Privacy Policy
Last updated: January 2025
1. Introduction
AgentsMesh, Inc. ("AgentsMesh," "we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our multi-agent AI code collaboration platform (the "Service"). Please read this privacy policy carefully. If you do not agree with the terms of this privacy policy, please do not access the Service.
2. Information We Collect
2.1 Personal Information You Provide
We collect information you voluntarily provide when registering for the Service, including:
- Name and email address
- Username and password (hashed and salted)
- Profile information (avatar, preferences)
- Payment information (processed by third-party payment processors)
- Organization and team information
2.2 API Credentials and Secrets
To enable AI agent functionality, you may provide:
- AI provider API keys (Anthropic, OpenAI, Google)
- Git provider access tokens and SSH keys
- Webhook secrets and integration credentials
All API credentials are encrypted at rest using AES-256 encryption and are never stored in plaintext.
2.3 Code and Content
When using the Service, we may process:
- Source code you access through connected repositories
- AI agent conversations and outputs
- Messages in collaboration channels
- Ticket descriptions and content
For self-hosted runner deployments, your code remains entirely within your infrastructure and is never transmitted to AgentsMesh servers.
2.4 Automatically Collected Information
- Device information (browser type, operating system)
- IP address and geographic location (country/region level)
- Usage patterns and feature interactions
- Error logs and performance metrics
- Cookies and similar tracking technologies
3. How We Use Your Information
We use the information we collect to:
- Provide, operate, and maintain the Service
- Process transactions and send related information
- Send administrative information, updates, and security alerts
- Respond to inquiries and provide customer support
- Improve and personalize the Service
- Monitor and analyze usage trends and preferences
- Detect, prevent, and address technical issues and security threats
- Comply with legal obligations
4. Data Sharing and Disclosure
We do not sell, trade, or rent your personal information to third parties. We may share information in the following circumstances:
4.1 Service Providers
We share information with third-party vendors who provide services on our behalf, including cloud hosting, payment processing, and analytics. These providers are contractually obligated to protect your information.
4.2 AI and Git Providers
When you use AI agents or connect Git repositories, your API keys are used to authenticate with these services on your behalf. We do not share your keys with any other parties.
4.3 Legal Requirements
We may disclose information if required by law, court order, or government regulation, or if we believe disclosure is necessary to protect our rights, your safety, or the safety of others.
4.4 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred. We will provide notice before your information becomes subject to a different privacy policy.
5. Data Security
We implement comprehensive security measures to protect your information:
- Encryption in Transit: All data transmitted to and from our servers uses TLS 1.3 encryption
- Encryption at Rest: Sensitive data, including API keys and passwords, is encrypted using AES-256
- Access Controls: Strict role-based access controls limit employee access to customer data
- Infrastructure Security: Our infrastructure is hosted in SOC 2 compliant data centers
- Regular Audits: We conduct regular security assessments and penetration testing
- Incident Response: We maintain incident response procedures to address security events
While we strive to protect your information, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security.
6. Data Retention
We retain your information for as long as your account is active or as needed to provide services. Specifically:
- Account Data: Retained until account deletion
- Usage Logs: Retained for 90 days
- Pod Session Data: Automatically deleted upon pod termination or after 30 days of inactivity
- Billing Records: Retained for 7 years as required by law
You may request deletion of your data at any time by contacting us or deleting your account.
7. Your Rights and Choices
Depending on your location, you may have the following rights:
- Access: Request a copy of your personal information
- Correction: Request correction of inaccurate information
- Deletion: Request deletion of your personal information
- Portability: Request your data in a portable format
- Objection: Object to certain processing activities
- Restriction: Request restriction of processing
- Withdraw Consent: Withdraw consent where processing is based on consent
To exercise these rights, contact us at privacy@agentsmesh.ai
8. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place for such transfers, including Standard Contractual Clauses approved by relevant authorities.
9. Cookies and Tracking Technologies
We use cookies and similar technologies to:
- Essential Cookies: Required for authentication and security
- Preference Cookies: Remember your settings and preferences
- Analytics Cookies: Help us understand how you use the Service
You can manage cookie preferences through your browser settings. Note that disabling certain cookies may impact Service functionality.
10. Children's Privacy
The Service is not intended for users under 16 years of age. We do not knowingly collect personal information from children under 16. If we discover that we have collected information from a child under 16, we will promptly delete it.
11. Third-Party Links
The Service may contain links to third-party websites or services. We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the new policy on this page and updating the "Last updated" date. For significant changes, we will provide additional notice, such as an email notification.
13. Contact Us
If you have questions about this Privacy Policy or our data practices, please contact us at:
AgentsMesh, Inc.
Email: privacy@agentsmesh.ai
14. California Privacy Rights
California residents have additional rights under the California Consumer Privacy Act (CCPA):
- Right to know what personal information is collected
- Right to know whether personal information is sold or disclosed
- Right to opt-out of the sale of personal information (we do not sell personal information)
- Right to non-discrimination for exercising privacy rights
15. European Privacy Rights (GDPR)
If you are located in the European Economic Area (EEA), you have rights under the General Data Protection Regulation (GDPR). Our legal bases for processing include:
- Contract: Processing necessary to perform our contract with you
- Legitimate Interests: Processing for our legitimate business interests
- Consent: Processing based on your consent
- Legal Obligation: Processing necessary to comply with laws
You may lodge a complaint with your local data protection authority if you believe we have violated your privacy rights.