Privacy Policy

Last updated: April 17, 2026

LLMRPM (“we”, “our”, “us”) operates the website at llmrpm.com, the developer portal at portal.llmrpm.com, and the API endpoint at api.llmrpm.com. This Privacy Policy explains what data we collect, why we collect it, how we use it, and what rights you have over it.

By accessing or using LLMRPM services, you agree to the practices described in this policy. If you do not agree, please discontinue use of our services.

Information We Collect

Account Information

When you register, we collect your email address and a hashed password. We do not store plain-text passwords. Email verification is required before you can access the dashboard or generate API keys.

Usage & API Data

We log API requests routed through api.llmrpm.com, including the model name, token counts (input and output), timestamp, status code, and the API key used. We do not permanently store the content of your prompts or completions beyond what is necessary to compute daily quota usage and billing.

Billing & Payment

Payments are processed by Stripe and Plisio. We do not store card numbers, full payment instrument details, or cryptocurrency wallet keys. We retain records of plan purchases, access periods, and transaction timestamps for billing history displayed in your console.

Technical & Diagnostic Data

We collect standard web server logs (IP address, browser user agent, referrer, HTTP status codes) to operate, secure, and improve the service. These logs are retained for a limited period and are not sold or shared for advertising purposes.

Contact Form Submissions

When you use the contact form at llmrpm.com/contact or request a free trial at llmrpm.com/free-trial, we collect your name, email address, subject, and message text in order to respond to your inquiry.

How We Use Your Data

  • Operate and maintain the LLMRPM API gateway, portal, and console.
  • Enforce plan request windows and optional key-level controls.
  • Calculate plan usage and billing across Stripe and Plisio transactions.
  • Send transactional emails (account verification, receipt confirmations, critical service notices).
  • Respond to support requests submitted through our contact form.
  • Detect, investigate, and prevent abuse, fraud, and security incidents.
  • Improve service reliability, performance, and feature quality.

Data Sharing & Third Parties

We do not sell your personal data. We share data only in the following limited circumstances:

  • Upstream AI Providers: Your API requests are forwarded to the relevant upstream inference provider. These providers receive only the request payload required to fulfil inference — they do not receive your account details or billing information.
  • Stripe: Stripe processes card payments. Stripe's handling of payment data is governed by Stripe's own privacy policy.
  • Plisio: Plisio processes cryptocurrency payments. Plisio's handling of payment data is governed by Plisio's own privacy policy.
  • Legal Compliance: We may disclose information if required by law, court order, or valid governmental request.
  • Business Transfer: In the event of a merger, acquisition, or sale of assets, user data may be transferred as part of that transaction, subject to equivalent privacy protections.

Data Retention

Account data is retained for as long as your account is active. Usage logs and billing records are retained for up to 12 months for billing dispute resolution and abuse prevention. Web server access logs are rotated on a shorter cycle. If you close your account, we will delete your personal data within 30 days, except where we are required by law to retain it longer.

Cookies & Tracking

The LLMRPM website and portal use strictly necessary cookies to maintain your authenticated session. The session cookie is scoped to .llmrpm.com so it is shared across the marketing site, the developer portal, and the admin console. We do not use third-party advertising cookies or behavioral tracking scripts. We do not load analytics SDKs that fingerprint your device.

Security

We use TLS encryption for all data in transit. Passwords are hashed using bcrypt. API keys are stored as SHA-256 hashed values and are only shown in full once at creation. While we take reasonable precautions, no system is completely immune to security risks, and we encourage you to use strong, unique passwords, enable email verification, and rotate API keys regularly.

Your Rights

Depending on your jurisdiction, you may have rights to:

  • Access the personal data we hold about you.
  • Request correction of inaccurate data.
  • Request deletion of your account and associated personal data.
  • Object to or restrict processing of your data.
  • Data portability (receive a copy of your data in a structured format).

To exercise any of these rights, use our contact form. We will respond within 30 days.

Children's Privacy

LLMRPM services are intended for individuals 16 years of age or older. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us via our contact form and we will promptly delete it.

Changes to This Policy

We may update this Privacy Policy from time to time. The “Last updated” date at the top of this page reflects the most recent revision. Continued use of LLMRPM services after a policy change constitutes your acceptance of the revised terms.

Contact Us

For privacy-related questions or requests, please use our contact form or email admin@llmrpm.com. We read every message and respond promptly to privacy inquiries.