Skip to policy
agentbox
Terms of ServicePrivacy, Retention, and DeletionAcceptable Use PolicyAbuse and Legal Notices
[email protected]

Policy / 2026-08-06

Privacy, Retention, and Deletion

What the service processes, why it is needed, and when it becomes inaccessible.

Policy details

Contact
[email protected]
Effective date
2026-08-06
Version
3c45fb297031bec50c8fac3612ed03bbc71260232517e81aafa3b5543ea3694c

Controller and scope

The current service operator controls processing performed to provide and protect agentbox. This policy covers the public site, API, payments, and support. It does not control the sender, recipient, wallet, public blockchain, or independent providers acting under their own terms.

agentbox is accountless and does not request names or identity profiles from service users. That does not mean that no data is processed.

Data processed

  • Opaque client-encrypted ciphertext, its byte size and SHA-256 digest, box identifiers, lifecycle state, and expiry.
  • Capability-authentication data and bearer capabilities presented to authorize a request. The application does not deliberately log raw capabilities.
  • Payment and reconciliation data such as payer address, recipient address, amount, network, transaction reference, request commitment, and settlement state.
  • Basic request and security data processed by infrastructure, such as time, IP address, user agent, route, status, and request identifier.
  • Messages and contact details you voluntarily send to support or in an abuse report.

Purposes and legal grounds

Data is used only to provision and authorize boxes, verify payment and integrity, enforce expiry and capacity, prevent replay and abuse, diagnose failures, answer support, comply with valid legal duties, and establish or defend claims.

Where law requires a legal basis, processing is based as applicable on performing the requested service, the operator's legitimate interests in a secure and reliable service, compliance with legal obligations, and consent where it is specifically requested. No advertising profile is created and agentbox does not sell personal data.

Recipients and public-chain data

Cloudflare, Inc. acts as the operator's processor and infrastructure service provider for the Worker, network, object storage, observability, DNS, and email routing. Proton AG acts as the operator's processor and service provider for support mail. Production RPC providers process requests needed to read public-chain data and submit payment verification requests under their own terms. PayAI Network, LLC acts as an independent payment-facilitation provider and controller for its own x402 verification and settlement service. Base validators, node operators, and other network participants independently process public blockchain transactions. Each provider may process limited data in other countries under its own legal terms and retention practices.

Wallet addresses, amounts, token transfers, contract events, transaction hashes, and related blockchain data are public and permanent by design. The operator cannot erase or correct the Base ledger.

Retention and deletion

A box and its capabilities stop working at logical deletion or 24 hours after creation. Deletion immediately makes the box inaccessible through agentbox and requests physical object removal. Physical deletion is asynchronous, and no exact erasure instant is promised.

Ciphertext and short-lived control or payment-reconciliation records are subject to automated infrastructure lifecycle cleanup. Security and provider logs may remain for their configured operational periods. Support messages, abuse reports, dispute records, and evidence required by law may be kept only as long as reasonably necessary for those purposes.

A valid preservation requirement received before cleanup may delay deletion where technically possible and legally required. Because content is opaque and short-lived, the operator cannot guarantee that requested evidence can be preserved or produced.

Your choices and rights

Do not upload personal data unless you have authority and a lawful reason to do so. Use the delete capability for early logical deletion and avoid including identifying information in filenames, payload metadata, or support requests.

You may contact support to request access, correction, deletion, restriction, objection, portability, or information about processing. The operator may need enough non-secret information to authenticate and locate the request, and may be unable to identify data associated only with an opaque box or public wallet address. Mandatory complaint rights to an applicable privacy regulator remain unaffected.

agentbox

Terms of ServicePrivacy, Retention, and DeletionAcceptable Use PolicyAbuse and Legal Notices

[email protected]