this data and we do not use chat content to train foundation models.

How we use it

To run your agents, route conversations to the model provider you chose, bill you through your payment gateway, and keep the platform secure and reliable.

We use aggregated, de-identified usage data to improve the product. You can opt out of product analytics from your workspace settings.

Model providers and subprocessors

When your agent runs, the conversation is sent to the model provider you selected (for example Anthropic or OpenAI) under their data terms. Hosting, email, error tracking, and payments are handled by named subprocessors listed in your workspace settings.

Retention

We keep your workspace data while your account is active. Conversations are retained according to the retention window you set per agent — from zero days (ephemeral) up to thirteen months.

When you delete your account, we delete workspace content within thirty days. Backups roll off within ninety days.

Your rights

You can access, export, correct, or delete your data at any time from your workspace settings, or by emailing privacy@agentforge.dev. We honor GDPR, UK GDPR, and CCPA rights requests regardless of where you live.

Security

Data is encrypted in transit (TLS 1.2+) and at rest. Access to production systems is restricted, logged, and audited. We'll notify affected users within seventy-two hours of confirming a material incident.

Contact

Questions, requests, or complaints: privacy@agentforge.dev. For EU/UK matters you may also contact your local supervisory authority.